├── .gitignore ├── App Bundle Extension ├── custom │ ├── XPC │ │ ├── final_secure_test_xpc.zip │ │ ├── secure_test_xpc.zip │ │ └── text_terminal_xpc.zip │ ├── calculate_electron_asar_integrity_hash.js │ ├── calculate_electron_asar_integrity_hash.py │ ├── calculate_electron_asar_integrity_hash.sh │ ├── electron_patcher.py │ ├── make_bundle.sh │ ├── make_bundle_exe.sh │ └── make_dmg.sh └── python │ └── CrimsonUroboros.py ├── Article_tags.md ├── I. Mach-O ├── custom │ ├── CFBundleCopyExecutableArchitecturesForURL.swift │ ├── MyBundle.c │ ├── hello.c │ ├── libmagic.sh │ └── mylib.c ├── mac │ ├── byte_order.h │ ├── fat.h │ ├── fixup-chains.h │ ├── loader.h │ ├── mach_loader.c │ ├── machine.h │ ├── nlist.h │ ├── vm_param.h │ ├── vm_prot.h │ └── vmparam.h └── python │ ├── CrimsonUroboros.py │ ├── MachOFileFinder.py │ ├── create_macho_samples.py │ └── r2_dd.py ├── II. Code Signing ├── custom │ └── extract_cms.sh ├── mac │ ├── CSCommon.h │ ├── cs_blobs.h │ └── trustcache.h └── python │ ├── CrimsonUroboros.py │ ├── SignatureReader.py │ └── TrustCacheParser.py ├── III. Checksec ├── custom │ ├── aslr_test.c │ ├── buffer_overflow.c │ ├── example.m │ ├── heap_example.c │ └── hello.c ├── mac │ ├── Header.cpp │ ├── SecCode.cpp │ └── loader.h └── python │ ├── CrimsonUroboros.py │ ├── LCFinder.py │ └── ModifyMachOFlags.py ├── IV. Dylibs ├── custom │ ├── lib1.c │ ├── lib1.h │ ├── lib2.c │ ├── lib2.h │ ├── m.c │ ├── main.c │ ├── mylib.c │ ├── mylib.h │ └── use_mylib.c ├── macos │ ├── Header.cpp │ ├── ImageLoader.cpp │ ├── Loader.cpp │ ├── MachOFile.cpp │ └── loader.h └── python │ ├── CrimsonUroboros.py │ └── MachODylibLoadCommandsFinder.py ├── IX. TCC ├── custom │ ├── FDA_mount_apfs.sh │ ├── app_UUID_finder_v1.sh │ ├── app_UUID_finder_v2.sh │ └── uuid_checker.sh ├── mac │ ├── TCC CheatSheet.md │ └── kTCCService_constants.txt └── python │ ├── CrimsonUroboros.py │ ├── TCCParser.py │ ├── UUIDFinder.py │ ├── get_uuid.py │ ├── uuid_manager.py │ └── xattr_ng.py ├── LICENSE ├── README.md ├── TOOLS.md ├── V. Dyld ├── custom │ ├── arg_printer.c │ ├── con_des.c │ ├── hello.c │ ├── interpose.c │ ├── lambda_capture_example.cpp │ └── rosetta_dyld_is_translated_pointer_example.c ├── macos │ └── RE │ │ └── ignite │ │ ├── _dylib_cache_fire │ │ ├── _graft_fetch_fire │ │ ├── _graft_select_fire │ │ ├── _hello_fire │ │ ├── _stage_goodbye │ │ └── ignition_get_shared_cache_directory └── python │ └── CrimsonUroboros.py ├── VI. AMFI ├── custom │ ├── AMFI_test.sh │ └── entitlements.plist ├── mac │ └── AMFI_RE │ │ ├── AMFI_STARTUP.png │ │ ├── AppleMagicDirectories.txt │ │ ├── GHIDRA_initializeAppleMobileFileIntegrity.c │ │ ├── GHIDRA_macos_dyld_policy_at_path.c │ │ ├── GHIDRA_macos_dyld_policy_collect_state.c │ │ ├── GHIDRA_verify_code_directory.c │ │ ├── GHIDRA_vnode_check_signature.c │ │ ├── IOKitPersonalities.txt │ │ ├── PSEUDO_initializeAppleMobileFileIntegrity.c │ │ ├── PSEUDO_macos_dyld_policy_at_path.c │ │ ├── PSEUDO_macos_dyld_policy_collect_state.c │ │ ├── boot_args.txt │ │ ├── dependencies.txt │ │ ├── exports.txt │ │ └── imports.txt └── python │ ├── CrimsonUroboros.py │ ├── MIG_detect.py │ └── check_amfi.py ├── VII. Antivirus ├── custom │ └── trace_execve.d ├── mac │ ├── Bundles of Joy.pdf │ ├── Exposing Gatekeeper - Patrick Wardle.pdf │ ├── _LSLaunch.c │ ├── _LSLaunchWithRunningboard.c │ ├── _spawn_via_launchd.c │ ├── apply_exec_quarantine.c │ ├── execve_call_stack.log │ ├── quarantine_get_flags.c │ ├── quarantine_getinfo.c │ └── quarantine_info_parse.c └── python │ └── CrimsonUroboros.py ├── VIII. Sandbox ├── custom │ ├── sandbox_detector.c │ ├── sandbox_validator.c │ ├── sbpl_compiler_wrapper.c │ ├── sip_check.c │ └── sip_check.py ├── mac │ ├── Apple-Sandbox-Guide-v1.0.pdf │ ├── The Apple Sandbox 2011 - Dionysus Blazakis.pdf │ ├── _compile.c │ ├── _sandbox_compile_file.c │ ├── sandbox.h │ ├── sandbox_hooks_list.txt │ ├── sip_entitlements.txt │ └── sonoma_sandbox_operations.txt └── python │ ├── CrimsonUroboros.py │ ├── crimson_waccess.py │ ├── make_plist.py │ ├── sandbox_inspector.py │ ├── sandbox_operations_extractor.py │ └── sip_tester ├── X. NU ├── custom │ ├── CommPageParser.c │ ├── HelloKext │ │ ├── HelloWorldKext.xcodeproj │ │ │ └── project.pbxproj │ │ └── src │ │ │ ├── HelloWorld.c │ │ │ └── Info.plist │ ├── drivers │ │ ├── AppleJPEGDriver_method_0.cpp │ │ ├── AppleJPEGDriver_method_0.py │ │ ├── AppleJPEGDriver_method_1.cpp │ │ ├── DKIOCEJECT_ioctl.c │ │ ├── IOVerify.c │ │ ├── dtrace_NewUserClient.py │ │ ├── dtrace_externalMethod.py │ │ ├── format_externalmethods.py │ │ ├── ifstatus.c │ │ ├── iokit_dump.py │ │ ├── iokit_tracer.py │ │ ├── print_externalmethods.py │ │ └── trace_ioserviceopen.py │ ├── mach_call_demo.c │ ├── mach_ipc │ │ ├── client_server_CFMessagePort │ │ │ ├── Makefile │ │ │ ├── client.m │ │ │ └── server.m │ │ ├── client_server_NSConnection │ │ │ ├── Makefile │ │ │ ├── client.m │ │ │ └── server.m │ │ ├── client_server_NSMachPort │ │ │ ├── Makefile │ │ │ ├── client.m │ │ │ └── server.m │ │ ├── client_server_NSNotification │ │ │ ├── Makefile │ │ │ ├── client.m │ │ │ └── server.m │ │ ├── client_server_XPC │ │ │ ├── Makefile │ │ │ ├── com.crimson.xpc.message_service.plist │ │ │ ├── crimson_xpc_client.c │ │ │ └── crimson_xpc_service.c │ │ ├── client_server_mig │ │ │ ├── Makefile │ │ │ ├── client.c │ │ │ ├── message.defs │ │ │ └── server.c │ │ ├── client_server_no_mig │ │ │ ├── Makefile │ │ │ ├── client.c │ │ │ └── server.c │ │ ├── enum_special_port_rights_pid.c │ │ ├── enum_special_port_rights_self.c │ │ ├── ida_mig_subsystem_scanner.py │ │ ├── port_inspector.c │ │ ├── service_lookup.c │ │ └── task_for_pid_inject.c │ └── system_call_demo.c ├── mac │ ├── DEF CON 25 - Min-Spark-Zheng-macOS-iOS-Kernel-Debugging.pdf │ ├── KDK.pdf │ ├── XNU_exception_handling_map.png │ └── mac_policy_ops └── python │ ├── CrimsonUroboros.py │ └── set_xpc_breaks.py ├── img ├── CrimsonUroboros.jpg ├── Snake_Apple.jpg └── afine_banner.png ├── requirements.txt └── tests ├── CrimsonUroboros.py └── test_CrimsonUroboros.py /.