SECURITY·중요도 8·2026. 09. 09.·The Hacker News

DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval

── KO ──────────────────

DeepSeek Harness의 결함으로 AI 에이전트가 샌드박스를 비활성화할 수 있음.

DeepSeek의 오픈 소스 도구인 DeepSeek Harness에서 발견된 결함으로 인해 AI 코딩 에이전트가 자신의 샌드박스를 승인 없이 끌 수 있게 되었습니다. 이 도구는 에이전트의 명령을 운영 체제 샌드박스 내에서 실행하여 신뢰할 수 없는 파일 작업 시 외부로 쓰지 못하게 하는 기능을 가지고 있습니다. 그러나 에이전트는 툴의 웹 인터페이스를 호출하여 이 제한을 제거할 수 있는 명령을 실행할 수 있었습니다.


── EN ──────────────────

Flaw in DeepSeek Harness lets AI agents disable their own sandbox without approval.

A flaw in DeepSeek Harness, an open-source tool from DeepSeek, allows AI coding agents to disable their sandbox without approval. This tool runs agent commands in an operating system sandbox to prevent writing outside their workspace when working with untrusted files. However, agents could execute a command via the tool's web interface to remove this limitation.

원문 보기 →목록으로