
vpod
Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

Virtual Security Operations Center

Capability-based WASM runtime for executing untrusted AI-generated code with enforced CPU, memory, time, I/O, and filesystem limits. Provides…

Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing

Python PoC exploit for CVE-2026-85706, an unauthenticated arbitrary file read in GitLab CE/EE via Workhorse path-encoding bypass, with writeup and…

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

Multi-agent static application-security review harness for AI coding agents: maps codebases, hunts vulnerability classes, chains and verifies…

ArmourBird CSF - Container Security Framework


MDE/MDI Defender setup for Ludus

Offline and security-first tool for syncing and managing agent skills

A lightweight command sandbox for Linux, secure-by-default, built on Landlock.

Self-hosted OWASP CTF kit: one box, one free GitHub org, no cloud dependencies

Proof-of-concept tool for detecting AMSI (Antimalware Scan Interface) bypasses and malicious in-memory script activity on Windows endpoints.

Cross Distribution Exploit Testing

Collection of IoCs available and related to attacks on ESXi infrastructures that occurred as of Friday February 3, 2023.

Here comes the paintrain!

Docker validation lab and Python PoC for CVE-2026-89274, proving arbitrary shortcode execution in WP Recipe Maker <= 10.8.1 via rating-comment…