Skip to content
View csrXamfi's full-sized avatar

Block or report csrXamfi

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please donโ€™t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
csrXamfi/README.md

csrXamfi ๐Ÿ–ฅ๏ธ๐Ÿ”’

Hi, Iโ€™m a macOS security researcher focused on understanding system internals, kernel mechanisms, and Apple security subsystems.
I explore and analyze mechanisms like AMFI, SIP/CSR, Mach, kernel memory protections, and I develop PoCs to study their behavior.


๐Ÿ”น About Me

  • Passionate about low-level macOS security and reverse engineering
  • Deep understanding of kernel, sandbox, and system integrity mechanisms
  • Focused on AppleMobileFileIntegrity (AMFI), CSR/SIP, and Mach kernel interfaces
  • Research style: practical experimentation + analytical reasoning
  • Future goal: contribute to security research, exploit development, and responsible disclosure

๐Ÿ› ๏ธ Research Areas

  • AMFI & CSR/SIP: exploring Appleโ€™s code signing, integrity policies, and boot-time protections
  • Kernel Internals: memory management, Mach ports, task_for_pid, system calls
  • Sandbox & Security Mechanisms: bypass techniques and PoC creation
  • Exploit Development: building safe proof-of-concepts to study system behavior

๐Ÿ“‚ Tools & Skills

  • Languages: C, C++, Swift, Assembly (x86/ARM/ARM64e), JavaScript for V8
  • Reverse Engineering: LLDB, Hopper, IDA, Ghidra
  • macOS internals: Mach, XNU kernel, AMFI, CSR/SIP, NVRAM
  • Networking & Security: IOKit, system calls, sandbox analysis

๐Ÿ”น Selected Projects / Experiments

  • csr_info โ€“ custom utility to read and check CSR/SIP flags
  • PoCs demonstrating AMFI behavior and system call interactions
  • Research notes on task_for_pid, sandbox escape, and kernel object management
  • Experiments with low-level memory primitives, Mach ports, and kernel debugging

๐Ÿ“ˆ Goals

  • Build a complete understanding of macOS security mechanisms
  • Document findings in PoCs and educational notes
  • Gradually expand into broader Apple ecosystem security research

โšก Fun Fact

  • Strong believer in understanding systems deeply before attempting exploits

๐Ÿ“ซ Contact

Popular repositories Loading

  1. Virtual-iBoot-Fun Virtual-iBoot-Fun Public

    For fun with iBoot (iBSS, iBEC)

    Objective-C 7 1

  2. macosvm-gdb macosvm-gdb Public

    macosvm with GDB stub

    Objective-C 6 3

  3. CVE-2025-43400 CVE-2025-43400 Public

    CVE-2025-43400 (video + report)

    5 1

  4. CVE-2025-43426 CVE-2025-43426 Public

    CVE-2025-43426 (video + report)

    5

  5. Kass Kass Public

    Forked from nmggithub/Kass

    Kass: A security research tool.

    Swift 2

  6. Xcode-Kext-Dev-template Xcode-Kext-Dev-template Public

    C++ 2