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/.gitignore -------------------------------------------------------------------------------- /App Bundle Extension/custom/XPC/final_secure_test_xpc.zip: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/XPC/final_secure_test_xpc.zip -------------------------------------------------------------------------------- /App Bundle Extension/custom/XPC/secure_test_xpc.zip: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/XPC/secure_test_xpc.zip -------------------------------------------------------------------------------- /App Bundle Extension/custom/XPC/text_terminal_xpc.zip: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/XPC/text_terminal_xpc.zip -------------------------------------------------------------------------------- /App Bundle Extension/custom/calculate_electron_asar_integrity_hash.js: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/calculate_electron_asar_integrity_hash.js -------------------------------------------------------------------------------- /App Bundle Extension/custom/calculate_electron_asar_integrity_hash.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/calculate_electron_asar_integrity_hash.py -------------------------------------------------------------------------------- /App Bundle Extension/custom/calculate_electron_asar_integrity_hash.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/calculate_electron_asar_integrity_hash.sh -------------------------------------------------------------------------------- /App Bundle Extension/custom/electron_patcher.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/electron_patcher.py -------------------------------------------------------------------------------- /App Bundle Extension/custom/make_bundle.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/make_bundle.sh -------------------------------------------------------------------------------- /App Bundle Extension/custom/make_bundle_exe.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/make_bundle_exe.sh -------------------------------------------------------------------------------- /App Bundle Extension/custom/make_dmg.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/custom/make_dmg.sh -------------------------------------------------------------------------------- /App Bundle Extension/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/App Bundle Extension/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /Article_tags.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/Article_tags.md -------------------------------------------------------------------------------- /I. Mach-O/custom/CFBundleCopyExecutableArchitecturesForURL.swift: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/custom/CFBundleCopyExecutableArchitecturesForURL.swift -------------------------------------------------------------------------------- /I. Mach-O/custom/MyBundle.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/custom/MyBundle.c -------------------------------------------------------------------------------- /I. Mach-O/custom/hello.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/custom/hello.c -------------------------------------------------------------------------------- /I. Mach-O/custom/libmagic.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/custom/libmagic.sh -------------------------------------------------------------------------------- /I. Mach-O/custom/mylib.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/custom/mylib.c -------------------------------------------------------------------------------- /I. Mach-O/mac/byte_order.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/byte_order.h -------------------------------------------------------------------------------- /I. Mach-O/mac/fat.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/fat.h -------------------------------------------------------------------------------- /I. Mach-O/mac/fixup-chains.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/fixup-chains.h -------------------------------------------------------------------------------- /I. Mach-O/mac/loader.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/loader.h -------------------------------------------------------------------------------- /I. Mach-O/mac/mach_loader.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/mach_loader.c -------------------------------------------------------------------------------- /I. Mach-O/mac/machine.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/machine.h -------------------------------------------------------------------------------- /I. Mach-O/mac/nlist.