pagazp / Chaos
Chaos Exploit for iOS 12.0 - 12.1.2 PoC & Writeup
☆9Updated 6 years ago
Alternatives and similar repositories for Chaos:
Users that are interested in Chaos are comparing it to the libraries listed below
- just a kernelgrabber, for those who can't reach out of sandbox☆17Updated last year
- powerd exploit : Sandbox escape to root for Apple iOS < 12.2 on A11 devices☆17Updated 5 years ago
- IDA plugin to extract Mach-O binaries located in the disassembly or data☆19Updated 5 years ago
- ios kernel class tree☆23Updated 5 years ago
- Chaos iOS < 12.1.2 PoC by @S0rryMyBad since he posted it as a photo rather than a source code. Also cleaned up.☆63Updated 2 years ago
- A tool for reversing IOKit classes from the iOS 12's new kernelcache format.☆24Updated 6 years ago
- Scripts were written by me☆19Updated last week
- PCIDriverKit proof-of-concept for CVE-2022-26763☆38Updated 2 years ago
- Automating research with scripts☆10Updated 5 years ago
- Accessing physical memory on iOS.☆51Updated 4 years ago
- ☆31Updated 6 years ago
- An IDA (Interactive Disassembler) script that can save a chunk of binary from an address.☆11Updated 6 years ago
- a tool that decompress the kernel cache once dercypted☆11Updated 8 years ago
- Automatically download and decrypt SecureRom stuff (iBSS, iBEC, iBoot, etc.) for all iOS versions available.☆51Updated 5 years ago
- multi_path exploit now with remount for iOS 11.3.X (english version)☆19Updated 6 years ago
- ☆36Updated 2 months ago
- A collection of MacOS jailbreak applications, IPA, and JailbreakMe websites.☆32Updated 10 months ago
- A tool to find gadgets in the iOS kernelcache.☆33Updated 6 years ago
- An old, ugly and deprecated script to download, decrypt and upload .ipa files to appdb. Check out the new one: https://github.com/n3d1117…☆15Updated 7 years ago
- not a jailbreak☆35Updated 7 years ago
- iOS 11.3.1 exploit☆47Updated 6 years ago
- ☆17Updated 2 years ago
- crappy "debugger"-like memory reader, to inspect 32bit ios kernel after it paniced☆16Updated 6 years ago
- use https://github.com/argp/iBoot64helper which is the orginal repo and far more advanced☆33Updated 5 years ago
- A fuzzer for the iOS kernel and userland☆44Updated 6 years ago
- ☆23Updated 4 years ago
- iOS Userland Forensic Dumping Framework for iOS 7/8☆19Updated 6 years ago
- Get kernel symbols on device. No jailbreak required (note: unslid addresses)☆27Updated 6 years ago
- Obtains the kernel task port and establishes a kernel function calling primitive on the iPhone XS, iPhone XR, and iPhone 8 running iOS 12…☆28Updated 6 years ago
- mach based hooking library for OS X (and soon iOS). Still WIP☆17Updated 8 years ago