cloudflare / sandbox
Simple Linux seccomp rules without writing any code
☆479Updated 7 months ago
Alternatives and similar repositories for sandbox:
Users that are interested in sandbox are comparing it to the libraries listed below
- A language and library for specifying syscall filtering policies.☆316Updated 9 months ago
- List of resources related to LD_PRELOAD, a mechanism for changing application behavior at run-time☆892Updated last year
- sandboxing and containment tool used in ChromeOS and Android☆308Updated this week
- The reliability of disk images, the flexibility of files☆522Updated last week
- Linux Application Level Firewall based on eBPF and NFQUEUE.☆698Updated last year
- A general purpose memory allocator that implements an isolation security strategy to mitigate memory safety issues while maintaining good…☆373Updated 9 months ago
- User-mode networking for unprivileged network namespaces☆810Updated last week
- Dynamic Tracing in Linux☆1,000Updated 2 months ago
- An easy way to virtualize the running system☆340Updated last year
- The main libseccomp repository☆848Updated last month
- RLBox sandboxing framework☆298Updated last week
- Dump unix domain socket traffic with bpf☆390Updated last year
- Light-weight Dynamic Tracer for Linux☆412Updated 2 months ago
- Lightweight fuzzing of a memory snapshot using KVM☆452Updated last year
- A dynamic library providing Virtualization-based process isolation capabilities☆1,075Updated this week
- Snuffy is a simple command line tool to inspect SSL/TLS data.☆291Updated 4 years ago
- High-performance QEMU memory and instruction tracing☆543Updated 9 months ago
- libeatmydata - because fsync() should be a no-op☆435Updated 11 months ago
- Turn IP sockets into Unix domain sockets☆366Updated 10 months ago
- 📡 🐧 Linux kernel syscall implementation tracker☆213Updated last month
- A kernelspace syscall interceptor and randomized faulter☆355Updated 5 months ago
- Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support☆277Updated 2 years ago
- Userspace eBPF VM☆885Updated this week
- BSD socket API on steroids☆298Updated 7 months ago
- KernelMemorySanitizer, a detector of uses of uninitialized memory in the Linux kernel☆412Updated last month
- An eBPF playground☆206Updated last year
- A Go library for the Linux Landlock sandboxing feature☆187Updated 3 weeks ago
- eBPF - extended Berkeley Packet Filter tooling☆123Updated 2 years ago
- ☆246Updated 4 years ago
- VMM for native-performance sandboxing☆599Updated this week