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/nlist.h -------------------------------------------------------------------------------- /I. Mach-O/mac/vm_param.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/vm_param.h -------------------------------------------------------------------------------- /I. Mach-O/mac/vm_prot.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/vm_prot.h -------------------------------------------------------------------------------- /I. Mach-O/mac/vmparam.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/mac/vmparam.h -------------------------------------------------------------------------------- /I. Mach-O/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /I. Mach-O/python/MachOFileFinder.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/python/MachOFileFinder.py -------------------------------------------------------------------------------- /I. Mach-O/python/create_macho_samples.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/python/create_macho_samples.py -------------------------------------------------------------------------------- /I. Mach-O/python/r2_dd.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/I. Mach-O/python/r2_dd.py -------------------------------------------------------------------------------- /II. Code Signing/custom/extract_cms.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/II. Code Signing/custom/extract_cms.sh -------------------------------------------------------------------------------- /II. Code Signing/mac/CSCommon.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/II. Code Signing/mac/CSCommon.h -------------------------------------------------------------------------------- /II. Code Signing/mac/cs_blobs.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/II. Code Signing/mac/cs_blobs.h -------------------------------------------------------------------------------- /II. Code Signing/mac/trustcache.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/II. Code Signing/mac/trustcache.h -------------------------------------------------------------------------------- /II. Code Signing/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/II. Code Signing/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /II. Code Signing/python/SignatureReader.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/II. Code Signing/python/SignatureReader.py -------------------------------------------------------------------------------- /II. Code Signing/python/TrustCacheParser.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/II. Code Signing/python/TrustCacheParser.py -------------------------------------------------------------------------------- /III. Checksec/custom/aslr_test.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/custom/aslr_test.c -------------------------------------------------------------------------------- /III. Checksec/custom/buffer_overflow.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/custom/buffer_overflow.c -------------------------------------------------------------------------------- /III. Checksec/custom/example.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/custom/example.m -------------------------------------------------------------------------------- /III. Checksec/custom/heap_example.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/custom/heap_example.c -------------------------------------------------------------------------------- /III. Checksec/custom/hello.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/custom/hello.c -------------------------------------------------------------------------------- /III. Checksec/mac/Header.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/mac/Header.cpp -------------------------------------------------------------------------------- /III. Checksec/mac/SecCode.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/mac/SecCode.cpp -------------------------------------------------------------------------------- /III. Checksec/mac/loader.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/mac/loader.h -------------------------------------------------------------------------------- /III. Checksec/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /III. Checksec/python/LCFinder.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/python/LCFinder.py -------------------------------------------------------------------------------- /III. Checksec/python/ModifyMachOFlags.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/III. Checksec/python/ModifyMachOFlags.py -------------------------------------------------------------------------------- /IV. Dylibs/custom/lib1.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/lib1.c -------------------------------------------------------------------------------- /IV. Dylibs/custom/lib1.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/lib1.h -------------------------------------------------------------------------------- /IV. Dylibs/custom/lib2.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/lib2.c -------------------------------------------------------------------------------- /IV. Dylibs/custom/lib2.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/lib2.h -------------------------------------------------------------------------------- /IV. Dylibs/custom/m.