Y
Hacker News
new
|
ask
|
show
|
jobs
by
goodpoint
239 days ago
It would not block many other attacks.
1 comments
oofbey
239 days ago
Can you give some examples? I think of my containers as decently good security boundaries, so I'd like to know what I'm missing.
link
kwar13
239 days ago
Containers share resources at the OS level, VMs don't. That's the crucial difference.
link
goodpoint
239 days ago
Containers share the whole kernel (and more) so there's a massive attack surface.
link