Researchers disclosed two sandbox escapes in OpenAI Codex CLI and desktop app, including Heapjack. Opening an untrusted repo can yield unsandboxed host command execution, breaking agent containment. T
Researchers disclosed two sandbox escapes in OpenAI Codex CLI and desktop app, including Heapjack. Opening an untrusted repo can yield unsandboxed host command execution, breaking agent containment. Treat AI agents as untrusted execution and audit workflows. # HeapJack # CodexSecurity # SandboxEscape https:// cyberworldops.eu/en/openai-cod ex-sandbox-flaws-turn-repository-analysis-into-host-level