mirror of
https://github.com/NohamR/pyzule-rw.git
synced 2026-10-11 02:49:40 +00:00
Compare commits
17 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
ce20baae4a | ||
|
|
91494bc3a3 | ||
|
|
edd34f6713 | ||
|
|
c1c0b2294e | ||
|
|
2d16015c78 | ||
|
|
4c979a91e7 | ||
|
|
b4aa6c9b69 | ||
|
|
246f6ace80 | ||
|
|
511cb4bbe3 | ||
|
|
d1c3bc6908 | ||
|
|
8fe0fc2984 | ||
|
|
e315454544 | ||
|
|
9072c91965 | ||
|
|
06a2ea8dad | ||
|
|
55b2ec9d07 | ||
|
|
52b3b11a1a | ||
|
|
4375b7f880 |
22
.github/ISSUE_TEMPLATE/bug.yaml
vendored
Normal file
22
.github/ISSUE_TEMPLATE/bug.yaml
vendored
Normal file
@@ -0,0 +1,22 @@
|
|||||||
|
# thanks to uYouEnhanced for the issue template:
|
||||||
|
# https://github.com/arichornlover/uYouEnhanced/blob/main/.github/ISSUE_TEMPLATE/bug.yaml?plain=1
|
||||||
|
|
||||||
|
name: bug
|
||||||
|
description: report a bug in cyan
|
||||||
|
title: "[bug] "
|
||||||
|
labels: bug
|
||||||
|
body:
|
||||||
|
- type: checkboxes
|
||||||
|
attributes:
|
||||||
|
label: have you searched the existing issues?
|
||||||
|
options:
|
||||||
|
- label: this is a unique issue. i agree that if this isn't a unique issue, i'll be BLOCKED from the cyan repo
|
||||||
|
required: true
|
||||||
|
|
||||||
|
- type: textarea
|
||||||
|
attributes:
|
||||||
|
label: describe the bug.
|
||||||
|
description: attach videos or screenshots if possible
|
||||||
|
validations:
|
||||||
|
required: true
|
||||||
|
|
||||||
22
.github/ISSUE_TEMPLATE/feature_request.yaml
vendored
Normal file
22
.github/ISSUE_TEMPLATE/feature_request.yaml
vendored
Normal file
@@ -0,0 +1,22 @@
|
|||||||
|
# thanks to uYouEnhanced for the issue template:
|
||||||
|
# https://github.com/arichornlover/uYouEnhanced/blob/main/.github/ISSUE_TEMPLATE/bug.yaml?plain=1
|
||||||
|
|
||||||
|
name: feature request
|
||||||
|
description: request a feature to be added to cyan
|
||||||
|
title: "[feature request] "
|
||||||
|
labels: enhancement
|
||||||
|
body:
|
||||||
|
- type: checkboxes
|
||||||
|
attributes:
|
||||||
|
label: have you searched the existing issues?
|
||||||
|
options:
|
||||||
|
- label: this is a unique feature request. i agree that if this isn't a unique request, i'll be BLOCKED from the cyan repo
|
||||||
|
required: true
|
||||||
|
|
||||||
|
- type: textarea
|
||||||
|
attributes:
|
||||||
|
label: describe the feature request.
|
||||||
|
description: what exactly are you requesting? can you provide an example where this would be useful?
|
||||||
|
validations:
|
||||||
|
required: true
|
||||||
|
|
||||||
38
README.md
38
README.md
@@ -2,11 +2,9 @@
|
|||||||
|
|
||||||
a rewrite of [pyzule](https://github.com/asdfzxcvbn/pyzule) that doesn't (completely) suck !!
|
a rewrite of [pyzule](https://github.com/asdfzxcvbn/pyzule) that doesn't (completely) suck !!
|
||||||
|
|
||||||
cyan supports **linux, macOS, WSL, and jailbroken iOS!** all either x86_64 or arm64/aarch64 !!
|
|
||||||
|
|
||||||
## features
|
## features
|
||||||
|
|
||||||
you can open an issue to request a feature :D !!
|
you can open an issue to request a feature :D !! also see my [recommended flags](https://github.com/asdfzxcvbn/pyzule-rw/wiki/recommended-flags)
|
||||||
|
|
||||||
- generate and use shareable .cyan files to configure IPAs!
|
- generate and use shareable .cyan files to configure IPAs!
|
||||||
- inject deb, dylib, framework, bundle, and appex files/folders
|
- inject deb, dylib, framework, bundle, and appex files/folders
|
||||||
@@ -17,22 +15,40 @@ you can open an issue to request a feature :D !!
|
|||||||
- remove watch app
|
- remove watch app
|
||||||
- change the app icon
|
- change the app icon
|
||||||
- fakesign the output ipa/app
|
- fakesign the output ipa/app
|
||||||
|
- add custom entitlements to the main executable
|
||||||
- thin all binaries to arm64, it can LARGELY reduce app size sometimes!
|
- thin all binaries to arm64, it can LARGELY reduce app size sometimes!
|
||||||
- remove all app extensions (or just encrypted ones!)
|
- remove all app extensions (or just encrypted ones!)
|
||||||
|
|
||||||
## install instructions
|
## install instructions
|
||||||
|
|
||||||
|
cyan supports **linux, macOS, WSL, and jailbroken iOS!** all either x86_64 or arm64/aarch64 !!
|
||||||
|
|
||||||
first, make sure you have [ar](https://command-not-found.com/ar) and [tar](https://command-not-found.com/tar) installed
|
first, make sure you have [ar](https://command-not-found.com/ar) and [tar](https://command-not-found.com/tar) installed
|
||||||
|
|
||||||
also obviously install python, version 3.9 or greater is required (the version available on the procursus repo for iOS)
|
also obviously install python, version 3.9 or greater is required
|
||||||
|
|
||||||
1. install [pipx](https://github.com/pypa/pipx?tab=readme-ov-file#install-pipx)
|
the `zip` and `unzip` commands are *optional* dependencies, they may [fix issues when extracting certain IPAs with chinese characters](https://github.com/asdfzxcvbn/pyzule-rw/wiki/file-does-not-exist-(executable)-%3F), etc
|
||||||
2. install cyan: `pipx install --force https://github.com/asdfzxcvbn/pyzule-rw/archive/main.zip`
|
|
||||||
3. follow any instructions `pipx` may have given you, like `pipx ensurepath`
|
|
||||||
4. **if you want to inject dylibs and ARE NOT ON iOS**: `pipx inject cyan lief`
|
|
||||||
5. **if you want to change app icons (iOS NOT supported)**: `pipx inject cyan Pillow`
|
|
||||||
|
|
||||||
to *update*, just run step 2 again !
