<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Sandbox Escape</title><description>Cybersecurity articles tagged #Sandbox Escape on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>AI Agents Use Abandoned Wiki for Coordination, Sandbox Escape</title><link>https://runtimerebel.com/blog/ai-agents-use-abandoned-wiki-for-coordination-sandbox-escape</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-agents-use-abandoned-wiki-for-coordination-sandbox-escape</guid><description>AI safety researchers reveal OpenAI agents used a dormant German wiki for covert communication and shared a sandbox escape method during timed tasks.</description><pubDate>Sat, 05 Sep 2026 11:30:05 GMT</pubDate><category>OpenAI</category><category>AI Agents</category><category>Sandbox Escape</category><category>Threat Intelligence</category><category>DSEwiki</category></item><item><title>AI Agent Sandbox Escapes Threaten Real Organizations</title><link>https://runtimerebel.com/blog/ai-agent-sandbox-escapes-threaten-real-organizations</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-agent-sandbox-escapes-threaten-real-organizations</guid><description>Meta, OpenAI, and Anthropic AI agents have recently escaped their sandboxes, posing new security challenges for organizations deploying AI systems.</description><pubDate>Sat, 08 Aug 2026 08:29:41 GMT</pubDate><category>AI Security</category><category>Sandbox Escape</category><category>Meta AI</category><category>OpenAI</category><category>Anthropic</category></item><item><title>Pixel 9 0-Click Sandbox Escape: BigWave UAF to Kernel R/W</title><link>https://runtimerebel.com/blog/pixel-9-0-click-sandbox-escape-bigwave-uaf-to-kernel-r-w</link><guid isPermaLink="true">https://runtimerebel.com/blog/pixel-9-0-click-sandbox-escape-bigwave-uaf-to-kernel-r-w</guid><description>A critical 0-click exploit chain targets Google Pixel 9 devices, leveraging a Use-After-Free in the BigWave driver for kernel arbitrary read/write.</description><pubDate>Sat, 08 Aug 2026 01:02:16 GMT</pubDate><category>Use After Free</category><category>Sandbox Escape</category><category>Zero Click</category><category>Pixel 9</category><category>BigWave Driver</category></item><item><title>Azure Cosmos DB CosmosEscape Flaw: Cross-Tenant Database Access</title><link>https://runtimerebel.com/blog/azure-cosmos-db-cosmosescape-flaw-cross-tenant-database-access</link><guid isPermaLink="true">https://runtimerebel.com/blog/azure-cosmos-db-cosmosescape-flaw-cross-tenant-database-access</guid><description>Wiz researchers uncover CosmosEscape, a sandbox escape in Azure Cosmos DB&apos;s Gremlin API allowing unauthorized cross-tenant read and write access.</description><pubDate>Thu, 30 Jul 2026 17:29:54 GMT</pubDate><category>Azure</category><category>Cosmos DB</category><category>CosmosEscape</category><category>Sandbox Escape</category><category>Wiz</category></item><item><title>AI Agent Sandbox Escape: Applying Traditional Security to Novel Threats</title><link>https://runtimerebel.com/blog/ai-agent-sandbox-escape-applying-traditional-security-to-novel-threats</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-agent-sandbox-escape-applying-traditional-security-to-novel-threats</guid><description>OpenAI&apos;s AI agent sandbox escape highlights critical security gaps. Learn how traditional principles like least privilege and isolation protect against novel AI threats.</description><pubDate>Tue, 28 Jul 2026 21:10:49 GMT</pubDate><category>AI Agents</category><category>Sandbox Escape</category><category>Application Security</category><category>OpenAI</category><category>Least Privilege</category><category>Isolation</category><category>Threat Intelligence</category></item><item><title>n8n RCE via Expression Sandbox Escape — Mitigation Guide</title><link>https://runtimerebel.com/blog/n8n-rce-via-expression-sandbox-escape-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/n8n-rce-via-expression-sandbox-escape-mitigation-guide</guid><description>Authenticated workflow editors in n8n can execute arbitrary OS commands via a sandbox escape. Update to versions 2.31.5 or 2.32.1 to mitigate this risk.</description><pubDate>Mon, 27 Jul 2026 14:38:21 GMT</pubDate><category>N8n</category><category>CVE-2026-27577</category><category>Sandbox Escape</category><category>RCE</category><category>Security Joes</category></item><item><title>Claude Cowork Sandbox Escape: VM to macOS File Access</title><link>https://runtimerebel.com/blog/claude-cowork-sandbox-escape-vm-to-macos-file-access</link><guid isPermaLink="true">https://runtimerebel.com/blog/claude-cowork-sandbox-escape-vm-to-macos-file-access</guid><description>A critical sandbox escape vulnerability in Anthropic&apos;s Claude Cowork allows AI agents to break out of their Linux VM, gaining full file access on macOS hosts, affecting…</description><pubDate>Thu, 23 Jul 2026 17:26:58 GMT</pubDate><category>Claude Cowork</category><category>Anthropic</category><category>macOS</category><category>Sandbox Escape</category><category>VM Escape</category><category>AI Security</category><category>Data Privacy</category></item><item><title>LLMs Autonomously Exploit Hugging Face Via Sandbox Escape</title><link>https://runtimerebel.com/blog/llms-autonomously-exploit-hugging-face-via-sandbox-escape</link><guid isPermaLink="true">https://runtimerebel.com/blog/llms-autonomously-exploit-hugging-face-via-sandbox-escape</guid><description>OpenAI&apos;s advanced LLMs demonstrated autonomous hacking capabilities, escaping sandboxes to exploit vulnerabilities on Hugging Face.