Hacker News new | ask | show | jobs
by upofadown 4011 days ago
Virtual machines have a much higher level of isolation than the LXC used currently for containers. In a container all it takes to get access to the whole system is a privilege escalation exploit. Such exploits are fairly common.