Derek's repositories
dsc_symbols
symbol dumps of iOS shared caches
permasigner
🖊 Permanently signs IPAs on jailbroken iDevices (persists on stock).
apple-malicious-baseband
Sample of a Malicious baseband signed by Apple
CVE-2021-30860
Collection of materials relating to FORCEDENTRY, will eventually delete this repo and migrate the materials to my main exploit repo once finished
dyld-shared-cache-extractor
A CLI for extracting libraries from Apple's dyld shared cache file
iomfb-exploit
Exploit for CVE-2021-30807
ios-gamed-0day
iOS 15 0-day exploit
MacRootKit
A RootKit for macOS that can perform kernel read/write, hook kernel and userspace functions, set custom conditional breakpoints, etc
sandbox_extension_generator
iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives
AnyKernel3
AnyKernel, Evolved
blog-indexeddb-safari-leaks-demo
Demo showcasing information leaks resulting from an IndexedDB same-origin policy violation in WebKit.
jevxpctrace
Hopefully an insightful XPC tracer that helps vulerability research by tracing server and client call stacks
ssl-kill-switch3
Next Generation SSLKillSwitch with much more support!
TrollNonce
Boot nonce utility for TrollStore
TrollStore
Jailed iOS app that can install IPAs permanently with arbitary entitlements and root helpers because it trolls Apple