Security researchers at Pillar Security uncover serious sandbox escape vulnerabilities in four major AI coding agents: Cursor, OpenAI's Codex, Google's Gemini CLI, and Antigravity. Rather than attacking the sandboxes directly, the researchers exploit a subtle trust gap. The AI agent stays safely inside its sandbox and