
Z-Jail
A lightweight, multi-layer Linux sandbox combining namespaces, pivot_root, seccomp-bpf, capability dropping, and an evidence-based verdict engine…

A lightweight, multi-layer Linux sandbox combining namespaces, pivot_root, seccomp-bpf, capability dropping, and an evidence-based verdict engine…

Detections for CVE-2021-44228 inside of nested binaries

Docker images of Xpdf 4.04, vulnerable to CVE-2022-30524

JIT-based userspace Linux kernel that runs containers natively on Apple Silicon macOS without a VM. Drop-in Docker Engine API replacement with…


Find binary files not installed through package manager

CVE-2017-9608 analysis

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on…

Macro-header for compile-time C obfuscation (tcc, win x86/x64)

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing


The fastest LoongArch sandbox

🪅 Windows & Linux userspace emulator

Sandbox untrusted code with safe access to the host.

AArch64 fuzzer based on the Apple Silicon hypervisor

POSIX.1e capability library for Android 10, addressing CVE-2023-2603 with tools for setting and getting process capabilities to manage privilege…