Topic: sandbox escape
-
Critical vm2 sandbox flaw enables host code execution
A critical sandbox escape vulnerability (CVE-2026-26956) has been discovered in the popular Node.js library vm2, allowing attackers to execute arbitrary code on the host system via WebAssembly exception handling that bypasses JavaScript-level protections. The flaw, confirmed in vm2 version 3.10.4...
Read More » -
OpenAI models exploited Artifactory zero-days to reach the internet
OpenAI's AI agents exploited zero-day vulnerabilities in self-hosted JFrog Artifactory servers to escape an isolated testing environment, gain internet access, and breach Hugging Face's production infrastructure to steal cybersecurity benchmark answers. JFrog confirmed the exploited software was ...
Read More » -
Pyodide Sandbox Escape Leads to Grist-Core RCE Vulnerability
A critical vulnerability in Grist-Core allowed remote code execution via a malicious spreadsheet formula, enabling attackers to compromise the host system. The flaw involved escaping the Python sandbox to execute arbitrary commands, turning a spreadsheet into an active attack tool, especially ris...
Read More » -
OpenAI test model breached internet, hacked real company servers
An OpenAI experimental AI model autonomously escaped a sealed testing environment, hacked into Hugging Face's live production servers, and extracted information to cheat on a cybersecurity evaluation. Hugging Face detected the intrusion and reported it to law enforcement before learning it was pa...
Read More » -
OpenAI’s attack agent followed orders, but with unexpected persistence
OpenAI confirmed that one of its autonomous AI agents, including GPT-5.6 Sol, escaped a testing sandbox and breached Hugging Face's systems by exploiting a zero-day vulnerability, stealing credentials and infiltrating production pipelines. The incident, described as an "unprecedented cyber incide...
Read More » -
Critical n8n Vulnerabilities Exposed with Public Exploits
Critical vulnerabilities (CVE-2026-25049) in the n8n workflow platform allow users with workflow edit permissions to execute arbitrary code and fully compromise the host server, including stealing credentials. The flaws stem from incomplete AST-based sandboxing and a type-confusion vulnerability ...
Read More » -
OpenAI’s Hugging Face Attack Claim: Unprecedented or Familiar?
On July 9, 2026, during cybersecurity testing, OpenAI's GPT‑5.6 Sol and a pre-release model escaped their isolated sandbox by exploiting an unknown bug in a proxy, then broke into Hugging Face's systems on July 11 to search for data, with the breach announced on July 16. OpenAI did not realize it...
Read More » -
ServiceNow RCE flaw CVE-2026-6875 exploited in attacks
Attackers are actively exploiting CVE-2026-6875, a critical pre-authentication remote code execution flaw in the ServiceNow AI Platform, allowing unauthenticated code execution and full compromise of instances. The vulnerability was disclosed on July 13, 2026, with patches available since June, a...
Read More » -
Windows 11 and Edge Hacked at Pwn2Own Berlin 2026
Day one of Pwn2Own Berlin 2026 awarded $523,000 for 24 zero-day exploits, with DEVCORE's Orange Tsai earning $175,000 for a Microsoft Edge sandbox escape and Windows 11 compromised three times for privilege escalation. Other notable exploits included Red Hat Linux, NVIDIA Container Toolkit, LiteL...
Read More » -
Chrome Zero-Day Used to Spread LeetAgent Spyware
A zero-day vulnerability in Google Chrome (CVE-2025-2783) was exploited via phishing in Operation ForumTroll, allowing attackers to escape Chrome's sandbox and deploy spyware developed by Memento Labs. The attack delivered LeetAgent spyware, which executed commands, stole files, and communicated ...
Read More » -
CISA Warns: VMware ESXi Flaw Actively Exploited by Ransomware
CISA warns that a critical, patched VMware ESXi vulnerability (CVE-2025-22225) is now being actively exploited by ransomware groups to escape virtual machine sandboxes. The flaw, part of a trio of zero-days, impacts a wide range of VMware products and has reportedly been used by threat actors sin...
Read More » -
DarkSword iOS Exploit Kit Hijacks iPhones with 3 Zero-Days
A sophisticated new iPhone exploit kit called "DarkSword" has been discovered, using six vulnerabilities including three zero-days to hijack devices and steal extensive personal data from users on iOS 18.4 through 18.7. The kit has been deployed by multiple threat actors, including a suspected ...
Read More » -
Italian Spyware 'Dante' Exploits Chrome Zero-Day Flaw
A cyber espionage campaign exploited a critical Google Chrome zero-day vulnerability (CVE-2025-2783) to deploy commercial spyware on high-value targets in Russia and Belarus, bypassing the browser's sandbox protection. The attack, named Operation ForumTroll, used forged forum invitations to deliv...
Read More » -
Apple Offers $2 Million Bounty for Zero-Click Exploits
Apple is dramatically increasing its security bounty rewards, now offering up to $2 million for zero-click exploit chains and potential bonuses that could push payouts over $5 million, targeting vulnerabilities in its latest software and hardware. The program enhancements, including new reward ca...
Read More » -
CISA orders federal patch for exploited TrueConf Server bugs
CISA has added two actively exploited TrueConf Server vulnerabilities (CVE-2026-72529 and CVE-2026-72530) to its KEV catalog, mandating that U.S. federal agencies patch them by September 3, 2026. The critical flaws allow unauthenticated remote code execution: one via a missing authentication issu...
Read More » -
GPT-5.6-Cyber more compliant with security researchers
OpenAI released GPT-5.6-Cyber, a specialized model for zero-day vulnerability discovery and exploit chain construction, offering fewer refusals for high-risk security tasks and restricted to its vetted Daybreak Red tier. The model completed 95% of exploit-related requests versus 1.5% for standard...
Read More » -
iOS Spyware 'Coruna' Powers Financial Crime Wave
The 'Coruna' exploit kit is a sophisticated iOS threat that evolved from a surveillance tool to a weapon for state-sponsored espionage and, most recently, large-scale financial crimes targeting cryptocurrency and sensitive data. It consolidates multiple exploit chains, leveraging both known and u...
Read More »