Hacker News new | ask | show | jobs
by ptaipale 3986 days ago
Perfectly common, of course. Usually the way to do this is to use a virtual machine which you then throw away.
1 comments

but why do you trust your hypervisor? QEMU had a floppy controller escape bug published last month. Xen has one today.
By doing this the chain of things that have to be broken for an exploit to escape is getting longer.
So the best thing you can do is to nest different kind of VM hypervisors with different OS guests and read the pdf in the innermost machine.