tsgates / mboxLinks
A lightweight sandbox tool for non-root users
☆663Updated 7 years ago
Alternatives and similar repositories for mbox
Users that are interested in mbox are comparing it to the libraries listed below
Sorting:
- A language and library for specifying syscall filtering policies.☆332Updated last year
- Trusted Path Execution (TPE) Linux Kernel Module☆160Updated 6 years ago
- OZ: a sandboxing system targeting everyday workstation applications☆438Updated 7 years ago
- Lightweight process containers for Linux☆199Updated 3 years ago
- Linux kernel with Capsicum support☆208Updated 5 years ago
- A secure application sandbox built with modern Linux sandboxing features - no longer actively developed, but still works fine, use bubble…☆291Updated 9 years ago
- Simple Linux seccomp rules without writing any code☆502Updated 2 months ago
- The dissection of a simple "hello world" ELF binary.☆464Updated 4 years ago
- A filesystem sandbox for Linux using syscall intercepts.☆402Updated 4 years ago
- a chroot with more isolation☆97Updated 3 years ago
- A small suite of scripts and patches for building musl libc cross compilers.☆225Updated 9 months ago
- a tiny, custom launcher that handles namespacing, control groups, chroot'ing, and more☆55Updated 3 years ago
- Minimal x86 firmware for booting Linux kernels☆716Updated 2 years ago
- Wiki for rump kernels☆462Updated 2 years ago
- Run any command transparently in a VM (this repo isn't part of Cappsule)☆27Updated 8 years ago
- Simple containers using Linux user namespaces — see also https://github.com/arachsys/ucontain☆187Updated 3 years ago
- ☆86Updated 8 years ago
- The Rumprun unikernel and toolchain for various platforms☆1,157Updated 5 years ago
- A block device in user space for Linux☆246Updated 2 years ago
- The "Intel x86 considered harmful" paper☆199Updated 9 years ago
- Simple Driver code for vmlaunch☆160Updated 8 years ago
- ☆232Updated 6 years ago
- This repository contains the nested kernel implementation as it was built for the ASPLOS 2015 paper, including the FreeBSD prototype Pers…☆55Updated 8 years ago
- A ptrace library for easy syscall injection in Linux.☆182Updated last year
- Use a TPM to store a TOTP token in order to attest boot state to another device☆208Updated last year
- ikgt manifest☆42Updated 3 years ago
- Monitor, rewrite and/or otherwise trap system calls... on Linux/x86{,-64} only, for now.☆62Updated last week
- Sandboxing File System☆46Updated 5 years ago
- LUKS support for storing keys in TPM NVRAM☆185Updated 7 years ago
- CJAG is an open-source implementation of our cache-based jamming agreement.☆284Updated 3 years ago