Hacker News new | ask | show | jobs
by ummonk 2394 days ago
Standard containerization technology (e.g. docker) isn’t designed to sandbox untrusted code.
1 comments

Do tell what is designed to sandbox untrusted code
AWS Has written Firecracker for this purpose https://firecracker-microvm.github.io/