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/m.c -------------------------------------------------------------------------------- /IV. Dylibs/custom/main.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/main.c -------------------------------------------------------------------------------- /IV. Dylibs/custom/mylib.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/mylib.c -------------------------------------------------------------------------------- /IV. Dylibs/custom/mylib.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/mylib.h -------------------------------------------------------------------------------- /IV. Dylibs/custom/use_mylib.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/custom/use_mylib.c -------------------------------------------------------------------------------- /IV. Dylibs/macos/Header.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/macos/Header.cpp -------------------------------------------------------------------------------- /IV. Dylibs/macos/ImageLoader.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/macos/ImageLoader.cpp -------------------------------------------------------------------------------- /IV. Dylibs/macos/Loader.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/macos/Loader.cpp -------------------------------------------------------------------------------- /IV. Dylibs/macos/MachOFile.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/macos/MachOFile.cpp -------------------------------------------------------------------------------- /IV. Dylibs/macos/loader.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/macos/loader.h -------------------------------------------------------------------------------- /IV. Dylibs/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /IV. Dylibs/python/MachODylibLoadCommandsFinder.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IV. Dylibs/python/MachODylibLoadCommandsFinder.py -------------------------------------------------------------------------------- /IX. TCC/custom/FDA_mount_apfs.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/custom/FDA_mount_apfs.sh -------------------------------------------------------------------------------- /IX. TCC/custom/app_UUID_finder_v1.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/custom/app_UUID_finder_v1.sh -------------------------------------------------------------------------------- /IX. TCC/custom/app_UUID_finder_v2.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/custom/app_UUID_finder_v2.sh -------------------------------------------------------------------------------- /IX. TCC/custom/uuid_checker.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/custom/uuid_checker.sh -------------------------------------------------------------------------------- /IX. TCC/mac/TCC CheatSheet.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/mac/TCC CheatSheet.md -------------------------------------------------------------------------------- /IX. TCC/mac/kTCCService_constants.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/mac/kTCCService_constants.txt -------------------------------------------------------------------------------- /IX. TCC/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /IX. TCC/python/TCCParser.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/python/TCCParser.py -------------------------------------------------------------------------------- /IX. TCC/python/UUIDFinder.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/python/UUIDFinder.py -------------------------------------------------------------------------------- /IX. TCC/python/get_uuid.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/python/get_uuid.py -------------------------------------------------------------------------------- /IX. TCC/python/uuid_manager.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/python/uuid_manager.py -------------------------------------------------------------------------------- /IX. TCC/python/xattr_ng.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/IX. TCC/python/xattr_ng.py -------------------------------------------------------------------------------- /LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/LICENSE -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/README.md -------------------------------------------------------------------------------- /TOOLS.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/TOOLS.md -------------------------------------------------------------------------------- /V. Dyld/custom/arg_printer.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/custom/arg_printer.c -------------------------------------------------------------------------------- /V. Dyld/custom/con_des.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/custom/con_des.c -------------------------------------------------------------------------------- /V. Dyld/custom/hello.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/custom/hello.c -------------------------------------------------------------------------------- /V. Dyld/custom/interpose.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/custom/interpose.c -------------------------------------------------------------------------------- /V. Dyld/custom/lambda_capture_example.