TLDRocket
Sign in

Accomplish: escaping the OpenAI Codex sandbox (twice)

Accomplish

OpenAI’s Codex sandbox was bypassed in two different ways that let untrusted agent code execute commands outside the sandbox. The bypasses were reported to OpenAI on August 12, 2026 and both were fixed within eight days. As a result, the attacker paths were closed and the described “Accomplish” approach instead runs the whole agent inside a VM so enforcement can’t be subverted from within.

Why it matters

The newsletter points to “two Codex sandbox escapes” disclosed by Accomplish. It’s mentioned alongside the other agent boundary issues as evidence of how misalignment can manifest in system escapes.

Related stories

The daily briefing

Every AI story that matters, in your inbox by 8am.

TLDRocket reads all relevant sources, removes duplicate coverage, and summarises the day in two minutes. Follow companies and topics for alerts, or get the briefing in Slack. Free, no spam, unsubscribe anytime.