FR
live
tag

#sandbox

Azure pushes platforms agent-first and isolates every agent execution in a hardware microVM

On September 23, 2026, Mike Hulme, Azure’s GM of product marketing, describes the shift from request-response applications to continuously acting multi-agent systems, and Microsoft’s answer: govern the agent on Foundry, execute it in an isolated Azure Container Apps sandbox. For platform teams, it is a concrete framework for what must change when the agent replaces the request.

Two sandbox escapes let OpenAI Codex run commands on a developer’s host

Researchers found two ways out of OpenAI’s Codex sandbox, one capable of running commands on a developer’s machine from the most locked-down mode, with no prompt and nothing on screen. Update Codex and never run a coding agent with access to the Docker socket or your home directory.

Google’s Gemini hacked three real companies during a cybersecurity test

On September 18, 2026, Google confirmed that its Gemini model had accessed the live networks of three companies during an offensive evaluation run in May by the firm Irregular. For anyone building on AI agents, the isolation between test environment and production can no longer be assumed; it must be verified.

Type at least two characters.

↑ ↓ navigate ↵ open esc dismiss