VOOZH about

URL: https://thenewstack.io/intel-releases-cloud-hypervisor-based-on-same-components-as-amazons-firecracker/

⇱ Intel Releases Cloud Hypervisor Based on Same Components as Amazon’s Firecracker - The New Stack


TNS
SUBSCRIBE
Join our community of software engineering leaders and aspirational developers. Always stay in-the-know by getting the most important news and exclusive content delivered fresh to your inbox to learn more about at-scale software development.
REQUIRED
It seems that you've previously unsubscribed from our newsletter in the past. Click the button below to open the re-subscribe form in a new tab. When you're done, simply close that tab and continue with this form to complete your subscription.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.
Welcome and thank you for joining The New Stack community!
Please answer a few simple questions to help us deliver the news and resources you are interested in.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Great to meet you!
Tell us a bit about your job so we can cover the topics you find most relevant.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Welcome!

We’re so glad you’re here. You can expect all the best TNS content to arrive Monday through Friday to keep you on top of the news and at the top of your game.

What’s next?

Check your inbox for a confirmation email where you can adjust your preferences and even join additional groups.

Follow TNS on your favorite social media networks.

Become a TNS follower on LinkedIn.

Check out the latest featured and trending stories while you wait for your first TNS newsletter.

PREV
1 of 2
NEXT
VOXPOP
As a JavaScript developer, what non-React tools do you use most often?
Angular
0%
Astro
0%
Svelte
0%
Vue.js
0%
Other
0%
I only use React
0%
I don't use JavaScript
0%
Thanks for your opinion! Subscribe below to get the final results, published exclusively in our TNS Update newsletter:
NEW! Try Stackie AI
From clobbered drafts to real-time sync
Apr 14th 2026 10:00am, by David Moore
TypeScript 6.0 RC arrives as a bridge to a faster future
Mar 14th 2026 9:00am, by Darryl K. Taft
Mastra empowers web devs to build AI agents in TypeScript
Jan 28th 2026 11:00am, by Loraine Lawson
2019-05-14 16:20:00
Intel Releases Cloud Hypervisor Based on Same Components as Amazon’s Firecracker
Cloud Native Ecosystem / Containers

Intel Releases Cloud Hypervisor Based on Same Components as Amazon’s Firecracker

May 14th, 2019 4:20pm by Libby Clark
👁 Featued image for: Intel Releases Cloud Hypervisor Based on Same Components as Amazon’s Firecracker
Feature image courtesy of Intel.

Intel today announced a new special-purpose Linux hypervisor for cloud native workloads built on the Rust virtual machine manager, or rust-vmm — the open source set of hypervisor components that Amazon’s Firecracker micro virtual machine is built on.

Intel last year began stripping out hundreds of thousands of lines of legacy code from the traditional enterprise hypervisor QEMU, under a project named Nemu. That legacy code was intended to, say, emulate floppy drives or keyboards. Instead, they have focused the new hypervisor on just those components that are useful in the cloud including security, memory safety, thread safety and performance.

“We’ve realized there are a lot of things getting used in cloud software that really need modernization,” Imad Sousou, vice president of the software and services group at Intel, said. “We’re just reusing what was being used for enterprise into cloud and edge and that might not necessarily be the right thing.”

A Modern, Secure Hypervisor

Removing the heavy, desktop and server oriented emulation components of Linux — roughly 80 percent of the original QEMU code, Sousou estimates — cuts the virtual machine boot time significantly. The result is VMs that behave more like containers. They spin up faster and run with less overhead but retain the process isolation that makes them more secure than containers.

Granted, not everyone needs that level of security, Sousou said. For most workloads, containers are secure enough. However, in some specialized industries or enterprises only VMs can offer the level of isolation they need to meet strict security and compliance requirements. The problem is that VMs take too much time to load and can be much less efficient and costly to run at scale as a result of this legacy code designed for physical computing.

Improving container security with virtualization is a problem that Intel has been working for many years to solve. So far their efforts to make containers more secure have resulted in the creation of Kata Containers which essentially wraps containers in a VM to achieve that process isolation. Now they are going back to the root of the problem, Sousou said, to the hypervisor itself.

The rust-vmm project is part of a larger effort by Intel to work with its ecosystem partners on a number of software projects that help ensure their infrastructure runs well on top of Intel hardware.

Nemu laid the foundation for rust-vmm, which has since attracted contributions from Alibaba, Amazon, Google and Red Hat. Amazon has contributed parts of Firecracker to the project and Google has contributed CrosVM, a VMM for Chrome OS.

“All of us have an interest in having a secure hypervisor that’s suitable for modern useages,” Sousou said.

Rust-vmm is the Yocto of Virtualization

The rust-vmm project is a collection of components from which cloud providers can assemble their own special-purpose hypervisors. Amazon, for example, can use the components to run FaaS in VMs with its own open source Firecracker project, a technology that analyst Janakiram MSV writes, “has the potential to disrupt the current container and serverless technologies.”

In this respect, rust-vmm is similar to Intel’s Yocto Project for embedded Linux. With Yocto, users can pick and choose from the operating system components most useful to them and discard the rest to create a performant, custom embedded Linux distribution without building it from scratch every time. With rust-vmm, users can pick and choose from the virtualization components they need. These include components such as KVM API wrappers, Virtio based device models and virtual machine memory libraries.

Intel is taking this modular approach to architecture and open source projects in other areas of the software stack as well, including cloud, edge and artificial intelligence workloads.

Intel has developed a completely new architecture for BIOS, for example, reducing legacy code to make it more suitable for cloud, edge and AI. The project will also work on changing operating systems to take over functionality traditionally handled by BIOS, Sousou said. “This is an entire system that can get fired up in milliseconds, and be much more secure, runs virtualization and can partition itself better.”

TRENDING STORIES
Libby is the Open Source Community Marketing Manager at Amazon Web Services. She was most recently VP of strategy at The New Stack where she helped grow the company toward its 2021 acquisition by Insight Partners, and before that spent...
Read more from Libby Clark
SHARE THIS STORY
TRENDING STORIES
Red Hat OpenShift is a sponsor of The New Stack.
SHARE THIS STORY
TRENDING STORIES
TNS DAILY NEWSLETTER Receive a free roundup of the most recent TNS articles in your inbox each day.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.