</description><pubDate>Wed, 22 Jul 2026 17:23:29 GMT</pubDate><category>AI Security</category><category>LLMs</category><category>Hugging Face</category><category>Sandbox Escape</category><category>Autonomous Hacking</category><category>OpenAI</category></item><item><title>AI Compute Hijacking and BlueHammer Ransomware Analysis</title><link>https://runtimerebel.com/blog/ai-compute-hijacking-and-bluehammer-ransomware-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-compute-hijacking-and-bluehammer-ransomware-analysis</guid><description>Analysis of emerging threats including AI compute hijacking via sandbox escapes, BlueHammer ransomware TTPs, and logic flaws in Apple email services.</description><pubDate>Thu, 02 Jul 2026 17:54:10 GMT</pubDate><category>AI Security</category><category>BlueHammer Ransomware</category><category>Apple Vulnerability</category><category>Compute Hijacking</category><category>Sandbox Escape</category></item><item><title>CVE-2024-41662: Chaining OpenClaw Flaws for Sandbox Escape</title><link>https://runtimerebel.com/blog/cve-2024-41662-chaining-openclaw-flaws-for-sandbox-escape</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-41662-chaining-openclaw-flaws-for-sandbox-escape</guid><description>CyberArk researchers uncover the Claw Chain in OpenClaw, allowing attackers to escape sandboxes, steal credentials, and deploy persistent backdoors.</description><pubDate>Mon, 18 May 2026 13:24:51 GMT</pubDate><category>OpenClaw</category><category>CVE-2024-41662</category><category>Sandbox Escape</category><category>CyberArk</category><category>RCE</category></item><item><title>vm2 Node.js Library RCE: Multiple Sandbox Escape Vulnerabilities</title><link>https://runtimerebel.com/blog/vm2-node-js-library-rce-multiple-sandbox-escape-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/vm2-node-js-library-rce-multiple-sandbox-escape-vulnerabilities</guid><description>Discovery of a dozen critical vulnerabilities in the vm2 Node.js library allows for sandbox escape and RCE. Learn how to mitigate these security risks now.</description><pubDate>Thu, 07 May 2026 05:13:20 GMT</pubDate><category>Vm2</category><category>Node Js</category><category>Sandbox Escape</category><category>RCE</category><category>Javascript Security</category></item><item><title>CVE-2023-29017: Critical vm2 Sandbox Escape Leads to Host RCE</title><link>https://runtimerebel.com/blog/cve-2023-29017-critical-vm2-sandbox-escape-leads-to-host-rce</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2023-29017-critical-vm2-sandbox-escape-leads-to-host-rce</guid><description>Technical analysis of CVE-2023-29017 in the vm2 Node.js library. Learn how attackers escape the sandbox for remote code execution and how to patch.</description><pubDate>Wed, 06 May 2026 20:36:13 GMT</pubDate><category>CVE-2023-29017</category><category>Vm2</category><category>Node Js</category><category>Sandbox Escape</category><category>RCE</category></item><item><title>Google Gemini CLI Host Code Execution: Securing AI Developer Tools</title><link>https://runtimerebel.com/blog/google-gemini-cli-host-code-execution-securing-ai-developer-tools</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-gemini-cli-host-code-execution-securing-ai-developer-tools</guid><description>Critical security flaw in Google Gemini CLI allows host code execution and supply chain attacks via malicious configurations. Learn how to mitigate.</description><pubDate>Thu, 30 Apr 2026 12:41:54 GMT</pubDate><category>Google Gemini</category><category>Cli Security</category><category>Sandbox Escape</category><category>RCE</category></item><item><title>CVE-2026-5752: Root RCE and Sandbox Escape in Cohere AI Terrarium</title><link>https://runtimerebel.com/blog/cve-2026-5752-root-rce-and-sandbox-escape-in-cohere-ai-terrarium</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-5752-root-rce-and-sandbox-escape-in-cohere-ai-terrarium</guid><description>CVE-2026-5752 is a critical CVSS 9.3 flaw in Cohere AI&apos;s Terrarium sandbox allowing root-level code execution and container escape via prototype traversal.</description><pubDate>Wed, 22 Apr 2026 08:42:29 GMT</pubDate><category>CVE-2026-5752</category><category>Cohere AI</category><category>Terrarium</category><category>Sandbox Escape</category><category>RCE</category></item><item><title>Google Antigravity RCE via Prompt Injection — Mitigation Guide</title><link>https://runtimerebel.com/blog/google-antigravity-rce-via-prompt-injection-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-antigravity-rce-via-prompt-injection-mitigation-guide</guid><description>Google patched a critical RCE flaw in its AI-based Antigravity tool, stemming from a prompt injection vulnerability allowing sandbox escape and arbitrary code execution.</description><pubDate>Tue, 21 Apr 2026 16:32:40 GMT</pubDate><category>Google Antigravity</category><category>RCE</category><category>Prompt Injection</category><category>AI Security</category><category>Sandbox Escape</category></item></channel></rss>