Starred repositories
WebKit Heap Use-After-Free Proof-of-Concept (PoC) https://dark-life944.github.io/poc/
poc for CVE-2025-24252 & CVE-2025-24132
Public advisory, PoCs, and full technical report for Splashin iOS access‑control flaws (CVE‑2025‑45156 & CVE‑2025‑45157).
IOS audio buffer overflow CVE-2025-31200 POC
Public disclosure of CVE-2025-31200 – Zero-click RCE in iOS 18.X via AudioConverterService and malicious audio file.
Shell script that creates a ssh ramdisk
verygenericname / TrollVNC
Forked from OwnGoalStudio/TrollVNCVNC server for iOS devices, allowing remote access and control of the device’s screen.
Booting macOS's WindowServer on your jailbroken iDevice for real
Write to any where in /var/mobile/Containers/, running on iOS 16.0 - 18.5 (up to lastest since Apple said it's not security issues and you don't have to concern it). Okay :D
C4ndyF1sh / ZeroCalories
Forked from jailbreakdotparty/dirtyZeroBasic customization app using CVE-2025-24203. Patched in iOS 18.4.
iOS Application w/Implementation of CVE-2024-27804
waruhachi / libSandy
Forked from opa334/libSandySecurely extend the sandbox of system processes and user applications
Your all-in-one tweak for WhatsApp Messenger!
VNC server for iOS devices, allowing remote access and control of the device’s screen.
CVE-2025-24201 WebKit Vulnerability Detector (PoC)
jsherman212 / ktrw
Forked from googleprojectzero/ktrwAn iOS kernel debugger based on a KTRR bypass for A11 iPhones; works with LLDB and IDA Pro.
my try at recreating and exploiting some v8 CVEs
Suspicious ODoH-based DNS beaconing was observed on a non-jailbroken iOS 18.6.2 device. Apple-signed system processes initiated encrypted queries every 60 seconds, triggered by Bluetooth events. Th…
This repo documents a vulnerability in Siri Shortcuts and Shared Web Credentials (SWC) allowing malformed payloads to persistently execute, trigger retry storms, bypass TLS validation, and request …
iOS 18.6.2 suffers from broken encryption caused by a trust subsystem failure. Malformed anchor records and ATS disablement allow TLS connections to succeed without certificate validation, exposing…
Silent TCC bypass in iOS 18.6 allows Apple daemons to access protected data, modify sensitive settings, and exfiltrate ~5MB of data over the network—without user interaction, apps, or prompts. Logg…