Researchers escaped four top AI coding agents’ sandboxes without ever breaking them
The tools are Cursor, OpenAI’s Codex, Google’s Gemini CLI, and Antigravity. Over several months, Pillar Security found ways for each agent to cross its security boundary while staying, technically, inside the box. The escape that isn’t one The trick is neat. These sandboxes trust the agent inside the project folder and protect the host outside. […]
This story continues at The Next Web