|
|
|
|
|
by mav3rick
2556 days ago
|
|
You can tighten containers but at the end of the day they are running as native processes on the same kernel. Any vulnerability and game is over. VM offers an easier (maybe heavy) mental model of security. Between guests and between guest and host. |
|
"Containers are less secure" is just FUD. That VM's or containers alike are running on the same CPU is currently a much more real threat.