|
<details>
|
||||||
|
<summary><b>linux/WSL/macOS instructions</b></summary>
|
||||||
|
<br/>
|
||||||
|
<ol>
|
||||||
|
<li>install <a href="https://github.com/pypa/pipx?tab=readme-ov-file#install-pipx">pipx</a></li>
|
||||||
|
<li>install OR update cyan: <code>pipx install --force https://github.com/asdfzxcvbn/pyzule-rw/archive/main.zip</code></li>
|
||||||
|
<li><b>if you want to inject dylibs ON AARCH64 LINUX</b>: <code>pipx inject cyan lief</code></li>
|
||||||
|
<li><b>if you want to change app icons (iOS NOT supported)</b>: <code>pipx inject cyan Pillow</code></li>
|
||||||
|
</ol>
|
||||||
|
</details>
|
||||||
|
|
||||||
|
<details>
|
||||||
|
<summary><b>jailbroken iOS instructions / automated environment (github workflow, etc)</b></summary>
|
||||||
|
<br/>
|
||||||
|
<ol>
|
||||||
|
<li>install OR update cyan: <code>pip install --force-reinstall https://github.com/asdfzxcvbn/pyzule-rw/archive/main.zip</code></li>
|
||||||
|
</ol>
|
||||||
|
</details>
|
||||||
|
|
||||||
|
note: if you installed cyan before v1.1.3 using `pip`, make sure you `pip uninstall cyan`, then verify you have the latest version with `cyan --version`
|
||||||
|
|
||||||
## making cyan files
|
## making cyan files
|
||||||
|
|
||||||
@@ -42,4 +58,6 @@ cyan comes bundled with the `cgen` command, which lets you generate `.cyan` file
|
|||||||
|
|
||||||
- [Al4ise](https://github.com/Al4ise) for the original [Azule](https://github.com/Al4ise/Azule)
|
- [Al4ise](https://github.com/Al4ise) for the original [Azule](https://github.com/Al4ise/Azule)
|
||||||
- [lief-project](https://github.com/lief-project) for [LIEF](https://github.com/lief-project/LIEF)
|
- [lief-project](https://github.com/lief-project) for [LIEF](https://github.com/lief-project/LIEF)
|
||||||
|
- [tyilo](https://github.com/tyilo) for [insert_dylib](https://github.com/tyilo/insert_dylib/) (macOS/iOS)
|
||||||
|
- [LeanVel](https://github.com/LeanVel) for [insert_dylib](https://github.com/LeanVel/insert_dylib) (linux)
|
||||||
|
|
||||||
|
|||||||
@@ -50,6 +50,10 @@ def main() -> None:
|
|||||||
"-k", metavar="icon",
|
"-k", metavar="icon",
|
||||||
help="modify the app's icon"
|
help="modify the app's icon"
|
||||||
)
|
)
|
||||||
|
parser.add_argument(
|
||||||
|
"-x", metavar="entitlements",
|
||||||
|
help="add or modify entitlements to the main binary"
|
||||||
|
)
|
||||||
|
|
||||||
parser.add_argument(
|
parser.add_argument(
|
||||||
"-u", "--remove-supported-devices", action="store_true",
|
"-u", "--remove-supported-devices", action="store_true",
|
||||||
@@ -95,7 +99,7 @@ def main() -> None:
|
|||||||
)
|
)
|
||||||
|
|
||||||
parser.add_argument(
|
parser.add_argument(
|
||||||
"--version", action="version", version="cyan v1.1.3"
|
"--version", action="version", version="cyan v1.2.1"
|
||||||
)
|
)
|
||||||
|
|
||||||
from cyan import logic
|
from cyan import logic
|
||||||
|
|||||||
@@ -4,24 +4,34 @@
|
|||||||
<dict>
|
<dict>
|
||||||
<key>CFBundleDevelopmentRegion</key>
|
<key>CFBundleDevelopmentRegion</key>
|
||||||
<string>English</string>
|
<string>English</string>
|
||||||
|
|
||||||
<key>CFBundleExecutable</key>
|
<key>CFBundleExecutable</key>
|
||||||
<string>Cephei</string>
|
<string>Cephei</string>
|
||||||
|
|
||||||
<key>CFBundleIdentifier</key>
|
<key>CFBundleIdentifier</key>
|
||||||
<string>ws.hbang.common</string>
|
<string>ws.hbang.common</string>
|
||||||
|
|
||||||
<key>CFBundleInfoDictionaryVersion</key>
|
<key>CFBundleInfoDictionaryVersion</key>
|
||||||
<string>6.0</string>
|
<string>6.0</string>
|
||||||
|
|
||||||
<key>CFBundleName</key>
|
<key>CFBundleName</key>
|
||||||
<string>Cephei</string>
|
<string>Cephei</string>
|
||||||
|
|
||||||
<key>CFBundlePackageType</key>
|
<key>CFBundlePackageType</key>
|
||||||
<string>BNDL</string>
|
<string>BNDL</string>
|
||||||
|
|
||||||
<key>CFBundleShortVersionString</key>
|
<key>CFBundleShortVersionString</key>
|
||||||
<string>1.0.0</string>
|
<string>1.0.0</string>
|
||||||
|
|
||||||
<key>CFBundleSignature</key>
|
<key>CFBundleSignature</key>
|
||||||
<string>????</string>
|
<string>????</string>
|
||||||
|
|
||||||
<key>CFBundleVersion</key>
|
<key>CFBundleVersion</key>
|
||||||
<string>1.0</string>
|
<string>1.0</string>
|
||||||
|
|
||||||
<key>DTPlatformName</key>
|
<key>DTPlatformName</key>
|
||||||
<string>iphoneos</string>
|
<string>iphoneos</string>
|
||||||
|
|
||||||
<key>HBPackageIdentifier</key>
