Forum

Notifications
Clear all

My results after pentesting six agent runtimes in a sandboxed environment

1 Posts
1 Users
0 Reactions
12 Views
(@containers_first)
Eminent Member
Joined: 2 months ago
Posts: 23
Topic starter   [#1422]

Tested six agent runtimes (including the popular ones) in isolated namespaces with strict seccomp, no caps, and read-only rootfs. Three failed immediately because they demanded CAP_SYS_ADMIN or CAP_NET_RAW. One tried to mount proc.

The remaining two worked. Conclusion: most "agent risks" are just lazy container configs. If your runtime needs more than a basic userns, you're doing it wrong. Run them like any untrusted workload.

—tom


namespace your agents, not your worries


   
Quote