nick-botticelli / vma2pwnView external linksLinks
Scripts + patches to pwn vma2 (Virtualization.framework) macOS virtual machines
☆62Jun 13, 2024Updated last year
Alternatives and similar repositories for vma2pwn
Users that are interested in vma2pwn are comparing it to the libraries listed below
Sorting:
- tart, but with custom AVPBooter ROM, serial I/O, DFU mode, GDB debugging (port 8000), and panic halting. See help menus for `tart create`…☆52Aug 15, 2023Updated 2 years ago
- idevicerestore, but with support for virtual devices☆11Jan 27, 2024Updated 2 years ago
- Tweak to allow installing iPad apps on the iPhone☆40Oct 5, 2021Updated 4 years ago
- Patch the iBoot64 with generic patches.☆52Mar 19, 2024Updated last year
- IDA loader for SEP firmware with dyld cache support.☆67Aug 22, 2024Updated last year
- Ghidra loader for decrypted iBoot, LLB, iBEC, iBSS and SecureROM images☆23Mar 25, 2022Updated 3 years ago
- Apple PCC research☆16Mar 14, 2025Updated 11 months ago
- ☆51Nov 29, 2024Updated last year
- XNU Image Fuzzer - iOS App for Fuzzing Images with Objective-C Code covering 12 CGCreateBitmap & CGColorSpace Functions working with Raw …☆39Feb 4, 2026Updated last week
- PoC and technical details of CVE-2025-24204☆103Oct 7, 2025Updated 4 months ago
- Repo to store binary targets☆17Feb 5, 2026Updated last week
- A pre-jailbreak library for devices running iOS 12 - 14.☆44Dec 31, 2024Updated last year
- A tool to download and decrypt a 64 bits iOS firmware images written in Rust☆45Jan 6, 2024Updated 2 years ago
- XNU kernel, Kernel Collection and CodeQL build scripts☆269Jan 8, 2026Updated last month
- Decompiling macOS Hypervisor.framework by hand☆132Sep 13, 2022Updated 3 years ago
- xnu build script☆70Aug 31, 2023Updated 2 years ago
- ☆39Jul 25, 2025Updated 6 months ago
- oldabi v2☆15May 20, 2023Updated 2 years ago
- ☆42Feb 7, 2026Updated last week
- Host your own *OS Entitlement Database☆54Oct 23, 2025Updated 3 months ago
- A collection of tools for working with Apple software/hardware☆289Feb 25, 2021Updated 4 years ago
- Packer builder for Tart VMs☆80Updated this week
- ☆22Oct 13, 2023Updated 2 years ago
- a7 sep bug☆55Sep 26, 2023Updated 2 years ago
- iBoot/SEPOS decryption kit for JTAGgable iOS device prototypes☆132Sep 17, 2025Updated 4 months ago
- iOS 7 untethered jailbreak☆68Jan 17, 2025Updated last year
- capture ios device traffic without jailbreak / sip disable☆36Apr 25, 2022Updated 3 years ago
- IDA plugin to find code cross references to virtual functions using PAC codes☆147Mar 16, 2022Updated 3 years ago
- Firmware validation of Apple T1 and prior Macs☆26Feb 18, 2022Updated 3 years ago
- An open source implemention of Apple's `launchctl(1)`☆88Sep 18, 2025Updated 4 months ago
- A QEMU fork emulates D22AP/D221AP devices(iPhone X).☆45Mar 19, 2024Updated last year
- AEA OTA/IPSW decryption☆310May 25, 2025Updated 8 months ago
- ☆89Sep 27, 2024Updated last year
- ☆64Apr 27, 2023Updated 2 years ago
- jailbreak any ipa and run on apple silicon M1/M2 macOS without decrypted.☆358Oct 13, 2023Updated 2 years ago
- Useless tools for exploring Virtualization.framework☆25Jun 14, 2021Updated 4 years ago
- Translate and patch arm64e binaries or macOS arm64 binaries to run on an arm64 iPhone at runtime.☆79May 13, 2022Updated 3 years ago
- An IDAPython module for enhancing c++ support on top of ida_kernelcache☆140May 15, 2025Updated 9 months ago
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆113Apr 22, 2023Updated 2 years ago