The Hallway Track
Product Launches

YOLO Mode, Safely: MicroVM Sandboxes for Any Agent — Rowan Christmas, Docker

AI Engineer · Oct 03, 2026 · Product Launches

Docker's new SBX microVM sandbox secures AI agents from local data exfiltration risks.

“What if I try to hack myself?”

A Docker PM demonstrated that Claude Code running on a standard Mac desktop could access browser history, bank account details, and financial transaction data with no resistance — earning a 9/10 severity score from CrowdStrike. The talk introduced Docker SBX, a new microVM binary designed to sandbox AI agents and prevent this class of local credential and data exfiltration. As agentic coding tools proliferate, the gap between 'safe enough for development' and 'actually isolated' is becoming a critical infrastructure concern.

agent-security sandboxing docker microvm claude-code data-exfiltration

Watch / read the original source →