
Alfie
@alfiecg_dev
Followers
8K
Following
506
Media
25
Statuses
239
18 • iOS @ Cellebrite Labs
undefined
Joined August 2022
I’m thrilled to announce that I will be joining @CellebriteLabs next month, kickstarting my career as a full-time iOS researcher. I hope to wrap up some final projects and release them in the coming weeks, but most of my public work will stop after this - it’s been a blast! 🚀💯
50
17
345
🔺iPhone models announced today include Memory Integrity Enforcement, the culmination of an unprecedented design and engineering effort that we believe represents the most significant upgrade to memory safety in the history of consumer operating systems.
security.apple.com
Memory Integrity Enforcement (MIE) is the culmination of an unprecedented design and engineering effort spanning half a decade that combines the unique strengths of Apple silicon hardware with our...
54
499
3K
[POC2025] SPEAKER UPDATE 4⃣ 👤 Alfie CG(@alfiecg_dev) – "Trigon: Developing a deterministic iOS Kernel Exploit" #POC2025
0
17
106
Brief info and POC for this week's Apple 0click iOS 18.6.1 RCE bug CVE-2025-43300 https://t.co/EL3qg56N8X
16
220
793
@dora2ios For anyone wondering how I got tfp0, the source code is printed in the terminal window during the video. Easiest way to get tfp0 on iOS 14+ 🚨
6
1
32
Great exploit from staturnz - for those of you who hadn’t realised, this is the same bug used in Trigon, working all the way back to iOS 3!
oob_entry: tfp0 kernel exploit supporting every armv7 iOS version (iOS 3.0-10.3.4) https://t.co/ElH1A88FoX
4
8
111
Just released a short writeup for the A9 version of the Trigon exploit, which involves getting code execution on a coprocessor before exploiting the kernel - enjoy!
alfiecg.uk
Where did we leave off? Background: KTRR IORVBAR Coprocessors Always-On Processor Investigation AXI? What’s that?! Mapping DRAM Code execution Improving the strategy What about A7 and A8(X)? Conclu...
4
36
174
Me and @staturnzdev have been going to great lengths to try and get a truly deterministic Trigon exploit working for A9. This is one of the more complicated strategies, but it's working pretty nicely! Expect an open-source release and writeup in the future. 💯
4
9
160
A8, A9, A10 and A11 all jailbroken via my iOS 14 jailbreak, Apex. Release soon (hopefully).
26
41
351
Finally managed to exploit Trigon on arm64e! Certainly more complicated than arm64, but it uses some cool tricks that certainly make it a really nice exploit. Just like the original, it’s a very quick exploit, and of course deterministic too.
18
46
399
This is unexploitable due to the anti-replay integrity tree, but it's still been a cool project to work on and a great way to learn a bit more about the SEP.
1
0
33
I've just released the slides from my @0x41con talk with @opa334dev - "The State of iOS Jailbreaking in 2025". https://t.co/CfUjUNo5jq
github.com
Contribute to alfiecg24/Presentations development by creating an account on GitHub.
9
70
374