
lfi
Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing

Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

Linux namespaces and seccomp-bpf sandbox

A security-focused library OS supporting kernel- and user-mode execution

An open-source, next-generation "runc" that empowers rootless containers to run workloads such as Systemd, Docker, Kubernetes, just like VMs.

Ephemeral microVM sandbox for AI agents with network allowlisting, secret injection via MITM proxy, and VM-level isolation. Boots in under a second,…

Apple Silicon device emulator.

Your agent is a security risk, so treat it like one. yoloAI does AI agent sandboxing right.


HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

FPGA based microcomputer sandbox for software and RTL experimentation

Portable, hardware-backed WebAuthn credentials using TPM 2.0. Deterministic parent key derived from a master seed enables cross-device credential…

Rust library and format specification for creating and loading Independent Guest Virtual Machine (IGVM) files, supporting hardware-isolated VMs with…

CVE-2020-0890 | Windows Hyper-V Denial of Service Vulnerability proof-of-concept code

Run any command inside a restricted filesystem view on Linux

Controlled vulnerability research and reproduction lab for CVE-2020-14343 in PyYAML