Safety & Security · Infrastructure resource
MicroVM Sandbox
Infrastructure resourceSafety & SecuritySafety, Security & Governancearc:MicroVMSandbox
An execution sandbox that runs each container inside a lightweight hardware-virtualized VM with its own guest kernel while preserving container APIs.
Responsibility. Provides VM-boundary isolation so kernel exploits do not reach the host.
Also known as: Hardware-backed virtualization sandbox, Lightweight VM sandbox
Variant of Execution Sandbox abstract
When to choose. Choose for adversarial multi-tenant, batch or high-value workloads (e.g., financial services handling customer funds) where security outweighs VM boot latency and memory overhead; also the fallback for gVisor-incompatible workloads.
Relationships
alternative to variability
Quantitative guidance
As stated by the sources; verify before use.
- VM boot adds tens of milliseconds to startup plus guest-kernel memory and syscall context-switch overhead (Ch9.3).
Classification
- Technologies
- Kata ContainersFirecrackerAzure Confidential Containers
- Quality attributes
- Security (ISO/IEC 25010 | NIST AI RMF: secure and resilient)
Sources
- Ch9.3: T. Nguyen, "Sandboxing and Transparency Foundations," in Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam, 1st ed. 2026, ch. 9.3. ISBN: 9798244538229.