tsgates / mboxLinks
A lightweight sandbox tool for non-root users
☆668Updated 7 years ago
Alternatives and similar repositories for mbox
Users that are interested in mbox are comparing it to the libraries listed below
Sorting:
- A language and library for specifying syscall filtering policies.☆344Updated 2 months ago
- Lightweight process containers for Linux☆201Updated 3 years ago
- OZ: a sandboxing system targeting everyday workstation applications☆440Updated 7 years ago
- Linux kernel with Capsicum support☆211Updated 5 years ago
- A filesystem sandbox for Linux using syscall intercepts.☆404Updated 5 years ago
- Tool for launching a Linux process from a snapshot☆450Updated 10 years ago
- A small suite of scripts and patches for building musl libc cross compilers.☆231Updated last year
- Trusted Path Execution (TPE) Linux Kernel Module☆163Updated 6 years ago
- A secure application sandbox built with modern Linux sandboxing features - no longer actively developed, but still works fine, use bubble…☆292Updated 10 years ago
- a chroot with more isolation☆101Updated 3 years ago
- a tiny, custom launcher that handles namespacing, control groups, chroot'ing, and more☆55Updated 3 years ago
- List of resources related to LD_PRELOAD, a mechanism for changing application behavior at run-time☆909Updated last year
- Simple Driver code for vmlaunch☆159Updated 8 years ago
- Simple containers using Linux user namespaces — see also https://github.com/arachsys/ucontain☆188Updated 3 years ago
- privilege separation engine for OpenSSL / LibreSSL☆204Updated last year
- A minimal toy implementation of strace(1)☆180Updated 2 years ago
- Simple Linux seccomp rules without writing any code☆517Updated 7 months ago
- ☆86Updated 8 years ago
- Wiki for rump kernels☆462Updated 2 years ago
- The dissection of a simple "hello world" ELF binary.☆467Updated 5 years ago
- The "Intel x86 considered harmful" paper☆200Updated 10 years ago
- Some fun things you can do with kernel modules (all "bad ideas")☆440Updated 3 years ago
- A ptrace library for easy syscall injection in Linux.☆184Updated last year
- Ready-made packages of software for running on the Rumprun unikernel☆205Updated 3 years ago
- Monitor, rewrite and/or otherwise trap system calls... on Linux/x86{,-64} only, for now.☆66Updated 2 months ago
- Patch kernel without rebooting☆86Updated 10 years ago
- The main libseccomp repository☆897Updated last month
- gives a fake chroot environment☆308Updated last year
- ikgt manifest☆42Updated 3 years ago
- SLAyer is an automatic formal verification tool that uses separation logic to verify memory safety of C programs.☆324Updated 9 years ago