Comment by amonks
2 hours ago
> Container escapes can however be quite easy
This is certainly true of docker-style container setups where the host kernel is shared directly with other tenants, but it seems to me like a bold claim to make of gvisor as used by these systems.
No comments yet
Contribute on Hacker News ↗