Skip to main content
Scour
Browse
Getting Started
Login
Sign Up
You are offline. Trying to reconnect...
Copied to clipboard
Unable to share or copy to clipboard
🔒 Container Security
Sandboxing, Isolation, Seccomp, Capabilities, Rootless Containers
Filter Results
Timeframe
Fresh
Past Hour
Today
This Week
This Month
Feeds to Scour
Subscribed
All
Scoured
23
posts in
17.3
ms
Sandboxing
for dummies: Process
isolation
,
seccomp
and writing good policies
📦
Namespaces
renato.boo
·
3d
·
Hacker News
How we
contain
Claude across products
🤖
Anthropic Claude API
simonwillison.net
·
1d
·
Hacker News
Open-Source Alternatives to E2B for
Sandboxed
Code Execution
🔒
Runtime Security
beam.cloud
·
18h
Mitigating CVE-2026-31431 (“Copy Fail”) in Docker Engine
🔒
Runtime Security
docker.com
·
4d
gumieri/nenya: A lightweight, highly
secure
AI API Gateway/Proxy written in Go. Acts as transparent middleware between local AI coding clients (OpenCode/Pi/Cursor) and upstream LLM providers (Gemini, DeepSeek, Zhipu z.ai).
📋
OpenAPI
github.com
·
1d
Dirty Frag: a
kernel
zero-day vs.
container
and microVM
sandboxes
💣
Binary Exploitation
news.ycombinator.com
·
4d
·
Hacker News
The Good, the Bad, and the Ugly: Hacking 3 Cloud Providers with 1 Vulnerability
☁️
Cloud Security
youtube.com
·
6d
From Exploit Code to Production Detection: Building a CVE-2026-31431 (Copy Fail) detection with Agents
💣
Binary Exploitation
securitylabs.datadoghq.com
·
4d
Kisyntra/Agent_Sudo: Local permission gateway for AI agents with approvals, delegation, audit logging, and MCP integration.
📋
AGENTS.md
github.com
·
1d
·
DEV
CIFSwitch (cifs.spnego LPE): Mitigation and
Kernel
Update on CloudLinux
🛡️
Exploit Mitigations
blog.cloudlinux.com
·
3d
Security
updates for Tuesday [LWN.net]
📟
Firmware Analysis
lwn.net
·
5d
Top Daytona.io Alternatives
🔒
Runtime Security
beam.cloud
·
18h
Kubernetes
Study Path — From kubectl to a Production Cluster
📦
Namespaces
semicolony.dev
·
6d
·
Hacker News
Small and standalone mDNS responder using the Traefik API
📊
Self-Hosted Analytics
codeberg.org
·
6d
·
r/homelab
octelium/cordium: Open-source
sandbox
platform with identity-based secretless infrastructure access for developers and AI agents on
Kubernetes
🔒
Runtime Security
github.com
·
6d
·
Hacker News
,
Hacker News
Manage MCP servers on Red Hat OpenShift with the MCP lifecycle operator
💻
Personal Computing
redhat.com
·
4d
System Calls
📞
System Calls
internals-for-interns.com
·
6d
Teleport-env – <500ms stateful rollbacks for AI agents via CRIU
🤖
Network Automation
github.com
·
4d
·
Hacker News
The Untrusted Autonomous Workload: How AI Coding Agents Reshape What
Isolation
Has to Do
🔒
Runtime Security
docker.com
·
5d
[Project] Bashqueues: A shell-native, policy-driven IPC and job management system (Seeking technical feedback)
🛡️
CLI Security
github.com
·
4d
·
r/linux
Log in to enable infinite scrolling
Keyboard Shortcuts
Navigation
Next / previous item
j
/
k
Open post
o
or
Enter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
g
h
Interests
g
i
Feeds
g
f
Likes
g
l
History
g
y
Changelog
g
c
Settings
g
s
Browse
g
b
Search
/
Pagination
Next page
n
Previous page
p
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc
Press
?
anytime to show this help