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/custom/lambda_capture_example.cpp -------------------------------------------------------------------------------- /V. Dyld/custom/rosetta_dyld_is_translated_pointer_example.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/custom/rosetta_dyld_is_translated_pointer_example.c -------------------------------------------------------------------------------- /V. Dyld/macos/RE/ignite/_dylib_cache_fire: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/macos/RE/ignite/_dylib_cache_fire -------------------------------------------------------------------------------- /V. Dyld/macos/RE/ignite/_graft_fetch_fire: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/macos/RE/ignite/_graft_fetch_fire -------------------------------------------------------------------------------- /V. Dyld/macos/RE/ignite/_graft_select_fire: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/macos/RE/ignite/_graft_select_fire -------------------------------------------------------------------------------- /V. Dyld/macos/RE/ignite/_hello_fire: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/macos/RE/ignite/_hello_fire -------------------------------------------------------------------------------- /V. Dyld/macos/RE/ignite/_stage_goodbye: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/macos/RE/ignite/_stage_goodbye -------------------------------------------------------------------------------- /V. Dyld/macos/RE/ignite/ignition_get_shared_cache_directory: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/macos/RE/ignite/ignition_get_shared_cache_directory -------------------------------------------------------------------------------- /V. Dyld/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/V. Dyld/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /VI. AMFI/custom/AMFI_test.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/custom/AMFI_test.sh -------------------------------------------------------------------------------- /VI. AMFI/custom/entitlements.plist: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/custom/entitlements.plist -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/AMFI_STARTUP.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/AMFI_STARTUP.png -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/AppleMagicDirectories.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/AppleMagicDirectories.txt -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/GHIDRA_initializeAppleMobileFileIntegrity.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/GHIDRA_initializeAppleMobileFileIntegrity.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/GHIDRA_macos_dyld_policy_at_path.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/GHIDRA_macos_dyld_policy_at_path.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/GHIDRA_macos_dyld_policy_collect_state.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/GHIDRA_macos_dyld_policy_collect_state.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/GHIDRA_verify_code_directory.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/GHIDRA_verify_code_directory.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/GHIDRA_vnode_check_signature.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/GHIDRA_vnode_check_signature.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/IOKitPersonalities.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/IOKitPersonalities.txt -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/PSEUDO_initializeAppleMobileFileIntegrity.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/PSEUDO_initializeAppleMobileFileIntegrity.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/PSEUDO_macos_dyld_policy_at_path.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/PSEUDO_macos_dyld_policy_at_path.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/PSEUDO_macos_dyld_policy_collect_state.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/PSEUDO_macos_dyld_policy_collect_state.c -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/boot_args.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/boot_args.txt -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/dependencies.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/dependencies.txt -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/exports.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/exports.txt -------------------------------------------------------------------------------- /VI. AMFI/mac/AMFI_RE/imports.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/mac/AMFI_RE/imports.txt -------------------------------------------------------------------------------- /VI. AMFI/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /VI. AMFI/python/MIG_detect.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/python/MIG_detect.py -------------------------------------------------------------------------------- /VI. AMFI/python/check_amfi.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VI. AMFI/python/check_amfi.py -------------------------------------------------------------------------------- /VII. Antivirus/custom/trace_execve.d: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/custom/trace_execve.d -------------------------------------------------------------------------------- /VII. Antivirus/mac/Bundles of Joy.