seccomp-bpf-policies
There are 4 repositories under seccomp-bpf-policies topic.
google/nsjail
A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.
equk/torjail
:lock: download, verify & run torbrowser in a sandbox
avilum/syscalls
Merged to firejail; Find syscalls of executables for seccomp-bpf sandbox policies.
elastic/go-seccomp-bpf
Go library for installing a seccomp BPF system call filter.