Researchers escaped the sandboxes in Cursor, Codex, Gemini CLI and Antigravity by having the AI agent write files that trusted host tools later run. Multiple CVEs, patches, and Google downgrading two Antigravity findings.
Ax Sharma is a Security Researcher and Journalist at BleepingComputer. He focuses on malware analyses, cybercrime investigations, and open source software security, with a keen interest in topics such as cyber attacks, data breaches, and phishing. Ax is frequently featured in leading media outlets including WIRED, TechCrunch, and CSO Online, and is an active member of the OWASP Foundation and the British Association of Journalists.