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/Bundles of Joy.pdf -------------------------------------------------------------------------------- /VII. Antivirus/mac/Exposing Gatekeeper - Patrick Wardle.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/Exposing Gatekeeper - Patrick Wardle.pdf -------------------------------------------------------------------------------- /VII. Antivirus/mac/_LSLaunch.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/_LSLaunch.c -------------------------------------------------------------------------------- /VII. Antivirus/mac/_LSLaunchWithRunningboard.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/_LSLaunchWithRunningboard.c -------------------------------------------------------------------------------- /VII. Antivirus/mac/_spawn_via_launchd.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/_spawn_via_launchd.c -------------------------------------------------------------------------------- /VII. Antivirus/mac/apply_exec_quarantine.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/apply_exec_quarantine.c -------------------------------------------------------------------------------- /VII. Antivirus/mac/execve_call_stack.log: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/execve_call_stack.log -------------------------------------------------------------------------------- /VII. Antivirus/mac/quarantine_get_flags.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/quarantine_get_flags.c -------------------------------------------------------------------------------- /VII. Antivirus/mac/quarantine_getinfo.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/quarantine_getinfo.c -------------------------------------------------------------------------------- /VII. Antivirus/mac/quarantine_info_parse.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/mac/quarantine_info_parse.c -------------------------------------------------------------------------------- /VII. Antivirus/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VII. Antivirus/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /VIII. Sandbox/custom/sandbox_detector.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/custom/sandbox_detector.c -------------------------------------------------------------------------------- /VIII. Sandbox/custom/sandbox_validator.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/custom/sandbox_validator.c -------------------------------------------------------------------------------- /VIII. Sandbox/custom/sbpl_compiler_wrapper.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/custom/sbpl_compiler_wrapper.c -------------------------------------------------------------------------------- /VIII. Sandbox/custom/sip_check.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/custom/sip_check.c -------------------------------------------------------------------------------- /VIII. Sandbox/custom/sip_check.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/custom/sip_check.py -------------------------------------------------------------------------------- /VIII. Sandbox/mac/Apple-Sandbox-Guide-v1.0.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/Apple-Sandbox-Guide-v1.0.pdf -------------------------------------------------------------------------------- /VIII. Sandbox/mac/The Apple Sandbox 2011 - Dionysus Blazakis.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/The Apple Sandbox 2011 - Dionysus Blazakis.pdf -------------------------------------------------------------------------------- /VIII. Sandbox/mac/_compile.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/_compile.c -------------------------------------------------------------------------------- /VIII. Sandbox/mac/_sandbox_compile_file.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/_sandbox_compile_file.c -------------------------------------------------------------------------------- /VIII. Sandbox/mac/sandbox.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/sandbox.h -------------------------------------------------------------------------------- /VIII. Sandbox/mac/sandbox_hooks_list.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/sandbox_hooks_list.txt -------------------------------------------------------------------------------- /VIII. Sandbox/mac/sip_entitlements.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/sip_entitlements.txt -------------------------------------------------------------------------------- /VIII. Sandbox/mac/sonoma_sandbox_operations.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/mac/sonoma_sandbox_operations.txt -------------------------------------------------------------------------------- /VIII. Sandbox/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /VIII. Sandbox/python/crimson_waccess.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/python/crimson_waccess.py -------------------------------------------------------------------------------- /VIII. Sandbox/python/make_plist.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/python/make_plist.py -------------------------------------------------------------------------------- /VIII. Sandbox/python/sandbox_inspector.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/python/sandbox_inspector.py -------------------------------------------------------------------------------- /VIII. Sandbox/python/sandbox_operations_extractor.