Skip to content

Instantly share code, notes, and snippets.

@foxlet
Created December 22, 2017 03:07
Show Gist options
  • Star 2 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save foxlet/f032058cc94f501b19d791247ead8a17 to your computer and use it in GitHub Desktop.
Save foxlet/f032058cc94f501b19d791247ead8a17 to your computer and use it in GitHub Desktop.
iPhone 6S Plus (iPhone8,2 n66ap) v0rtex-S offsets
OFFSET_ZONE_MAP = 0xfffffff007548478;
OFFSET_KERNEL_MAP = 0xfffffff0075a4050;
OFFSET_KERNEL_TASK = 0xfffffff0075a4048;
OFFSET_REALHOST = 0xfffffff00752aba0;
OFFSET_BZERO = 0xfffffff007081f80;
OFFSET_BCOPY = 0xfffffff007081dc0;
OFFSET_COPYIN = 0xfffffff0071803a0;
OFFSET_COPYOUT = 0xfffffff007180594;
OFFSET_CHGPROCCNT = 0xfffffff00738d894; // new offset
OFFSET_KAUTH_CRED_REF = 0xfffffff007367c18; // new offset
OFFSET_IPC_PORT_ALLOC_SPECIAL = 0xfffffff007099e94;
OFFSET_IPC_KOBJECT_SET = 0xfffffff0070ad16c;
OFFSET_IPC_PORT_MAKE_SEND = 0xfffffff0070999b8;
OFFSET_IOSURFACEROOTUSERCLIENT_VTAB = 0xfffffff006e7c9f8;
OFFSET_ROP_ADD_X0_X0_0x10 = 0xfffffff006462174;
OFFSET_ROP_LDR_X0_X0_0x10 = 0xfffffff0063b0a84; // new offset
OFFSET_ROOT_MOUNT_V_NODE = 0xfffffff0075a40b0; // new offset
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment