Awesome
MacKernelSDK
This project lets your kernel extensions (kexts) target a broad range of XNU kernels when using the latest Xcode version right from the interface. In addition, it also includes several headers only available in other projects or older Xcode releases.
Quick start
To start using MacKernelSDK do the following steps:
-
Clone MacKernelSDK to your project directory:
git clone https://github.com/acidanthera/MacKernelSDK
-
Add custom
KERNEL_EXTENSION_HEADER_SEARCH_PATHS
andKERNEL_FRAMEWORK_HEADERS
values in project configuration in Xcode. To do this choose Add User-defined Setting.KERNEL_EXTENSION_HEADER_SEARCH_PATHS = $(PROJECT_DIR)/MacKernelSDK/Headers KERNEL_FRAMEWORK_HEADERS = $(PROJECT_DIR)/MacKernelSDK/Headers
-
Link to custom
libkmod.a
library by adding it to your kernel extension Link Binary with Libraries. -
Ensure that Library Search Paths contains the
libkmod.a
location, e.g.:$(PROJECT_DIR)/MacKernelSDK/Library/x86_64
Otherwise Xcode will link to the original libkmod.
-
Optionally add
/MacKernelSDK
to.gitignore
. -
To make sure that you use the right SDK check for
__ACIDANTHERA_MAC_SDK
macro inAvailability.h
.
Targeting i386
To compile for 32-bit you will need to add a set of flags in your project:
-
Other C Flags (
OTHER_CFLAGS
):-static
-nostdlib
-Wno-stdlibcxx-not-found
-target i386-apple-macos10.6
-fallow-unsupported
-fno-stack-protector
if targeting 10.5 and older-fno-jump-tables
if targeting 10.5 and older
-
Other Linker Flags (
OTHER_LDFLAGS
):-static
-target i386-apple-macos10.6
-
C++ Standard Library (
CLANG_CXX_LIBRARY
) to Compiler Default or empty. -
Library Search Paths set to contain a kmod with an i386 slice, e.g. $(PROJECT_DIR)/MacKernelSDK/Library/universal.
-
The symbol table may be misaligned due to i386 kexts being of type
MH_OBJECT
.
fix-macho32
is provided in thescripts
directory of ocbuild to correct alignments. Python 3 andmacholib
are required.Usage:
./fix-macho32 [bin_path]
Extensions and modifications
- Based on macOS 11 SDK from Xcode 12.0 (12A7209)
- Added extra headers from
xnu-6153.141.1
:- Absolute time macros (
libkern/OSBase.h
) - Cryptography (
corecrypto
,libkern/crypto
) - CPU PM (
i386/cpu_topology.h
andi386/pmCPU.h
) - MAC Framework (
security/_label.h
,security/mac_framework.h
,security/mac_policy.h
)
- Absolute time macros (
- Added private headers from IOHIDFamily 1446.140.2:
IOHIDPrivateKeys.h
IOHIDEventServiceKeys_Private.h
IOHIDEvent.h
IOHIDEventFieldDefs.h
IOHIDEventService.h
IOHIDEventTypes.h
IOHIDUtility.h
- Added private headers from IOHIDFamily 1035.70.7:
AppleHIDUsageTables.h
(removed in newer releases)
- Added private headers for IOBluetoothFamily from 10.6 SDK
IOBluetoothInternal.h
(removed in newer releases)
- Added extra compiled and reverse-engineered headers:
- SMBus (
IOKit/IOSMBusController.h
) - Apple Smart Battery (
IOKit/battery/AppleSmartBatteryCommands.h
) - KDP (
kdp/kdp_support.h
) - NKE private APIs (
IOKit/network
) - IOUSBFamily from macOS 10.10 SDK
- CoreCapture Framework by cjiang (
corecapture
) - IOSkywalkFamily by cjiang (
IOKit/skywalk
) - IO80211Family by cjiang (
IOKit/80211
) - IOBluetoothFamily by cjiang (
IOKit/bluetooth
)
- SMBus (
- Added kmod targeting earlier macOS kernels:
- 10.6 64-bit or newer (
Library/x86_64/libkmod.a
) - 10.4 or newer (
Library/universal/libkmod.a
)
- 10.6 64-bit or newer (
- Added availability checking when targeting older macOS versions:
- In
string.h
to avoid using new checked interfaces before 10.13 - In
IOService.h
to avoid report virtual methods before 10.9 - In
RootDomain.h
to avoid report virtual methods before 10.9 - In
OSMetaClass.h
to avoid DriverKit usage before 10.15 - In
cdefs.h
to avoid Darwin14 aliases before 10.10 - In
assert.h
to avoid kext assertion checking before 10.12 - In
IOHIDDevice.h
to avoid new virtual methods before 10.14 - In
IOFramebuffer.h
to avoid new virtual methods before 10.13 - In
IONDRVFramebuffer.h
to avoid new virtual methods before 10.13 - In
IOSCSIParallelInterfaceController.h
to avoid new virtual methods before 10.7 - In
IOPCIBridge.h
to avoid new virtual methods before 10.10 - In
IOService.h
to avoid init methods before 10.10 - In
IOUserClient.h
to avoid new virtual methods before 10.6 - In
IOBlockStorageDevice.h
to avoid new virtual methods before 10.12
- In
- Fixed compiler warnings:
- In
IOPCIDevice.h
due to missing overrides - In
OSMetaClass.h
due to using unsupported memory checking with older clang - In
kauth.h
due to KPI deprecation - In
net
,netinit
,network
,sys
due to NKE KPI deprecation - In
hid
,serial
,usb
due to missing overrides and KPI deprecation in favor ofDriverKit
- In
OSUnserialize.h
due toOSStringPtr
misuse - In
KUNCUserNotifications.h
due to KPI deprecation - In
IOSCSIParallelInterfaceController.h
due to missing overrides - In
IOPCIBridge.h
due to missing overrides
- In