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/python/sandbox_operations_extractor.py -------------------------------------------------------------------------------- /VIII. Sandbox/python/sip_tester: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/VIII. Sandbox/python/sip_tester -------------------------------------------------------------------------------- /X. NU/custom/CommPageParser.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/CommPageParser.c -------------------------------------------------------------------------------- /X. NU/custom/HelloKext/HelloWorldKext.xcodeproj/project.pbxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/HelloKext/HelloWorldKext.xcodeproj/project.pbxproj -------------------------------------------------------------------------------- /X. NU/custom/HelloKext/src/HelloWorld.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/HelloKext/src/HelloWorld.c -------------------------------------------------------------------------------- /X. NU/custom/HelloKext/src/Info.plist: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/HelloKext/src/Info.plist -------------------------------------------------------------------------------- /X. NU/custom/drivers/AppleJPEGDriver_method_0.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/AppleJPEGDriver_method_0.cpp -------------------------------------------------------------------------------- /X. NU/custom/drivers/AppleJPEGDriver_method_0.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/AppleJPEGDriver_method_0.py -------------------------------------------------------------------------------- /X. NU/custom/drivers/AppleJPEGDriver_method_1.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/AppleJPEGDriver_method_1.cpp -------------------------------------------------------------------------------- /X. NU/custom/drivers/DKIOCEJECT_ioctl.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/DKIOCEJECT_ioctl.c -------------------------------------------------------------------------------- /X. NU/custom/drivers/IOVerify.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/IOVerify.c -------------------------------------------------------------------------------- /X. NU/custom/drivers/dtrace_NewUserClient.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/dtrace_NewUserClient.py -------------------------------------------------------------------------------- /X. NU/custom/drivers/dtrace_externalMethod.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/dtrace_externalMethod.py -------------------------------------------------------------------------------- /X. NU/custom/drivers/format_externalmethods.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/format_externalmethods.py -------------------------------------------------------------------------------- /X. NU/custom/drivers/ifstatus.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/ifstatus.c -------------------------------------------------------------------------------- /X. NU/custom/drivers/iokit_dump.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/iokit_dump.py -------------------------------------------------------------------------------- /X. NU/custom/drivers/iokit_tracer.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/iokit_tracer.py -------------------------------------------------------------------------------- /X. NU/custom/drivers/print_externalmethods.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/print_externalmethods.py -------------------------------------------------------------------------------- /X. NU/custom/drivers/trace_ioserviceopen.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/drivers/trace_ioserviceopen.py -------------------------------------------------------------------------------- /X. NU/custom/mach_call_demo.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_call_demo.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_CFMessagePort/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_CFMessagePort/Makefile -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_CFMessagePort/client.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_CFMessagePort/client.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_CFMessagePort/server.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_CFMessagePort/server.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSConnection/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSConnection/Makefile -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSConnection/client.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSConnection/client.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSConnection/server.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSConnection/server.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSMachPort/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSMachPort/Makefile -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSMachPort/client.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSMachPort/client.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSMachPort/server.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSMachPort/server.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSNotification/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSNotification/Makefile -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSNotification/client.