logoalt Hacker News

slopinthebag • today at 12:57 AM • 2 replies • view on HN

in that case we need a block of system memory marked as unsafe so i can run these programs in it encapsulated

perhaps we could call it a sedimentchest?


Replies

catlifeonmars • today at 1:55 AM

I think that’s just called “memory”. Encapsulation is your machine.

someonebaggy • today at 4:08 AM

See xkcd's sandboxing cycle. They exist, they're called processes