10-day longest streak
-
CVE-2026-20687-AppleJPEGDriver-UAF ★ PINNED
CVE-2026-20687: AppleJPEGDriver startDecoder Timeout UAF — iOS/macOS kernel vulnerability leading to deferred panic (A19 Pro, iOS 26.3 RC)
Objective-C ★ 17 3mo agoExplain → -
CVE-2026-28992-IOHIDFamily-FastPathUserClient-Race-Conditions ★ PINNED
UAF and AOP coprocessor panic in IOHIDEventServiceFastPathUserClient. No entitlements, reachable from app sandbox.
Objective-C ★ 12 23d agoExplain → -
AppleKeyStore-close-UAF ★ PINNED
AppleKeyStoreUserClient close() UAF — PoC + diff analysis (bug found/patched by unknown third party in iOS 26.3 RC, not my discovery)
Objective-C ★ 27 3mo agoExplain → -
SEP-Exhaustion-Kernel-Panic ★ PINNED
SEP firmware panic via AppleKeyStore - iOS/macOS 26.x kernel vulnerability
Objective-C ★ 26 6mo agoExplain → -
CVE-2026-20637-AppleSEPKeyStore-UAF ★ PINNED
CVE-2026-20637: AppleSEPKeyStore Use-After-Free — iOS/macOS kernel vulnerability (patched in 26.4)
Objective-C ★ 55 23d agoExplain → -
WebKit-UAF-ANGLE-OOB-Analysis ★ PINNED
Analysis of CVE-2025-43529 (WebKit UAF) + CVE-2025-14174 (ANGLE OOB) exploit chain - iOS Safari
HTML ★ 103 23d agoExplain → -
defending-code-reference-harness-codex ⑂
Codex-first fork of Anthropic's defending-code-reference-harness for vulnerability discovery and patch validation
Python ★ 77 1mo agoExplain → -
cyanide ▣
Cyanide — iOS tweak runner built on top of the DarkSword kernel r/w exploit
Objective-C ★ 51 24d agoExplain → -
WebKit-NavigationAPI-SOP-Bypass
WebKit NavigateEvent.canIntercept SOP bypass via cross-port interception — iOS 26.3.1 BSI (CVE-2026-20643)
HTML ★ 19 23d agoExplain → -
IOSurfaceRootXMLDataPanic
IOSurfaceRootUserClient selector 0 kernel data abort via oversized XML IOSurfaceAddressRanges data — iOS 26.5 (23F77)
Objective-C ★ 12 1mo agoExplain → -
zeroxjf.github.io
No description.
JavaScript ★ 11 27d agoExplain → -
AGXBarrierPanic
AGXCommandBuffer::generateMTLBarriers reachable kernel assertion via out-of-range barrier mask — iOS 26.5 (23F77)
Objective-C ★ 11 2mo agoExplain → -
lightsaber ▣
iOS 18.4-18.6.2 userland exploit chain with JS injection into SpringBoard and other processes. Derived from DarkSword.
JavaScript ★ 5 28d agoExplain → -
hfs-xattr-overflow-extent-alias
macOS HFS xattr overflow-extent aliasing PoC
Python ★ 1 1mo agoExplain → -
skywalk-necp-stale-packet-uaf
macOS Skywalk/NECP stale-packet data.kalloc corruption PoC
C ★ 1 1mo agoExplain → -
hermes-agent ⑂
The agent that grows with you
★ 0 5d agoExplain → -
packer-plugin-lume ⑂
Packer plugin for Lume
★ 0 5d agoExplain → -
cve-2025-43529-arbitrary-ref ⑂
A demonstration of arbitrary address referencing using cve-2025-43529
HTML ★ 0 23d agoExplain →
No repos match these filters.