
truegaze
Static analysis tool for Android/iOS apps focusing on security issues outside the source code

Static analysis tool for Android/iOS apps focusing on security issues outside the source code

tfp0 based on CVE-2019-8591/CVE-2019-8605

Analysis of CVE-2025-43529 (WebKit UAF) + CVE-2025-14174 (ANGLE OOB) exploit chain - iOS Safari

FairPlay decryptor (dump iPA) for iOS Application that running on macOS with SIP-enabled, using CVE-2025-24204. Support macOS 15.0-15.2

CVE-2025-31207 mitigation and sandboxed tester for rootless and rootHide jailbreaks on iOS 15–18.4.1

Ian Beer's exploit for CVE-2017-2370 (kernel memory r/w on iOS 10.2)

Ian Beer's exploit for CVE-2017-2370 (kernel memory r/w on iOS 10.2) https://bugs.chromium.org/p/project-zero/issues/detail?id=1004

Jailbreak for A8 through A11, T2 devices, on iOS/iPadOS/tvOS 15.0, bridgeOS 5.0 and higher.

The next-generation ad blocker for Safari. Free and open source on macOS, iOS, iPadOS, and visionOS, with 750,000 rules, userscripts, userstyles, and…

CydiaSubstrate-based patch for CVE-2014-4377, a CoreGraphics memory corruption vulnerability on iOS, providing a runtime fix for affected devices.

Unofficial frida extension for VSCode

Frida scripts to rewrite mobile applications at runtime to directly MitM all HTTPS traffic

Memory modification tool for re-signed ipa supports iOS apps running on iPhone and Apple Silicon Mac without jailbreaking.

CVE-2018-4343: Proof-of-concept for a use-after-free in the GSSCred daemon on macOS and iOS.

PoC for CVE-2026-65343, an AppleKeyStore kernel OOB read on iOS 26.6 that leaks kernel pointers to defeat KASLR from a sandboxed app via…

I do some tweaking for iOS from 16.0 to 16.1.2 based on MacDirtyCow (CVE-2022-46689) exploit.

Attempt to steal kernelcredentials from launchd + task_t pointer (Based on: CVE-2017-7047)

Command-line tool that allows you to search for iOS, iPadOS, tvOS, visionOS, and macOS apps on the App Store, and download .ipa or macOS .pkg app…