mDNSResponder
substrate
emusca
Power trace simulator using Unicorn Engine for side channel analysis attack testingxnu-trace
Tracing of iOS/macOS binaries using HW single step and Frida DBIamd-lm32-smu-exploit
Generic exploit for all version 7 (maybe others) LM32-based AMD SMU's used in APUs (and probably works on GPUs too)jevmachopp
Modern C++, range-based Mach-O parser designed for embedded use. Uses stack allocations only.pypcode-emu
Ghidra P-Code emulation and static LLVM lifting in Pythonriscv-smol-linux-kernel
Patched sources/configs for RISC-V Linux with musl-based toolchain targeting 8 MB RAMaes-over-pcie
A VHDL implementation of 128 bit AES encryption with a PCIe interface.litespih4x
SPI flash MITM and emulation (QSPI is a WIP)jevxpctrace
Hopefully an insightful XPC tracer that helps vulerability research by tracing server and client call stacksps3mfw-ng
PS3 Modified Firmware Builder - Next Generationbus-pirate
Bus Piratedagger
A decompilation framework based on LLVMliteluna
LiteX LUNA USB stack integrationpcie-mitm
LiteX-based PCIe MITM, sniffing, fuzzing, device emulationghidra-lm32
LM32 processor module for Ghidra. Useful for AMD SMU reverse engineering.llvm-qemu
Automatically exported from code.google.com/p/llvm-qemusurf
Surf - A digital waveform viewer for macOStegra-bootrom-utils
Utility for interacting with Tegra SoC bootromsmips--
A dual core MIPS subset CPU written in behavioral, synthesizable VHDLfrida-ptrace-hide
ptrace hider based on frida-gum injectable shared library and a JavaScript versionpresentations
Some presentations I’ve donelitelitedram
Minimal DRAM controllers for LiteXxfinity-stream-allow-airplay
Tweak that unlocks AirPlay functionality in the iOS Xfinity Stream appfpudump
A simple, header only library to dump x87 FPU statekernelcache-patcher
Library for reading and patching xnu KernelCaches and a tool to disable loading of AppleSerialShim for m1n1 UART debugging over USB-C aux lines.proxytap
Tunnel all connections from a TAP interface though a SOCKS proxyundefined-behavior-crimes
Various experiments/hacks that language lawyers would shoot me for writingFruitSU
Python library for Apple CDN formatsllvm-project-embedded-library-in-process
Clang/LLVM/LLD/libc++/etc all in process as an embeddable libraryes-injector
EndpointSecurity process injectorjev-elf-tools
ELF tools like external -> local symtab entry patchingpdf-unwm
Remove watermarks from PDFsusbip-toolkit
Python USB-IP server library to emulate devices with a focus on HDL cosimulationxnu-get-proc-path
Utility to get the path of an executable a given process is running.frida-panic-ventura-beta-7
This panics macOS Ventura beta 7 because why not?m1n1-apfs-umbrella
Umbrealla repo for m1n1 supporting APFS an macOS loadingpyenv-macos-dynamic-dyld-loading
Stub libpython.dylib/Python.framework to read .python-version and load the appropriate pyenv Python librarymodern-xcode-legacy-support
Use modern Xcodes with deprecated SDKs and architectureswine-rosetta-aot
Experiment to see if WINE can utilize Rosetta AOT instead of JIT using PE -> Mach-O translationps3-decr-stuff
Stuff related to the PS3 DECR development TOOLs.flash-adapter-pcbs
Various PCB adapters for flash memories and devices that use thembus-pirate-old
The Bus Pirate is an open source hacker multi-tool that talks to electronic stuff. It’s got a bunch of features an intrepid hacker might need to prototype their next project.redirect-to-os-log
Command line utility to run a program and redirect its stdout and stderr to XNU's os_log facilities. Also includes an injectable dylib for the same purpose.debugserver-unsigned
Tweaks, Xcode plugin for using unsigned and super-entitled debugserver on jailbroken iOSpmod-qspi-flash
