rickmark / mojo_thorLinks
Research about malware that infects the EFI and SMC of Apple MacBooks.
☆61Updated 3 months ago
Alternatives and similar repositories for mojo_thor
Users that are interested in mojo_thor are comparing it to the libraries listed below
Sorting:
- A Kext that can be used to disable Rootless in OS X El Capitan/macOS Sierra. You need to sign it OR use an exploit to make OS X load it.☆79Updated 5 years ago
- anyKextLoader is a program that can be used to disable SIP without rebooting.☆39Updated 9 years ago
- SMC utility for modifying and examining Apple's SMC payloads.☆45Updated 3 years ago
- Breaking the iCloud Keychain Artifacts☆102Updated last year
- OSX Events Monitor☆22Updated 6 years ago
- macOS XProtect definition files☆40Updated 3 years ago
- Integrity validator for iOS devices☆102Updated 6 years ago
- A tool for Mac OS X proxy kext generation to export kernel symbols☆26Updated 7 years ago
- Apple SMC (System Management Controller) API fuzzer☆68Updated 10 months ago
- ☆62Updated 7 years ago
- Utility to manipulate codesigned application in Mac OS X. Demonstrate the use of csops system call.☆78Updated last year
- This is a work-in-progress command line tool for reversing run-only AppleScripts. It will help parse the output of applescript-disassembl…☆69Updated 4 years ago
- Tools to measure an app's App Sandbox usage☆25Updated 5 years ago
- example project, utilizing Proc Info library☆70Updated 4 years ago
- Apple's gdb fork with some fixes and enhancements☆56Updated 11 years ago
- The current repository contains all the scripts needed to build kernel-mode mac-a-mal malicious activity hooking on macOS.☆85Updated 6 years ago
- An IDA plugin to improve (U)EFI reversing☆150Updated 8 years ago
- Kernel memory leak/local DOS on iOS 11.☆29Updated 7 years ago
- iOS-related command line goodies☆58Updated 5 years ago
- App sandbox escapes for macOS☆30Updated 5 years ago
- A RootKit for macOS that can perform kernel read/write, hook kernel and userspace functions, set custom conditional breakpoints, etc☆25Updated 2 years ago
- CVE-2018-4280: Mach port replacement vulnerability in launchd on macOS 10.13.5 leading to local privilege escalation and SIP bypass.☆59Updated 6 years ago
- Parasite.kext☆36Updated 9 years ago
- Runtime code injection suite for exploring OS X process security☆39Updated 16 years ago
- Yet another code injection library for macOS☆54Updated 10 years ago
- iBoot64 Payload Development Toolkit☆42Updated 7 years ago
- ☆43Updated 8 years ago
- An OSX exploitation helper library.☆35Updated 9 years ago
- A command-line tool to apply or remove Apple Binary Protection from an application.☆50Updated 16 years ago
- Firmware validation of Apple T1 and prior Macs☆25Updated 3 years ago