Full VM escape 0day burned on Vercel's bug bounty: guest-to-host root in standard hypervisors
cramforce · x · 2026-10-03
Security researcher Paulos Yibelo disclosed a full VM escape zeroday — guest-to-host root in industry-standard hypervisors — and Vercel's Malte Ubl confirmed it went through their bug bounty program.
"The haters said people wouldn't burn 0day Kernel/KVM CVEs on Vercel bug bounties. They were wrong. It's a new world out there."
A detailed blog post is coming soon.
More from Safety
- Brundage doubles down: with billions of users, AI firms aren't causally blameless for deaths — Miles_Brundage · 2026-10-03
- Miles Brundage: shipping with known flaws isn't iterative deployment, it's just faster shipping — Miles_Brundage · 2026-10-03
- OpenAI's new reasoning models can have chats human-reviewed even if you opted out — JeremyNguyenPhD · 2026-10-03
- NUS Press Unveils a 'Very Sensible' AI Writing Policy, Economist Endorses Its Rationale — paulnovosad · 2026-10-03
- Test shows DeepMind's SynthIDBio protein watermark can be washed out, researchers say — owl_posting · 2026-10-03
- Ex-OpenAI safety lead: 12 launches left no time to fix structures, some mistakes may not be iterable — CurieuxExplorer · 2026-10-03