$1 million hacker challenge for Vercel Sandbox
- Vercel Sandbox: 4 events in the last 90 days
What happened
Agents need to run untrusted code, and the microVM has become the standard way to do it: a dedicated guest kernel per workload, isolated from the host and from every other workload on the same machine. But recent security research and real-world incidents have revealed that agents running untrusted code do not need to cross a VM boundary to escape containment; they only need one network path the security model faile…
Summary assembled by rule from the sources below