|
<key>HBPackageIdentifier</key>
|
||||||
<string>ws.hbang.common</string>
|
<string>ws.hbang.common</string>
|
||||||
</dict>
|
</dict>
|
||||||
|
|||||||
@@ -4,26 +4,37 @@
|
|||||||
<dict>
|
<dict>
|
||||||
<key>CFBundleDevelopmentRegion</key>
|
<key>CFBundleDevelopmentRegion</key>
|
||||||
<string>English</string>
|
<string>English</string>
|
||||||
|
|
||||||
<key>CFBundleExecutable</key>
|
<key>CFBundleExecutable</key>
|
||||||
<string>CepheiPrefs</string>
|
<string>CepheiPrefs</string>
|
||||||
|
|
||||||
<key>CFBundleIdentifier</key>
|
<key>CFBundleIdentifier</key>
|
||||||
<string>ws.hbang.common.prefs</string>
|
<string>ws.hbang.common.prefs</string>
|
||||||
|
|
||||||
<key>CFBundleInfoDictionaryVersion</key>
|
<key>CFBundleInfoDictionaryVersion</key>
|
||||||
<string>6.0</string>
|
<string>6.0</string>
|
||||||
|
|
||||||
<key>CFBundleName</key>
|
<key>CFBundleName</key>
|
||||||
<string>Cephei</string>
|
<string>Cephei</string>
|
||||||
|
|
||||||
<key>CFBundlePackageType</key>
|
<key>CFBundlePackageType</key>
|
||||||
<string>BNDL</string>
|
<string>BNDL</string>
|
||||||
|
|
||||||
<key>CFBundleShortVersionString</key>
|
<key>CFBundleShortVersionString</key>
|
||||||
<string>1.0.0</string>
|
<string>1.0.0</string>
|
||||||
|
|
||||||
<key>CFBundleSignature</key>
|
<key>CFBundleSignature</key>
|
||||||
<string>????</string>
|
<string>????</string>
|
||||||
|
|
||||||
<key>CFBundleVersion</key>
|
<key>CFBundleVersion</key>
|
||||||
<string>1.0</string>
|
<string>1.0</string>
|
||||||
|
|
||||||
<key>DTPlatformName</key>
|
<key>DTPlatformName</key>
|
||||||
<string>iphoneos</string>
|
<string>iphoneos</string>
|
||||||
|
|
||||||
<key>HBPackageIdentifier</key>
|
<key>HBPackageIdentifier</key>
|
||||||
<string>ws.hbang.common</string>
|
<string>ws.hbang.common</string>
|
||||||
|
|
||||||
<key>NSPrincipalClass</key>
|
<key>NSPrincipalClass</key>
|
||||||
<string>HBDemoRootListController</string>
|
<string>HBDemoRootListController</string>
|
||||||
</dict>
|
</dict>
|
||||||
|
|||||||
Binary file not shown.
@@ -61,6 +61,8 @@ def main(parser: ArgumentParser) -> None:
|
|||||||
app.plist.change_minimum_version(args.m)
|
app.plist.change_minimum_version(args.m)
|
||||||
if args.k is not None:
|
if args.k is not None:
|
||||||
app.change_icon(args.k, tmpdir)
|
app.change_icon(args.k, tmpdir)
|
||||||
|
if args.x is not None:
|
||||||
|
app.executable.merge_entitlements(args.x)
|
||||||
|
|
||||||
if args.remove_supported_devices:
|
if args.remove_supported_devices:
|
||||||
app.plist.remove_uisd()
|
app.plist.remove_uisd()
|
||||||
@@ -86,6 +88,6 @@ def main(parser: ArgumentParser) -> None:
|
|||||||
if os.path.isdir(args.o):
|
if os.path.isdir(args.o):
|
||||||
shutil.rmtree(args.o)
|
shutil.rmtree(args.o)
|
||||||
|
|
||||||
shutil.move(app_path, args.o)
|
shutil.move(app.path, args.o)
|
||||||
print(f"[*] generated app at {args.o}")
|
print(f"[*] generated app at {args.o}")
|
||||||
|
|
||||||
|
|||||||
@@ -1,12 +1,14 @@
|
|||||||
from .app_bundle import AppBundle
|
from .app_bundle import AppBundle
|
||||||
from .executable import Executable
|
from .executable import Executable
|
||||||
from .leaving_cm import LeavingCM
|
from .leaving_cm import LeavingCM
|
||||||
|
from .main_executable import MainExecutable
|
||||||
from .plist import Plist
|
from .plist import Plist
|
||||||
|
|
||||||
__all__ = [
|
__all__ = [
|
||||||
"AppBundle",
|
"AppBundle",
|
||||||
"Executable",
|
"Executable",
|
||||||
"LeavingCM",
|
"LeavingCM",
|
||||||
|
"MainExecutable",
|
||||||
"Plist"
|
"Plist"
|
||||||
]
|
]
|
||||||
|
|
||||||
|
|||||||
@@ -5,6 +5,7 @@ from uuid import uuid4
|
|||||||
from typing import Optional, Literal
|
from typing import Optional, Literal
|
||||||
|
|
||||||
from .executable import Executable
|
from .executable import Executable
|
||||||
|
from .main_executable import MainExecutable
|
||||||
from .plist import Plist
|
from .plist import Plist
|
||||||
|
|
||||||
class AppBundle:
|
class AppBundle:
|
||||||
@@ -12,7 +13,7 @@ class AppBundle:
|
|||||||
self.path = path
|
self.path = path
|
||||||
self.plist = Plist(f"{path}/Info.plist", path)
|
self.plist = Plist(f"{path}/Info.plist", path)
|
||||||
|
|
||||||
self.executable = Executable(
|
self.executable = MainExecutable(
|
||||||
f"{path}/{self.plist['CFBundleExecutable']}",
|
f"{path}/{self.plist['CFBundleExecutable']}",
|
||||||
path
|
path
|
||||||
)
