IDAPython utility to help with iBoot64 reverse engineering
Switch branches/tags
Nothing to show
Clone or download
Fetching latest commit…
Cannot retrieve the latest commit at this time.
Permalink
Failed to load latest commit information.
.gitignore
README.md
iBoot64helper.py
screenshot.png

README.md

iBoot64helper

Introduction

This aims to become an IDAPython utility to help with iBoot64 reverse engineering. Currently it just locates iBoot's proper loading address, rebases the image, and identifies ARM64 functions based on a common function prologue. As you can see in the screenshot below, 1347 functions are recognized after running it on iBoot version 4076.1.43.

It's not much at this point, but hopefully it can help you start reversing the beast ;)

I will be adding features to it, like function renaming based on string usage, etc.

References

iOS RE Wiki