Hacker News new | ask | show | jobs
by acka 1917 days ago
Firejail[1] is IMO a good alternative. It handles sandboxing using Linux namespaces and seccomp-bpf.

[1] https://firejail.wordpress.com/