|
)
|
||||||
|
|||||||
@@ -1,6 +1,5 @@
|
|||||||
import os
|
import os
|
||||||
import sys
|
import sys
|
||||||
import shutil
|
|
||||||
import subprocess
|
import subprocess
|
||||||
from typing import Optional
|
from typing import Optional
|
||||||
|
|
||||||
@@ -18,6 +17,7 @@ class Executable:
|
|||||||
ldid = f"{specific}/ldid"
|
ldid = f"{specific}/ldid"
|
||||||
lipo = f"{specific}/lipo"
|
lipo = f"{specific}/lipo"
|
||||||
otool = f"{specific}/otool"
|
otool = f"{specific}/otool"
|
||||||
|
idylib = f"{specific}/insert_dylib"
|
||||||
|
|
||||||
starters = ("\t/Library/", "\t@rpath", "\t@executable_path")
|
starters = ("\t/Library/", "\t@rpath", "\t@executable_path")
|
||||||
common = {
|
common = {
|
||||||
@@ -32,20 +32,24 @@ class Executable:
|
|||||||
"CepheiPrefs.framework": "CepheiPrefs.framework"
|
"CepheiPrefs.framework": "CepheiPrefs.framework"
|
||||||
}
|
}
|
||||||
|
|
||||||
def __init__(self, path: str, bundle_path: Optional[str] = None):
|
def __init__(self, path: str):
|
||||||
if not os.path.isfile(path):
|
if not os.path.isfile(path):
|
||||||
sys.exit(f"[!] {path} does not exist (executable)")
|
print(f"[!] {path} does not exist (executable)", file=sys.stderr)
|
||||||
|
sys.exit(
|
||||||
|
"[?] check the wiki for info: "
|
||||||
|
"https://github.com/asdfzxcvbn/pyzule-rw/wiki/"
|
||||||
|
"file-does-not-exist-(executable)-%3F"
|
||||||
|
)
|
||||||
|
|
||||||
self.path = path
|
self.path = path
|
||||||
self.bundle_path = bundle_path
|
|
||||||
|
|
||||||
self.bn = os.path.basename(path)
|
self.bn = os.path.basename(path)
|
||||||
self.inj: Optional = None # type: ignore
|
self.inj: Optional = None # type: ignore
|
||||||
|
|
||||||
if self.specific.endswith("iOS"):
|
if os.path.isfile(self.idylib):
|
||||||
self.inj_func = self.ios_inject
|
self.inj_func = self.idyl_inject
|
||||||
else:
|
else:
|
||||||
self.inj_func = self.insert_cmd
|
self.inj_func = self.lief_inj
|
||||||
|
|
||||||
def is_encrypted(self) -> bool:
|
def is_encrypted(self) -> bool:
|
||||||
proc = subprocess.run(
|
proc = subprocess.run(
|
||||||
@@ -55,16 +59,14 @@ class Executable:
|
|||||||
|
|
||||||
return b"cryptid 1" in proc.stdout
|
return b"cryptid 1" in proc.stdout
|
||||||
|
|
||||||
def inject(self, tweaks: dict[str, str], tmpdir: str) -> None:
|
def remove_signature(self) -> None:
|
||||||
# we only inject into the main executable
|
subprocess.run([self.ldid, "-R", self.path], stderr=subprocess.DEVNULL)
|
||||||
assert self.bundle_path is not None
|
|
||||||
|
|
||||||
has_entitlements = False
|
def fakesign(self) -> bool:
|
||||||
ENT_PATH = f"{self.bundle_path}/cyan.entitlements"
|
return subprocess.run([self.ldid, "-S", "-M", self.path]).returncode == 0
|
||||||
PLUGINS_DIR = f"{self.bundle_path}/PlugIns"
|
|
||||||
FRAMEWORKS_DIR = f"{self.bundle_path}/Frameworks"
|
|
||||||
|
|
||||||
with open(ENT_PATH, "wb") as entf:
|
def write_entitlements(self, output: str) -> bool:
|
||||||
|
with open(output, "wb") as entf:
|
||||||
proc = subprocess.run(
|
proc = subprocess.run(
|
||||||
[self.ldid, "-e", self.path],
|
[self.ldid, "-e", self.path],
|
||||||
capture_output=True
|
capture_output=True
|
||||||
@@ -72,98 +74,7 @@ class Executable:
|
|||||||
|
|
||||||
entf.write(proc.stdout)
|
entf.write(proc.stdout)
|
||||||
|
|
||||||
if os.path.getsize(ENT_PATH) > 0:
|
return os.path.getsize(output) > 0
|
||||||
has_entitlements = True
|
|
||||||
|
|
||||||
# iirc, injecting doesnt work (sometimes) if the file isn't signed
|
|
||||||
self.remove_signature()
|
|
||||||
|
|
||||||
if any(t.endswith(".appex") for t in tweaks):
|
|
||||||
os.makedirs(PLUGINS_DIR, exist_ok=True)
|
|
||||||
|
|
||||||
if any(
|
|
||||||
t.endswith(k)
|
|
||||||
for t in tweaks
|
|
||||||
for k in (".deb", ".dylib", ".framework")
|
|
||||||
):
|
|
||||||
os.makedirs(FRAMEWORKS_DIR, exist_ok=True)
|
|
||||||
|
|
||||||
# some apps really dont have this lol
|
|
||||||
subprocess.run(
|
|
||||||
[self.nt, "-add_rpath", "@executable_path/Frameworks", self.path],
|
|
||||||
stderr=subprocess.DEVNULL
|
|
||||||
)
|
|
||||||
|
|
||||||
# `extract_deb()` will modify `tweaks`, which is why we make a copy
|
|
||||||
cwd = os.getcwd()
|
|
||||||
for bn, path in dict(tweaks).items():
|
|
||||||
if bn.endswith(".deb"):
|
|
||||||
tbhutils.extract_deb(path, tweaks, tmpdir)
|
|
||||||
continue
|
|
||||||
os.chdir(cwd) # i fucking hate jailbroken iOS utils.
