xerub / macho
Dealing with Mach-O kexts, vtables and more
☆85Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for macho
- not a jailbreak☆35Updated 6 years ago
- Analyzes a binary iOS kernel to determine function offsets and where to apply the canonical jailbreak patches.☆45Updated 6 years ago
- kernelcache encrypt/decrypt utility☆49Updated 12 years ago
- iBoot64 Payload Development Toolkit☆42Updated 7 years ago
- CVE-2018-4185: iOS 11.2-11.2.6 kernel pointer disclosure introduced by Apple's Meltdown mitigation.☆83Updated 6 years ago
- iOS KEXT loader 7.x-9.x☆94Updated 7 years ago
- image4☆69Updated 6 years ago
- OS X tool for dumping IOKit hierarchies in DOT format.☆46Updated 8 years ago
- CVE-2018-4248: Out-of-bounds read in libxpc during string serialization.☆52Updated 6 years ago
- ART☆16Updated 7 years ago
- CVE-2018-4087 PoC☆60Updated 5 years ago
- macOS kext for host_special_port(4) patch☆87Updated last year
- Identifies common functions in iBSS/iBEC/iBoot/LLB☆32Updated 9 years ago
- task_for_pid injection that doesn't suck☆59Updated 9 years ago
- ☆79Updated 7 years ago
- Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.☆84Updated 8 years ago
- load iOS12 kernelcaches and PAC code in IDA☆60Updated 6 years ago
- Exploit code for CVE-2016-1757☆83Updated 8 years ago
- PoC for the iOS 11.4.1 and MacOS 10.13 kernel vulnerability in lio_listio☆76Updated 6 years ago
- A fuzzer for the iOS kernel and userland☆44Updated 6 years ago
- IDA Pro/Hexrays plugins☆130Updated 6 years ago
- Various files helping to better understand the iOS / WatchOS / tvOS kernels☆106Updated 7 years ago
- ios iokit fuzzer (really probably isn't that useful anymore tbh)☆61Updated 7 years ago
- CVE-2018-4331: Exploit for a race condition in the GSSCred system service on iOS 11.2.☆24Updated 6 years ago
- Local Privilege Escalation for macOS 10.12.2 via mach_voucher and XNU port Feng Shui☆94Updated 5 years ago
- OS X 10.11.6 LPE PoC for CVE-2016-4655 / CVE-2016-4656☆98Updated 8 years ago
- Lightweight version of xpwntool just for decrypting IMG3 firmware files☆46Updated 3 years ago
- Toolkit for binary iOS / OS X sandbox profiles☆145Updated 9 years ago
- A simple tool to find offsets needed in 32bit jailbreaks. Feel free to contribute.☆30Updated 7 years ago