
prismor
Self-hosted runtime control plane for AI agents. Observe or HITL approve or Block rogue tool calls before it executes: secret leaks, prompt…

Self-hosted runtime control plane for AI agents. Observe or HITL approve or Block rogue tool calls before it executes: secret leaks, prompt…

eBPF-driven security tool for locking and auditing Linux machines. Restricts kernel features, blocks fileless execution, protects memory, and hardens…

A lightweight, multi-layer Linux sandbox combining namespaces, pivot_root, seccomp-bpf, capability dropping, and an evidence-based verdict engine…

Jailer is an eBPF-based process jailing system that provides mandatory access control (MAC) for Linux. It tracks processes using BPF task_storage…

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

An eBPF detection program for CVE-2022-0847

Security for the modern age of AI: defend against bad AI agents and malicious npm packages

Hands-on homelab simulating the Log4Shell (CVE-2021-44228) vulnerability. Deploy Docker containers to build a vulnerable target and attacker machine,…

Educational, defensive kit for two Linux page-cache-corruption LPEs (DirtyClone CVE-2026-43503, pedit COW CVE-2026-46331): hardening, detection,…

Softsensor Docker prototype

OWASP Honeypot, Automated Deception Framework.

Sigma Rules Engine inside the Linux Kernel using eBPF. Focusing on prevention capabilities

Defensive security demo: seL4 microkernel gateway protecting vulnerable ICS from CVE-2019-14462

eBPF-based Security Observability and Runtime Enforcement

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (LSM-BPF,…

Qubes containerization on Windows