Twitter | Search | |
Timm Kandziora
Philosopher, writer and developer.
1,534
Tweets
93
Following
4,045
Followers
Tweets
Timm Kandziora Aug 10
Reply Retweet Like
Timm Kandziora Aug 10
Replying to @xerub
Got you, thanks.
Reply Retweet Like
Timm Kandziora Aug 10
What exactly is the reason why kexty doesn’t work on iOS 10? Und Glückwünsche zum Release!
Reply Retweet Like
Timm Kandziora Aug 10
Replying to @xerub
That is freaking awesome. Congrats . Also, that’s a sign to update your vulnerable devices to at least iOS 10.
Reply Retweet Like
Timm Kandziora Aug 4
Replying to @HBRN8
Thanks, please check your mail.
Reply Retweet Like
Timm Kandziora Aug 4
Replying to @HBRN8
shinvou at gmail dot com. Thanks!
Reply Retweet Like
Timm Kandziora Aug 4
Replying to @HBRN8
Can you give me crash logs?
Reply Retweet Like
Timm Kandziora Aug 2
Replying to @madderman1 @i0n1c
I‘m not developing jailbreaks. Apart from that, you are free not to back his kickstarter, so that‘s not ripping off. ;)
Reply Retweet Like
Timm Kandziora Aug 2
In terms of jailbreaking: I‘m not dead yet, but I don‘t have any jailbroken devices to work with.
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
You are welcome. :)
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
Dunno about iOS, but this works fine from 10.10 to 10.13, try it out. :)
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
I’d say everything what nm /System/Library/Kernels/kernel outputs is accessible. At least I’ve never experienced it otherwise.
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
Never had to deal with that boot-arg, so dunno; but since you are in kernel space you can read the kernel and calculate the functions.
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
My code ~similar to this code, but I don’t want to share it. Have a look at this and you’ll understand. :P
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
without ASLR slide i mean
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
Not a problem. You have the base address of the kernel already in runtime, right?
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
Well, ok, nice. You should get the kernel symbols dynamically tho. :P
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza
Do you still need root/entitlements?
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @s1guza @xerub
What‘s this about exactly? Does this allow tfp0 from userland?
Reply Retweet Like
Timm Kandziora Jul 31
Replying to @osxreverser
Well there are endless possibilities. dyld hooking et al. I actually hook kernel functions and just use your lib-inj cuz im lazy. :P
Reply Retweet Like