Metallica cut their hair.
So did Bruce Dickinson. And he is still fucking metal!
Why would you want a VM with only a single process?
Exactly. There is no point in running a full blown OS just to virtualize a single app or process. Linux has an option for that, and it's called LXC (Linux Containers). Old Unices have that too: Solaris - Zone/Container AIX - WPAR HP-UX - vPar
Hypervisors are generally much simpler than full-fledged kernels and have less attack surface, and so they are less likely to be successfully attacked.
Yeah, just like VMware! It's a full-blown Linux OS with additional vmkernel module that takes over control as the hypervisor. Oh, wait...
UNIX is hot. It's more than hot. It's steaming. It's quicksilver lightning with a laserbeam kicker. -- Michael Jay Tucker