Escaping VMware Workstation Through COM1
docs.google.com
docs.google.com
About 40 years ago IBM studied the security of their own VM technology. They found many exploitable bugs, and this was on a codebase that was probably less than 1% the size of VMware. I wrote more about IBM's findings on HN about 3 months ago:
In addition to the escapes, you need to contend with side channel timing observation and resource contention.
COM1
Man, I haven't even /thought/ about that term in years...virtualization comes with the lie of hardware isolation while devices are views on common peripherals that are isolated at application level by an incorrect abstraction.
jails and virtual machines alike are jails made of a strong but viciously brittling glass.
Depends on what you mean by "escape".