
chakra-exploit-framework
Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

An advanced memory forensics framework

Hybrid kernel combining Mach, FreeBSD, and IOKit for macOS and iOS. Provides core OS services, driver framework, and security policy enforcement on…

GoTEE - example application

Volatility 3 ported to Rust. Same output, much faster.

Integer overflow in Apple ImageIO WebP parsing (macOS/iOS)

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…


Apple CoreGraphics framework fails to validate the input when parsing CCITT group 3 encoded data resulting in a heap overflow condition. A small heap…

ROP-based sleep obfuscation to evade memory scanners

Frida-powered runtime mobile exploration toolkit for assessing iOS and Android app security. Bypass SSL pinning, dump keychains, manipulate heap…