
vm2
Isolated JavaScript sandbox for Node.js that runs untrusted code with restricted access to built-in modules and host resources via Proxy-based…

Isolated JavaScript sandbox for Node.js that runs untrusted code with restricted access to built-in modules and host resources via Proxy-based…

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing

Macro-header for compile-time C obfuscation (tcc, win x86/x64)

Sandbox untrusted code with safe access to the host.

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Rex is a safe and usable kernel extension framework that allows loading and executing Rust kernel extension programs in the place of eBPF.

Source code of a multiple series of tutorials about the hypervisor. Available at: https://rayanfam.com/tutorials

Easily create full virtual machines that are sandboxed for development or computer use models.

Rusty Hypervisor - Windows Kernel Blue Pill Type-2 Hypervisor in Rust (Codename: Matrix)

Secure code execution

Sandboxed Execution Environment

A fuzzer for full VM kernel/driver targets

A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analysis.

An example sandbox using AppContainer (Windows 8+)

AArch64 fuzzer based on the Apple Silicon hypervisor