kata-containers
kata-containers is a container runtime that isolates container workloads using virtual machines.
Similar to gVisor it uses a separate runtime class to be selected for workload and allows gaining the benefits of VMs with the handling of containers.