
agentZ
Zero-trust agentic AI platform. Supports SaaS and OnPrem (airgapped) deployments.

Zero-trust agentic AI platform. Supports SaaS and OnPrem (airgapped) deployments.

Rootless container runtime and sandbox that launches kernel-enforced OCI images in milliseconds with no daemon, featuring resource profiles, seccomp…

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

Secure and fast microVMs for serverless computing.

Sandboxes containers via a userspace application kernel that intercepts system calls, limits host kernel access, and integrates with…

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

Run Firefox in a rootless Podman container with dropped capabilities, isolated networking, and ephemeral storage to contain sandbox escapes and…

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on…

Low-level unprivileged sandboxing tool used by Flatpak and similar projects

Run Windows inside a Docker container with KVM acceleration, automatic installation, and customizable resources. Supports multiple Windows versions,…

A security-focused library OS supporting kernel- and user-mode execution

A secure low code deception runtime framework, leveraging AI for System Virtualization.

Run Coding Agents in Sandboxes. Control Them Over HTTP. Supports Claude Code, Codex, OpenCode, and Amp.

A Microservices-based framework for the study of Network Security and Penetration Test techniques

Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing

Firecracker made simple. Spin up secure microVMs in milliseconds, from install to interactive shell in one command.

Linux application sandboxing and distribution framework