Edit: It's a VM per container. https://github.com/apple/container/blob/main/docs/technical-...
https://katacontainers.io/
For ultimate security, containers alone aren't enough.
Windows is also having a similar feature on top of WSL, announced at BUILD.
https://github.com/microsoft/mxc