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSNotification/client.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_NSNotification/server.m: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_NSNotification/server.m -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_XPC/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_XPC/Makefile -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_XPC/com.crimson.xpc.message_service.plist: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_XPC/com.crimson.xpc.message_service.plist -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_XPC/crimson_xpc_client.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_XPC/crimson_xpc_client.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_XPC/crimson_xpc_service.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_XPC/crimson_xpc_service.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_mig/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_mig/Makefile -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_mig/client.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_mig/client.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_mig/message.defs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_mig/message.defs -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_mig/server.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_mig/server.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_no_mig/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_no_mig/Makefile -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_no_mig/client.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_no_mig/client.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/client_server_no_mig/server.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/client_server_no_mig/server.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/enum_special_port_rights_pid.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/enum_special_port_rights_pid.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/enum_special_port_rights_self.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/enum_special_port_rights_self.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/ida_mig_subsystem_scanner.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/ida_mig_subsystem_scanner.py -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/port_inspector.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/port_inspector.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/service_lookup.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/service_lookup.c -------------------------------------------------------------------------------- /X. NU/custom/mach_ipc/task_for_pid_inject.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/mach_ipc/task_for_pid_inject.c -------------------------------------------------------------------------------- /X. NU/custom/system_call_demo.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/custom/system_call_demo.c -------------------------------------------------------------------------------- /X. NU/mac/DEF CON 25 - Min-Spark-Zheng-macOS-iOS-Kernel-Debugging.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/mac/DEF CON 25 - Min-Spark-Zheng-macOS-iOS-Kernel-Debugging.pdf -------------------------------------------------------------------------------- /X. NU/mac/KDK.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/mac/KDK.pdf -------------------------------------------------------------------------------- /X. NU/mac/XNU_exception_handling_map.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/mac/XNU_exception_handling_map.png -------------------------------------------------------------------------------- /X. NU/mac/mac_policy_ops: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/mac/mac_policy_ops -------------------------------------------------------------------------------- /X. NU/python/CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /X. NU/python/set_xpc_breaks.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/X. NU/python/set_xpc_breaks.py -------------------------------------------------------------------------------- /img/CrimsonUroboros.jpg: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/img/CrimsonUroboros.jpg -------------------------------------------------------------------------------- /img/Snake_Apple.jpg: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/img/Snake_Apple.jpg -------------------------------------------------------------------------------- /img/afine_banner.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/img/afine_banner.png -------------------------------------------------------------------------------- /requirements.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/requirements.txt -------------------------------------------------------------------------------- /tests/CrimsonUroboros.py: -------------------------------------------------------------------------------- 1 | ../X. NU/python/CrimsonUroboros.py -------------------------------------------------------------------------------- /tests/test_CrimsonUroboros.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Karmaz95/Snake_Apple/HEAD/tests/test_CrimsonUroboros.py --------------------------------------------------------------------------------