|
|
||||||
|
|
||||||
needed: set[str] = set()
|
|
||||||
for bn, path in tweaks.items():
|
|
||||||
if bn.endswith(".appex"):
|
|
||||||
fpath = f"{PLUGINS_DIR}/{bn}"
|
|
||||||
existed = tbhutils.delete_if_exists(fpath, bn)
|
|
||||||
shutil.copytree(path, fpath)
|
|
||||||
elif bn.endswith(".dylib"):
|
|
||||||
path = shutil.copy2(path, tmpdir)
|
|
||||||
Executable(path).fix_dependencies(tweaks, needed)
|
|
||||||
|
|
||||||
fpath = f"{FRAMEWORKS_DIR}/{bn}"
|
|
||||||
existed = tbhutils.delete_if_exists(fpath, bn)
|
|
||||||
self.inj_func(f"@rpath/{bn}")
|
|
||||||
shutil.move(path, FRAMEWORKS_DIR)
|
|
||||||
elif bn.endswith(".framework"):
|
|
||||||
fpath = f"{FRAMEWORKS_DIR}/{bn}"
|
|
||||||
existed = tbhutils.delete_if_exists(fpath, bn)
|
|
||||||
self.inj_func(f"@rpath/{bn}/{bn[:-10]}")
|
|
||||||
shutil.copytree(path, fpath)
|
|
||||||
else:
|
|
||||||
fpath = f"{self.bundle_path}/{bn}"
|
|
||||||
existed = tbhutils.delete_if_exists(fpath, bn)
|
|
||||||
try:
|
|
||||||
shutil.copytree(path, fpath)
|
|
||||||
except NotADirectoryError:
|
|
||||||
shutil.copy2(path, self.bundle_path)
|
|
||||||
|
|
||||||
if not existed:
|
|
||||||
print(f"[*] injected {bn}")
|
|
||||||
|
|
||||||
# orion has a *weak* dependency to substrate,
|
|
||||||
# but will still crash without it. nice !!!!!!!!!!!
|
|
||||||
if "Orion.framework" in needed:
|
|
||||||
needed.add("CydiaSubstrate.framework")
|
|
||||||
|
|
||||||
for missing in needed:
|
|
||||||
real = self.common[missing] # "real" name, thanks substrate!
|
|
||||||
ip = f"{FRAMEWORKS_DIR}/{real}"
|
|
||||||
existed = tbhutils.delete_if_exists(ip, real)
|
|
||||||
shutil.copytree(f"{self.install_dir}/extras/{real}", ip)
|
|
||||||
|
|
||||||
if not existed:
|
|
||||||
print(f"[*] auto-injected {real}")
|
|
||||||
|
|
||||||
# FINALLY !!
|
|
||||||
if self.inj is not None: # type: ignore
|
|
||||||
self.inj.write(self.path) # type: ignore
|
|
||||||
|
|
||||||
if has_entitlements:
|
|
||||||
subprocess.run([self.ldid, f"-S{ENT_PATH}", self.path])
|
|
||||||
print("[*] restored entitlements")
|
|
||||||
|
|
||||||
def remove_signature(self) -> None:
|
|
||||||
subprocess.run([self.ldid, "-R", self.path], stderr=subprocess.DEVNULL)
|
|
||||||
|
|
||||||
def fakesign(self, keep_entitlements: bool = True) -> bool:
|
|
||||||
cmd = [self.ldid, "-S"]
|
|
||||||
if keep_entitlements:
|
|
||||||
cmd.append("-M")
|
|
||||||
|
|
||||||
subprocess.run(cmd + [self.path])
|
|
||||||
return True
|
|
||||||
|
|
||||||
def thin(self) -> bool:
|
def thin(self) -> bool:
|
||||||
return subprocess.run(
|
return subprocess.run(
|
||||||
@@ -177,7 +88,7 @@ class Executable:
|
|||||||
stderr=subprocess.DEVNULL
|
stderr=subprocess.DEVNULL
|
||||||
)
|
)
|
||||||
|
|
||||||
def insert_cmd(self, cmd: str) -> None:
|
def lief_inj(self, cmd: str) -> None:
|
||||||
if self.inj is None: # type: ignore
|
if self.inj is None: # type: ignore
|
||||||
try:
|
try:
|
||||||
lief.logging.disable() # type: ignore
|
lief.logging.disable() # type: ignore
|
||||||
@@ -186,17 +97,22 @@ class Executable:
|
|||||||
|
|
||||||
self.inj = lief.parse(self.path) # type: ignore
|
self.inj = lief.parse(self.path) # type: ignore
|
||||||
|
|
||||||
self.inj.add(lief.MachO.DylibCommand.weak_lib(cmd)) # type: ignore
|
try:
|
||||||
|
self.inj.add(lief.MachO.DylibCommand.weak_lib(cmd)) # type: ignore
|
||||||
|
except AttributeError:
|
||||||
|
sys.exit("[!] couldn't add LC (lief), did you use a valid app?")
