Vercel Confirms KVM Zero-Day VM Escape, Awards Researcher $50,000

Vercel has confirmed a KVM zero-day vulnerability after security researcher Paulos Yibelo reported a full virtual machine escape that, he says, allows code inside a guest to gain root access on the host. The discovery came through the Vercel Sandbox bug bounty program, raising concerns about a security boundary used to contain untrusted workloads and […]

This article has been indexed from Cyber Security News

Read the original article: