tsgates / mboxLinks
A lightweight sandbox tool for non-root users
☆667Updated 7 years ago
Alternatives and similar repositories for mbox
Users that are interested in mbox are comparing it to the libraries listed below
Sorting:
- OZ: a sandboxing system targeting everyday workstation applications☆441Updated 7 years ago
- Lightweight process containers for Linux☆201Updated 3 years ago
- A language and library for specifying syscall filtering policies.☆342Updated last month
- A secure application sandbox built with modern Linux sandboxing features - no longer actively developed, but still works fine, use bubble…☆292Updated 10 years ago
- Linux kernel with Capsicum support☆210Updated 5 years ago
- A filesystem sandbox for Linux using syscall intercepts.☆404Updated 5 years ago
- Tool for launching a Linux process from a snapshot☆450Updated 10 years ago
- Simple containers using Linux user namespaces — see also https://github.com/arachsys/ucontain☆188Updated 3 years ago
- a tiny, custom launcher that handles namespacing, control groups, chroot'ing, and more☆55Updated 3 years ago
- The dissection of a simple "hello world" ELF binary.☆466Updated 5 years ago
- Simple Driver code for vmlaunch☆160Updated 8 years ago
- Trusted Path Execution (TPE) Linux Kernel Module☆163Updated 6 years ago
- A small suite of scripts and patches for building musl libc cross compilers.☆231Updated last year
- List of resources related to LD_PRELOAD, a mechanism for changing application behavior at run-time☆907Updated last year
- CJAG is an open-source implementation of our cache-based jamming agreement.☆285Updated 4 years ago
- Wiki for rump kernels☆461Updated 2 years ago
- Ready-made packages of software for running on the Rumprun unikernel☆205Updated 3 years ago
- Minimal x86 firmware for booting Linux kernels☆717Updated 3 years ago
- Parser combinators for binary formats, in C. Yes, in C. What? Don't look at me like that.☆442Updated 3 years ago
- A minimal toy implementation of strace(1)☆180Updated 2 years ago
- Patch kernel without rebooting☆85Updated 10 years ago
- ☆367Updated 8 years ago
- Run any command transparently in a VM (this repo isn't part of Cappsule)☆27Updated 8 years ago
- The "Intel x86 considered harmful" paper☆200Updated 10 years ago
- A static checker for identifying unstable code.☆363Updated 10 years ago
- SLAyer is an automatic formal verification tool that uses separation logic to verify memory safety of C programs.☆325Updated 9 years ago
- Unofficial forward ports of the last publicly available grsecurity patch☆152Updated 7 years ago
- Use a TPM to store a TOTP token in order to attest boot state to another device☆210Updated 2 years ago
- dynamic binary analysis via platform emulation☆902Updated 2 years ago
- The engine that powers DeLorean!☆837Updated 6 years ago