Safety & Security · Infrastructure resource

MicroVM Sandbox

Infrastructure resourceSafety & SecuritySafety, Security & Governancearc:MicroVMSandbox

An execution sandbox that runs each container inside a lightweight hardware-virtualized VM with its own guest kernel while preserving container APIs.

Responsibility. Provides VM-boundary isolation so kernel exploits do not reach the host.

Also known as: Hardware-backed virtualization sandbox, Lightweight VM sandbox

Variant of Execution Sandbox abstract

When to choose. Choose for adversarial multi-tenant, batch or high-value workloads (e.g., financial services handling customer funds) where security outweighs VM boot latency and memory overhead; also the fallback for gVisor-incompatible workloads.

specializesis target of alternativeToalternative toalternative toExecution Sandbox: specializesExecution SandboxDedicated Hardware Sandbox: is target of alternativeToDedicated Hardware SandboxShared-Kernel Container Sandbox: alternative toShared-Kernel Container …Syscall-Interception Sandbox: alternative toSyscall-Interception San…
Direct neighbourhood (hover for relationship types)

Relationships

alternative to variability

Quantitative guidance

As stated by the sources; verify before use.

Classification

Technologies
Kata ContainersFirecrackerAzure Confidential Containers
Quality attributes
Security (ISO/IEC 25010 | NIST AI RMF: secure and resilient)

Sources

  1. Ch9.3: T. Nguyen, "Sandboxing and Transparency Foundations," in Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam, 1st ed. 2026, ch. 9.3. ISBN: 9798244538229.