
clairvoyance
Visualize the virtual address space of a Windows process on a Hilbert curve.

Visualize the virtual address space of a Windows process on a Hilbert curve.

Bypasses PPL protection to dump LSASS process memory, obfuscates dump files with XOR, and exfiltrates them remotely via RAW or SMB without writing to…

iOS 14 kernel exploit for CVE-2021-30807 targeting IOMobileFramebuffer, with tunable memory allocation for jailbreak development on A11+ devices.

Proof-of-concept for CVE-2023-41992, a macOS kernel vulnerability, demonstrating exploitation techniques and providing a patch analysis.

PoC for CVE-2026-65343, an AppleKeyStore kernel OOB read on iOS 26.6 that leaks kernel pointers to defeat KASLR from a sandboxed app via…

Technical analysis and proof-of-concept for CVE-2022-32932, a double fetch vulnerability in Apple's ANE kernel driver leading to out-of-bounds write…

Ian Beer's exploit for CVE-2017-2370 (kernel memory r/w on iOS 10.2)

CVE-2026-43805 IOKit IODMACommand race analysis and proof of concept

CVE-2025-43300: iOS/macOS DNG Image Processing Memory Corruption

PoC for CVE-2026-28990, an ImageIO bug patched in iOS/macOS 26.5

MacOS kernel memory leak (4 bytes)

empty_list - exploit for p0 issue 1564 (CVE-2018-4243) iOS 11.0 - 11.3.1 kernel r/w

CVE-2026-20687: AppleJPEGDriver startDecoder Timeout UAF — iOS/macOS kernel vulnerability leading to deferred panic (A19 Pro, iOS 26.3 RC)

Public disclosure for CVE-2026-43655 AppleM2ScalerCSCDriver use-after-free

IOC and YARA-based scanner for detecting indicators of compromise via file name regex, YARA signatures, hash matching, and C2 back-connect checks on…

PoC memory injection detection agent based on ETW, for offensive and defensive research purposes

ML-assisted forensic analysis tool that automates memory, disk, and live system triage on Windows using Volatility 3, autorunsc, and sigcheck to…

Tools to enumerate Windows Firewall Hook Drivers on Windows 2000, XP and 2003