
CVE-2026-28867-PoC
Kernel info leak Proof of Concept patched in iOS 26.4 / macOS 26.4

Kernel info leak Proof of Concept patched in iOS 26.4 / macOS 26.4

Command-line tool that allows searching and downloading app packages (known as ipa files) for iOS, iPadOS, tvOS, and visionOS from the App Store.

A free, open-source, and cross-platform iDevice management tool

iOS/macOS/Linux Remote Administration Tool

CVE-2020-9992 - A design flaw in MobileDevice.framework/Xcode and iOS/iPadOS/tvOS Development Tools allows an attacker in the same network to gain…

Technicolor TC7200 - Credentials Disclosure CVE : CVE-2014-1677

on Mac 10.12.2

iOS Shortcut-based keylogger designed to capture keystrokes and exfiltrate data from compromised devices.

Now you can mirror and control your jailbroken iPhone over USB

iOS 15 0-day exploit (still works in 15.0.2)

CVE-2018-4185: iOS 11.2-11.2.6 kernel pointer disclosure introduced by Apple's Meltdown mitigation.

Example on how to injection(currently under work) of keylogger js through Safari Extension(that part done)

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar

iOS gamed exploit (fixed in 15.0.2)

Robust Frida-based tool to dump decrypted iOS apps as .ipa from a jailbroken device supports App Store, sideloaded and system.


Extraction of iMessage Data via XSS

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, exploiting WebKit (CVE-2025-24201) and Core Media (CVE-2025-24085) to achieve sandbox…