Hacker News new | ask | show | jobs
by GrantMoyer 201 days ago
Linux supports per-process namespaces too, and has tools like firejail to use them for sandboxing, but nonetheless sandboxing is not widely used.