Why are v8 isolates bad, I see speculative execution hacks, but are there others?
The v8 JIT is very complex and can lead to sandbox escapes if there are type confusion bugs.
v8 isolates are still shared kernel
while microvm's are separate kernel + hardware virtualization through hypervisor guarantees
I wouldn't call it bad either, just different tools for different things
Despite naming them isolates, the V8 team does not consider them to be a security boundary.