Simple Pmod PCB with a QSPI flash (targeted at PS4 reverse engineering tool development)CarlinKit4-CarPlay-Wired-to-WiFi-dongle-RE
Reverse engineering of the CarlinkKit4 CarPlay wired-to-WiFi adapterdelta-debug-verilog-test
Delta Debugging for Verilog/SystemVerilogpyfishhook
Python bindings and bundled build of fishhook: A library that enables dynamically rebinding symbols in Mach-O binaries running on macOS/iOS.iphonetunnel-usbmuxconnectbyport
Automatically exported from code.google.com/p/iphonetunnel-usbmuxconnectbyportinject-debugger-spawner
A library to inject via LD_PRELOAD to spawn a new terminal with an attached debuggerSlothNS
a proof-of-work based extension to DNSTorVTL
jevps
SDR GPS simulatorsneaker
Do crazy things with your socketsps3dotdir
keys n stuff for f0f ps3tools and naehrwert's scetoolriscv-smol-linux-qemu
Patched QEMU sources/configs for RISC-V Linux with musl-based toolchain targeting 8 MB RAMps3-gcc
Latest and greatest GCC for the ps3toolchainjev-lldb-helpers
Various LLDB Python helpersjev-pci-utils
Various PCI/PCIe utilities.nih-sftp-server
Single file (almost) SFTP server by Eddy Langley useful for integration into a multibin dropbear serverxpwn-modern-buid
A cross-platform custom NOR firmware loader and custom IPSW generator for the iPhone. Modern CMake build with no OpenSSL dependencylitex-fork-searchable
pyxcselect
Python bindings for libxcselect.dylib to find Xcode related pathsjeviterm
C++ library to interact with iTerm2 using protobufs and WebSocketsps4-kern-dump
PS4 kernel dump stuffaes-honeybadger
Tinkering with AES partial key brute forcing for side channel analysisaarch64-experimental-disasm
Experimental methods of decoding/disassembling AArch64 instructionssacd-ripper-google-code
Automatically exported from code.google.com/p/sacd-ripperplocate-xnu
plocate for XNU operating systemslitejtag-ext
LiteX JTAG extensionspycuse
py-cuse - CUSE (chardev in userspace) Python librarypytrofs
Python implementation of Tcl's trofs (Tcl Read-Only FileSystem)git-submodule-prep
Simple git submodule wrapper to track and merge changes to an upstream repobzip2-embedded
digital-waveform-samples
Digital waveforms (e.g. VCD) samples for testing and benchmarkingublaze-rev-utils
MicroBlaze reverse engineering utilitiesmusl-libc-aarch64-baremetal
musl libc for AArch64 baremetal applicationsqemu-microblaze-bflt
QEMU with hacks to load microblaze bFLT binariesriscv-smol-linux
RISC-V Linux with musl-based toolchain targeting 8 MB RAMjevutils
Various utilities I wrote for my use. My favorite so far is a find(1) alternative that searches using libmagicIOSurface-sandbox
Sandbox for playing around with IOSurfaces, compositing, and private CoreGraphs/CoreAnimation/SkyLight APIsld-audit-injector
A configurable shared library injector for Linux based on LD_AUDIT functionality found in glibc’s rtldAArch64-SHA-Crypto-Extensions
Implementations of SHA(s) digests using AArch64 Cryptography Extensionsauxv-dumper
Auxiliary Vector dumperfrida-konyutils-ng
Improved CenturionInfoSec/konyutils for decrypting/dumping Kony app JavaScript bundlescmake
jevshell
A node.js/socket.io shell on the webps3-bd-rev-util
Utilities for PS3 Blu-ray drive reverse engineeringfrida-trace-child-test
Testing child processes with frida-tracevolafox
Automatically exported from code.google.com/p/volafoxlibusb-cmake
libusb with CMake supportllvm-polly
pyclippy
Your favorite friend Clippy, easily accessible from Python!AppKitEnvVars
Shows env vars set by launchd and not your shell init scriptssmoke-cpp-tests
Automatically exported from code.google.com/p/smoke-cpp-testsflac-streamer
Stream FLAC audiopy-data-utils
Various python data utilitiesquartus-archiver
Quartus installer archiverLove Open Source and this site? Check out how you can help us