|
||||||
|
|
||||||
def ios_inject(self, cmd: str) -> None:
|
def idyl_inject(self, cmd: str) -> None:
|
||||||
subprocess.run(
|
proc = subprocess.run(
|
||||||
[
|
[
|
||||||
f"{self.specific}/insert_dylib",
|
self.idylib, "--weak", "--inplace", "--strip-codesig", "--all-yes",
|
||||||
"--weak", "--inplace", "--no-strip-codesig", "--all-yes",
|
|
||||||
cmd, self.path
|
cmd, self.path
|
||||||
], stdout=subprocess.DEVNULL, stderr=subprocess.DEVNULL
|
], capture_output=True, text=True
|
||||||
)
|
)
|
||||||
|
|
||||||
|
if proc.returncode != 0:
|
||||||
|
sys.exit(f"[!] couldn't add LC (insert_dylib), error:\n{proc.stderr}")
|
||||||
|
|
||||||
def fix_dependencies(self, tweaks: dict[str, str], need: set[str]) -> None:
|
def fix_dependencies(self, tweaks: dict[str, str], need: set[str]) -> None:
|
||||||
self.remove_signature()
|
self.remove_signature()
|
||||||
|
|
||||||
|
|||||||
106
cyan/tbhtypes/main_executable.py
Normal file
106
cyan/tbhtypes/main_executable.py
Normal file
@@ -0,0 +1,106 @@
|
|||||||
|
import os
|
||||||
|
import shutil
|
||||||
|
import subprocess
|
||||||
|
|
||||||
|
from cyan import tbhutils
|
||||||
|
from .executable import Executable
|
||||||
|
|
||||||
|
class MainExecutable(Executable):
|
||||||
|
def __init__(self, path: str, bundle_path: str):
|
||||||
|
super().__init__(path)
|
||||||
|
self.bundle_path = bundle_path
|
||||||
|
|
||||||
|
def inject(self, tweaks: dict[str, str], tmpdir: str) -> None:
|
||||||
|
ENT_PATH = f"{self.bundle_path}/cyan.entitlements"
|
||||||
|
PLUGINS_DIR = f"{self.bundle_path}/PlugIns"
|
||||||
|
FRAMEWORKS_DIR = f"{self.bundle_path}/Frameworks"
|
||||||
|
has_entitlements = self.write_entitlements(ENT_PATH)
|
||||||
|
|
||||||
|
# iirc, injecting doesnt work (sometimes) if the file isn't signed
|
||||||
|
self.remove_signature()
|
||||||
|
|
||||||
|
if any(t.endswith(".appex") for t in tweaks):
|
||||||
|
os.makedirs(PLUGINS_DIR, exist_ok=True)
|
||||||
|
|
||||||
|
if any(
|
||||||
|
t.endswith(k)
|
||||||
|
for t in tweaks
|
||||||
|
for k in (".deb", ".dylib", ".framework")
|
||||||
|
):
|
||||||
|
os.makedirs(FRAMEWORKS_DIR, exist_ok=True)
|
||||||
|
|
||||||
|
# some apps really dont have this lol
|
||||||
|
subprocess.run(
|
||||||
|
[self.nt, "-add_rpath", "@executable_path/Frameworks", self.path],
|
||||||
|
stderr=subprocess.DEVNULL
|
||||||
|
)
|
||||||
|
|
||||||
|
# `extract_deb()` will modify `tweaks`, which is why we make a copy
|
||||||
|
cwd = os.getcwd()
|
||||||
|
for bn, path in dict(tweaks).items():
|
||||||
|
if bn.endswith(".deb"):
|
||||||
|
tbhutils.extract_deb(path, tweaks, tmpdir)
|
||||||
|
continue
|
||||||
|
os.chdir(cwd) # i fucking hate jailbroken iOS utils.
|
||||||
|
|
||||||
|
needed: set[str] = set()
|
||||||
|
for bn, path in tweaks.items():
|
||||||
|
if bn.endswith(".appex"):
|
||||||
|
fpath = f"{PLUGINS_DIR}/{bn}"
|
||||||
|
existed = tbhutils.delete_if_exists(fpath, bn)
|
||||||
|
shutil.copytree(path, fpath)
|
||||||
|
elif bn.endswith(".dylib"):
|
||||||
|
path = shutil.copy2(path, tmpdir)
|
||||||
|
Executable(path).fix_dependencies(tweaks, needed)
|
||||||
|
|
||||||
|
fpath = f"{FRAMEWORKS_DIR}/{bn}"
|
||||||
|
existed = tbhutils.delete_if_exists(fpath, bn)
|
||||||
|
self.inj_func(f"@rpath/{bn}")
|
||||||
|
shutil.move(path, FRAMEWORKS_DIR)
|
||||||
|
elif bn.endswith(".framework"):
|
||||||
|
fpath = f"{FRAMEWORKS_DIR}/{bn}"
|
||||||
|
existed = tbhutils.delete_if_exists(fpath, bn)
|
||||||
|
self.inj_func(f"@rpath/{bn}/{bn[:-10]}")
|
||||||
|
shutil.copytree(path, fpath)
|
||||||
|
else:
|
||||||
|
fpath = f"{self.bundle_path}/{bn}"
|
||||||
|
existed = tbhutils.delete_if_exists(fpath, bn)
|
||||||
|
try:
|
||||||
|
shutil.copytree(path, fpath)
|
||||||
|
except NotADirectoryError:
|
||||||
|
shutil.copy2(path, self.bundle_path)
|
||||||
|
|
||||||
|
if not existed:
|
||||||
|
print(f"[*] injected {bn}")
|
||||||
|
|
||||||
|
# orion has a *weak* dependency to substrate,
|
||||||
|
# but will still crash without it. nice !!!!!!!!!!!
|
||||||
|
if "Orion.framework" in needed:
|
||||||
|
needed.add("CydiaSubstrate.framework")
|
||||||
|
|
||||||
|
for missing in needed:
|
||||||
|
real = self.common[missing] # "real" name, thanks substrate!
|
||||||
|
ip = f"{FRAMEWORKS_DIR}/{real}"
|
||||||
|
existed = tbhutils.delete_if_exists(ip, real)
|
||||||
|
shutil.copytree(f"{self.install_dir}/extras/{real}", ip)
|
||||||
|
|
||||||
|
if not existed:
|
||||||
|
print(f"[*] auto-injected {real}")
|
||||||
|
|
||||||
|
# FINALLY !!
|
||||||
|
if self.inj is not None: # type: ignore
|
||||||
|
self.inj.write(self.path) # type: ignore
|
||||||
|
|
||||||
|
if has_entitlements:
|
||||||
|
self.sign_with_entitlements(ENT_PATH)
|
||||||
|
print("[*] restored entitlements")
|
||||||
|
|
||||||
|
def merge_entitlements(self, entitlements: str) -> None:
|
||||||
|
self.sign_with_entitlements(entitlements)
|
||||||
|
print("[*] merged new entitlements")
|
||||||
|
|
||||||
|
def sign_with_entitlements(self, entitlements: str) -> bool:
|
||||||
|
return subprocess.run(
|
||||||
|
[self.ldid, f"-S{entitlements}", "-M", self.path]
|
||||||
|
).returncode == 0
|
||||||
|
|
||||||
@@ -44,6 +44,7 @@ class Plist:
|
|||||||
try:
|
try:
|
||||||
if all(self[key] == val for key in keys):
|
if all(self[key] == val for key in keys):
|
||||||
return False
|
return False
|
||||||
|
raise KeyError # lets pretend this was always here..
