saaramar / IOMobileFrameBuffer_LPE_POC
☆53Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for IOMobileFrameBuffer_LPE_POC
- ☆38Updated 3 years ago
- My collection of PoCs☆25Updated last year
- Demo exploit code for CVE-2020-27904, a tfp0 bug.☆65Updated 3 years ago
- xnu_gym is a pongoOS module that patches XNU to reintroduce previously known and patched vulnerabilities. This is an easy way to practice…☆55Updated 3 years ago
- CVE-2020-9992 - A design flaw in MobileDevice.framework/Xcode and iOS/iPadOS/tvOS Development Tools allows an attacker in the same networ…☆65Updated 4 years ago
- arm64 and arm64e dylib injector☆28Updated 9 months ago
- An assistant for BinDiff☆23Updated last year
- SnatchBox (CVE-2020-27935) is a sandbox escape vulnerability and exploit affecting macOS up to version 10.15.x☆30Updated 3 years ago
- Tool to patch the ASLR slide generation in the kernel to disable user-land ASLR on 32-bit iOS☆33Updated 3 years ago
- ☆27Updated last year
- Exploit for CVE-2023-32364☆21Updated last year
- iOS kernel heap memory profiler for sprayers☆85Updated 2 years ago
- Slides for presentations held at conferences☆45Updated last year
- Apple SEP reverse☆50Updated 4 years ago
- CVE-2020-27950 exploit☆31Updated 3 years ago
- Proof-of-concept for the CVE-2022-42864 IOHIDFamily race condition☆62Updated last year
- IDA plugin that resolves PPL calls to the actual underlying PPL function.☆57Updated last year
- PCIDriverKit proof-of-concept for CVE-2022-26763☆38Updated 2 years ago
- ☆37Updated 4 years ago
- ☆70Updated 5 months ago
- use https://github.com/argp/iBoot64helper which is the orginal repo and far more advanced☆32Updated 5 years ago
- One-Click to Completely Take Over A macOS Device☆17Updated 2 years ago
- Some old unexploited remote kernel memory corruption PoCs☆22Updated 3 months ago
- Shortcut to automate your iproxy, debugserver, lldb workflow☆35Updated last week
- WIP iOS 11 - 12.2 & 13b1,b2 Safari Jailbreak☆43Updated 4 years ago
- ☆35Updated last year
- Mapping physical memory to user space (EL0) on iOS.☆67Updated last year
- `ipsw` symbolication signatures☆43Updated last week
- A fuzzer for the iOS kernel and userland☆44Updated 6 years ago
- arm64 IOKit class dumper☆16Updated last year