CVE-2024-27804. POC for CVE-2024-27804
138Pishi. Pishi is a code coverage tool like kcov for macOS.
76R00tkitSMM.github.io. HTML
9h264fuzzer. Objective-C
7TinyInstLibfuzzer. C++
6MacRootKit. macOS RootKit that can fuzz binaries/drivers, do kernel r/w, hook kernel and userspace functions, set custom breakpoints, GDB stub (in progress), match KDK kernels with DWARF debug symbols to release kernels, MachOs of all kinds, dyld shared caches, Objective C/Swift metadata, dump libraries, library injection (e.g. cycript), and crawl iOS apps
3apple-fuzz-poc. I will provide details and pocs for some bugs I found.
3xnuspy. an iOS kernel function hooking framework for checkra1n'able devices
3KextFuzz. Code of KextFuzz: Fuzzing macOS Kernel EXTensions on Apple Silicon via Exploiting Mitigations (USENIX Security'23)
3macosvm. Tool for running macOS guest virtual machines in macOS 12 host or higher on M1 arm64 Macs
2RouterOS. Overview of router OS and some reversing.
2iOS-SDKs. iOS 9 - iOS 16 SDK including symbols for private frameworks.
2bookmarks. A personal list of various resources for those who are interested in learning about infosec and hacking and keeping themselves up to date. This is by no means a complete nor fresh list, but I occasionally add entries to lists.
2desc_race. iOS 15.1 kernel exploit POC for CVE-2021-30955
2Win32k-heap-sanitizer. win32k.sys heap memory sanitizer.
2fsfuzzer. C++
2Apple-Sample-Code. Apple Sample Codes
1VirtualApple. Work with macOS VMs using Virtualization
1VmDeviceFuzz. inprocess userspace driver hardware interface analysis
1iOSRyuk. Forked from original @bxl1989 who then was forked by @userlandkernel
1Vulnerability-analyze. Vulnerability analyze QEMU
1haiku. The Haiku operating system. (Pull requests will be ignored; patches may be sent to https://review.haiku-os.org).
1ViDeZZo. ViDeZZo source code.
1fairplay_research. load kext into user mode
1darwin-xnu-build. XNU kernel, Kernel Collection and CodeQL build scripts
1webdavfs. C
1arm-trusted-firmware. Read-only mirror of Trusted Firmware-A
1iokit-utils. Dev tools for probing IOKit
1TQ-pre-jailbreak. Hello from pattern-f.
1vpwn. xnu local privilege escalation via cve-2015-1140 IOHIDSecurePromptClient injectStringGated heap overflow | poc||gtfo
1iomfb-exploit. Exploit for CVE-2021-30807
1acrn-hypervisor. Project ACRN hypervisor
1HelloSilicon. An introduction to ARM64 assembly on Apple Silicon Macs
1openqnx. mirror of git://git.code.sf.net/p/monartis/openqnx
1VirtioCrash. C++
1