Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add the option to analyze kernelcache in ghidra #351

Open
Luxvao opened this issue Nov 4, 2023 · 2 comments
Open

Add the option to analyze kernelcache in ghidra #351

Luxvao opened this issue Nov 4, 2023 · 2 comments
Labels
enhancement New feature or request

Comments

@Luxvao
Copy link

Luxvao commented Nov 4, 2023

Could it be added? I think ghidra is a good alternative to ida so I think it should be added.

@blacktop blacktop added the enhancement New feature or request label Feb 8, 2024
@blacktop
Copy link
Owner

blacktop commented Feb 8, 2024

I'd ❤️ to add ghidra support as well. Not sure when I'll have time, but I def like the idea. It's been a while since I've used ghidra for kernel analysis, I think you need to run a LOT of fixup scripts on it to make the output usable? Not sure if that's still the case?

If so what plugins/scripts do we need to add as well?

@Luxvao
Copy link
Author

Luxvao commented Feb 8, 2024

I’ve been using plain ghidra without any plugins for my ctfs and stuff, but I’m not sure what plugins are there for kernel analysis. I’m not experienced in kernel analysis at all (I’m trying to get into it). A quick google search shows this one framework called ghidra_kernelcache which supports ios 12, 13, 14 and 15.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants