Cappsule (open-source for Linux), https://cappsule.github.io
virtualize any software on the fly (e.g. web browser,
office suite, media player) into lightweight VMs called
cappsules. Attacks are confined inside cappsules and
therefore don’t have any impact on the host OS.
Applications don’t need to be repackaged, and their usage
remain the same for the end user: it’s completely
transparent. Moreover, the OS doesn’t need to be
reinstalled nor modified.
Bromium (proprietary for Windows, based on open-source Xen), https://blogs.bromium.com/2016/09/26/introducing-virtualizat... Bromium and Microsoft partnered in 2015
.. extends VBS – isolating the execution of targeted
applications such as the browser, documents, executables,
downloads, attachments and media files .. to all
vulnerable applications on all Windows 7, 8 and 10
endpoints