|
||||||
except KeyError:
|
except KeyError:
|
||||||
for key in keys:
|
for key in keys:
|
||||||
self[key] = val
|
self[key] = val
|
||||||
@@ -67,15 +68,14 @@ class Plist:
|
|||||||
print("[?] documents support was already enabled")
|
print("[?] documents support was already enabled")
|
||||||
|
|
||||||
def change_name(self, name: str) -> None:
|
def change_name(self, name: str) -> None:
|
||||||
if self.change("CFBundleName", "CFBundleDisplayName", name):
|
if self.change(name, "CFBundleName", "CFBundleDisplayName"):
|
||||||
print(f"[*] changed name to \"{name}\"")
|
print(f"[*] changed name to \"{name}\"")
|
||||||
changed = 0
|
changed = 0
|
||||||
|
|
||||||
for lproj in glob(f"{self.app_path}/*.lproj"):
|
for lproj in glob(f"{self.app_path}/*.lproj"):
|
||||||
try:
|
try:
|
||||||
pl = Plist(f"{lproj}/InfoPlist.strings", None, False)
|
pl = Plist(f"{lproj}/InfoPlist.strings", None, False)
|
||||||
pl["CFBundleDisplayName"] = name
|
pl.change(name, "CFBundleName", "CFBundleDisplayName")
|
||||||
pl["CFBundleName"] = name
|
|
||||||
pl.save()
|
pl.save()
|
||||||
changed += 1
|
changed += 1
|
||||||
except Exception:
|
except Exception:
|
||||||
@@ -87,7 +87,7 @@ class Plist:
|
|||||||
print(f"[?] name was already \"{name}\"")
|
print(f"[?] name was already \"{name}\"")
|
||||||
|
|
||||||
def change_version(self, version: str) -> None:
|
def change_version(self, version: str) -> None:
|
||||||
if self.change("CFBundleVersion", "CFBundleShortVersionString", version):
|
if self.change(version, "CFBundleVersion", "CFBundleShortVersionString"):
|
||||||
print(f"[*] changed version to \"{version}\"")
|
print(f"[*] changed version to \"{version}\"")
|
||||||
else:
|
else:
|
||||||
print(f"[?] version was already \"{version}\"")
|
print(f"[?] version was already \"{version}\"")
|
||||||
@@ -95,7 +95,7 @@ class Plist:
|
|||||||
def change_bundle_id(self, bundle_id: str) -> None:
|
def change_bundle_id(self, bundle_id: str) -> None:
|
||||||
orig = self["CFBundleIdentifier"]
|
orig = self["CFBundleIdentifier"]
|
||||||
|
|
||||||
if self.change("CFBundleIdentifier", bundle_id):
|
if self.change(bundle_id, "CFBundleIdentifier"):
|
||||||
print(f"[*] changed bundle id to \"{bundle_id}\"")
|
print(f"[*] changed bundle id to \"{bundle_id}\"")
|
||||||
changed = 0
|
changed = 0
|
||||||
|
|
||||||
@@ -116,7 +116,7 @@ class Plist:
|
|||||||
print(f"[?] bundle id was already \"{bundle_id}\"")
|
print(f"[?] bundle id was already \"{bundle_id}\"")
|
||||||
|
|
||||||
def change_minimum_version(self, minimum: str) -> None:
|
def change_minimum_version(self, minimum: str) -> None:
|
||||||
if self.change("MinimumOSVersion", minimum):
|
if self.change(minimum, "MinimumOSVersion"):
|
||||||
print(f"[*] changed minimum version to \"{minimum}\"")
|
print(f"[*] changed minimum version to \"{minimum}\"")
|
||||||
else:
|
else:
|
||||||
print(f"[?] minimum version was already \"{minimum}\"")
|
print(f"[?] minimum version was already \"{minimum}\"")
|
||||||
|
|||||||
@@ -9,6 +9,10 @@ from uuid import uuid4
|
|||||||
from glob import glob, iglob
|
from glob import glob, iglob
|
||||||
from argparse import Namespace
|
from argparse import Namespace
|
||||||
from typing import Optional, Any
|
from typing import Optional, Any
|
||||||
|
from plistlib import load as pload
|
||||||
|
|
||||||
|
HAS_ZIP = shutil.which("zip") is not None
|
||||||
|
HAS_UNZIP = shutil.which("unzip") is not None
|
||||||
|
|
||||||
|
|
||||||
def validate_inputs(args: Namespace) -> Optional[str]:
|
def validate_inputs(args: Namespace) -> Optional[str]:
|
||||||
@@ -39,15 +43,19 @@ def validate_inputs(args: Namespace) -> Optional[str]:
|
|||||||
sys.exit(0)
|
sys.exit(0)
|
||||||
|
|
||||||
if args.f is not None:
|
if args.f is not None:
|
||||||
# dictionary ensures unique names
|
new: dict[str, str] = {} # dictionary ensures unique names
|
||||||
args.f = {os.path.basename(f): os.path.realpath(f) for f in args.f}
|
|
||||||
nonexistent = [f for f in args.f.values() if not os.path.exists(f)]
|
|
||||||
|
|
||||||
if len(nonexistent) != 0:
|
for f in list(args.f):
|
||||||
print("[!] please ensure the following file(s) exist:")
|
if f[-1] == "/": # yeah this is stupid
|
||||||
for ne in nonexistent:
|
f = f[:-1]
|
||||||
print(f"[?] - {ne}")
|
|
||||||
sys.exit(1)
|
if not os.path.exists(f):
|
||||||
|
sys.exit(f"[!] \"{f}\" does not exist")
|
||||||
|
|
||||||
|
new[os.path.basename(f)] = os.path.realpath(f)
|
||||||
|
|
||||||
|
# i would've modified args.f directly, but it causes type-hinting error :(
|
||||||
|
args.f = new
|
||||||
|
|
||||||
if (
|
if (
|
||||||
args.m is not None
|
args.m is not None
|
||||||
