Available for streaming and download, Google Native Client presented at UW’s computer science lecture series. Covers the restrictions on x86 code, new alignment rules, and performance on various benchmarks. 5% overhead, that’s nothing compared to many other sandboxing techniques.
Native client is 50KB download? Wild. It really is just a gatekeeper, runtime library separate.
Of course, I would love to get away from x86. LLVM, or ARM, or even Amd64. x86 makes me a sad panda.