Hacker News new | ask | show | jobs
by arianvanp 293 days ago
Sandboxing like gvisor is based on syscalls and iouring makes your code syscallless