@@ -61,6 +69,16 @@ def validate_inputs(args: Namespace) -> Optional[str]:
|
|||||||
if args.cyan is not None and not os.path.isfile(args.cyan):
|
if args.cyan is not None and not os.path.isfile(args.cyan):
|
||||||
sys.exit(f"[!] {args.cyan} does not exist")
|
sys.exit(f"[!] {args.cyan} does not exist")
|
||||||
|
|
||||||
|
if args.x is not None:
|
||||||
|
if not os.path.isfile(args.x):
|
||||||
|
sys.exit(f"[!] {args.x} does not exist")
|
||||||
|
|
||||||
|
try:
|
||||||
|
with open(args.x, "rb") as f:
|
||||||
|
pload(f)
|
||||||
|
except Exception:
|
||||||
|
sys.exit("[!] couldn't parse given entitlements file")
|
||||||
|
|
||||||
|
|
||||||
def get_app(path: str, tmpdir: str, is_ipa: bool) -> str:
|
def get_app(path: str, tmpdir: str, is_ipa: bool) -> str:
|
||||||
payload = f"{tmpdir}/Payload"
|
payload = f"{tmpdir}/Payload"
|
||||||
@@ -77,7 +95,15 @@ def get_app(path: str, tmpdir: str, is_ipa: bool) -> str:
|
|||||||
elif not any(name.endswith(".app/Info.plist") for name in names):
|
elif not any(name.endswith(".app/Info.plist") for name in names):
|
||||||
sys.exit("[!] no Info.plist, invalid app")
|
sys.exit("[!] no Info.plist, invalid app")
|
||||||
|
|
||||||
ipa.extractall(tmpdir)
|
# using unzip fixes extraction errors in ipas with chinese chars, etc
|
||||||
|
if HAS_UNZIP:
|
||||||
|
subprocess.run(
|
||||||
|
["unzip", path, "-d", tmpdir],
|
||||||
|
stdout=subprocess.DEVNULL
|
||||||
|
)
|
||||||
|
else:
|
||||||
|
ipa.extractall(tmpdir)
|
||||||
|
|
||||||
app = glob(f"{payload}/*.app")[0]
|
app = glob(f"{payload}/*.app")[0]
|
||||||
except (KeyError, IndexError):
|
except (KeyError, IndexError):
|
||||||
sys.exit("[!] couldn't find either Payload or app folder, invalid ipa")
|
sys.exit("[!] couldn't find either Payload or app folder, invalid ipa")
|
||||||
@@ -106,11 +132,12 @@ def get_tools_dir() -> tuple[str, str]:
|
|||||||
# thank god i dont have to use importlib,
|
# thank god i dont have to use importlib,
|
||||||
# it's the WORST standard library package prior to 3.12
|
# it's the WORST standard library package prior to 3.12
|
||||||
install_dir = os.path.dirname(__file__)
|
install_dir = os.path.dirname(__file__)
|
||||||
|
specific_dir = f"{install_dir}/tools/{system}/{mach}"
|
||||||
|
|
||||||
return (
|
if not os.path.isdir(specific_dir):
|
||||||
install_dir,
|
sys.exit(f"[!] cyan is not supported on: {system} {mach}")
|
||||||
f"{install_dir}/tools/{system}/{mach}"
|
|
||||||
)
|
return (install_dir, specific_dir)
|
||||||
|
|
||||||
|
|
||||||
def delete_if_exists(path: str, bn: str) -> bool:
|
def delete_if_exists(path: str, bn: str) -> bool:
|
||||||
@@ -175,14 +202,25 @@ def make_ipa(tmpdir: str, output: str, level: int) -> None:
|
|||||||
os.chdir(tmpdir)
|
os.chdir(tmpdir)
|
||||||
weird = 0
|
weird = 0
|
||||||
|
|
||||||
with zipfile.ZipFile(
|
if HAS_ZIP:
|
||||||
output, "w", zipfile.ZIP_DEFLATED, compresslevel=level
|
try:
|
||||||
) as zf:
|
os.remove(output) # zip command updates zipfiles by default
|
||||||
for f in iglob("Payload/**", recursive=True):
|
except FileNotFoundError:
|
||||||
try:
|
pass
|
||||||
zf.write(f)
|
|
||||||
except ValueError:
|
subprocess.run(
|
||||||
weird += 1
|
["zip", f"-{level}", "-r", output, "Payload"],
|
||||||
|
stdout=subprocess.DEVNULL
|
||||||
|
)
|
||||||
|
else:
|
||||||
|
with zipfile.ZipFile(
|
||||||
|
output, "w", zipfile.ZIP_DEFLATED, compresslevel=level
|
||||||
|
) as zf:
|
||||||
|
for f in iglob("Payload/**", recursive=True):
|
||||||
|
try:
|
||||||
|
zf.write(f)
|
||||||
|
except ValueError:
|
||||||
|
weird += 1
|
||||||
|
|
||||||
if weird != 0:
|
if weird != 0:
|
||||||
print(f"[?] was unable to zip {weird} file(s) due to timestamps")
|
print(f"[?] was unable to zip {weird} file(s) due to timestamps")
|
||||||
|
|||||||
BIN
cyan/tools/Darwin/arm64/insert_dylib
Executable file
BIN
cyan/tools/Darwin/arm64/insert_dylib
Executable file
Binary file not shown.
BIN
cyan/tools/Darwin/x86_64/insert_dylib
Executable file
BIN
cyan/tools/Darwin/x86_64/insert_dylib
Executable file
Binary file not shown.
BIN
cyan/tools/Linux/x86_64/insert_dylib
Executable file
BIN
cyan/tools/Linux/x86_64/insert_dylib
Executable file
Binary file not shown.
2
setup.py
2
setup.py
@@ -4,7 +4,7 @@ from setuptools import setup
|
|||||||
|
|
||||||
setup(
|
setup(
|
||||||
name="cyan",
|
name="cyan",
|
||||||
version="1.1.3",
|
version="1.2.1",
|
||||||
description="finally, pyzule doesn't suck",
|
description="finally, pyzule doesn't suck",
|
||||||
author="zx",
|
author="zx",
|
||||||
author_email="zx@hrzn.email",
|
author_email="zx@hrzn.email",
|
||||||
|
|||||||
Reference in New Issue
Block a user