Problem Statement
Discuss security concerns unique to virtualised operating systems and how an OS design or admin can mitigate them.
Explanation
Virtualised environments introduce security concerns such as VM escape (guest breaking out of its sandbox), hypervisor attacks, sharing of resources causing side-channel leaks, and mis-configuration of virtual networks or snapshots. To mitigate these, OS and virtualisation platform designers adopt measures such as strict isolation between VMs (via hardware support like IOMMU, VT-d), secure hypervisor design, patching and minimal trusted computing base, network segmentation, secure boot, and proper access control. In interviews referencing container vs VM isolation differences and real-world mitigation steps shows your understanding.