tsgates / mboxLinks
A lightweight sandbox tool for non-root users
☆666Updated 7 years ago
Alternatives and similar repositories for mbox
Users that are interested in mbox are comparing it to the libraries listed below
Sorting:
- A language and library for specifying syscall filtering policies.☆340Updated 3 weeks ago
- Lightweight process containers for Linux☆201Updated 3 years ago
- OZ: a sandboxing system targeting everyday workstation applications☆441Updated 7 years ago
- A filesystem sandbox for Linux using syscall intercepts.☆403Updated 5 years ago
- Tool for launching a Linux process from a snapshot☆450Updated 10 years ago
- Linux kernel with Capsicum support☆210Updated 5 years ago
- A secure application sandbox built with modern Linux sandboxing features - no longer actively developed, but still works fine, use bubble…☆292Updated 10 years ago
- Trusted Path Execution (TPE) Linux Kernel Module☆163Updated 6 years ago
- Simple containers using Linux user namespaces — see also https://github.com/arachsys/ucontain☆188Updated 3 years ago
- The "Intel x86 considered harmful" paper☆200Updated 9 years ago
- a tiny, custom launcher that handles namespacing, control groups, chroot'ing, and more☆55Updated 3 years ago
- The dissection of a simple "hello world" ELF binary.☆465Updated 5 years ago
- A minimal toy implementation of strace(1)☆180Updated 2 years ago
- Simple Driver code for vmlaunch☆160Updated 8 years ago
- A small suite of scripts and patches for building musl libc cross compilers.☆231Updated last year
- a chroot with more isolation☆99Updated 3 years ago
- Simple Linux seccomp rules without writing any code☆513Updated 5 months ago
- Wiki for rump kernels☆460Updated 2 years ago
- Minimal x86 firmware for booting Linux kernels☆717Updated 3 years ago
- Use a TPM to store a TOTP token in order to attest boot state to another device☆209Updated 2 years ago
- Run any command transparently in a VM (this repo isn't part of Cappsule)☆27Updated 8 years ago
- List of resources related to LD_PRELOAD, a mechanism for changing application behavior at run-time☆908Updated last year
- Monitor, rewrite and/or otherwise trap system calls... on Linux/x86{,-64} only, for now.☆64Updated 3 weeks ago
- privilege separation engine for OpenSSL / LibreSSL☆204Updated last year
- The engine that powers DeLorean!☆837Updated 6 years ago
- ikgt manifest☆42Updated 3 years ago
- ☆86Updated 8 years ago
- SLAyer is an automatic formal verification tool that uses separation logic to verify memory safety of C programs.☆325Updated 9 years ago
- ☆233Updated 7 years ago
- Linux kernel source tree☆868Updated last month