
firecracker
Secure and fast microVMs for serverless computing.

Secure and fast microVMs for serverless computing.

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on…

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

A secure low code deception runtime framework, leveraging AI for System Virtualization.

Sub-millisecond VM sandboxes for AI agents via copy-on-write forking

Immutable Linux OS image optimized for running Incus containers and virtual machines, with UEFI Secure Boot, TPM 2.0 disk encryption, and automated…

A local sandbox for your AI agents

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

A Microservices-based framework for the study of Network Security and Penetration Test techniques

Microsoft's curated repository of secure boot objects (KeK, Db, Dbx) for firmware and runtime, enabling transparent revocation updates and…

Ephemeral microVM sandbox for AI agents with network allowlisting, secret injection via MITM proxy, and VM-level isolation. Boots in under a second,…

WASM sandbox with capability enforcement for AI agent code. Agents can only call explicitly provided tools with defined constraints. Sandboxed…

Rootless container runtime and sandbox that launches kernel-enforced OCI images in milliseconds with no daemon, featuring resource profiles, seccomp…

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing

Docker-based sandbox for coding agents with isolated environments, preinstalled agent tooling, service control, and workspace bootstrap for secure…

Ultrafast CLI on Apple Silicon macOS for fast, sandboxed development and LLM agents.