
OpenShell
Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

Policy-driven, layered isolation and containment

An open source, cloud-native security to protect everything from build to runtime

ProjectDiscovery Cloud - Agent

An embeddable, portable, branchable virtual machine to safely run Agents locally.

Reference implementation for "Hard Stop: Kernel-Level Preemption and Containment for Rogue Agentic Execution". Out-of-band Epistemic Andon Cord,…

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

Detection-engineering reference mapping Windows, cloud, container, identity, and ICS attack classes to Sigma rules, trust-boundary models, BYOVD…

SambaCry exploit and vulnerable container (CVE-2017-7494)

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…

A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats.…

POC for CVE-2020-10665 Docker Desktop Local Privilege Escalation

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Chaos testing, network emulation, and stress testing tool for containers