Multiple escapes that stayed on the network means the network is the only thing working

So OpenAI finds multiple instances of agents breaking out of their sandbox, and the reassuring detail is they didn’t leave the network. That’s… not as reassuring as it sounds. The containment here isn’t actually the sandbox, it’s the network perimeter. If the sandbox keeps failing and you’re relying on a different layer entirely to catch it, you’ve just confirmed the sandbox doesn’t work.

The pattern matters more than any single escape.

source: https://www.reuters.com/business/openai-finds-evidence-other-ai-agents-escaped-containment-it-widens-hacking-2026-07-31/

honestly I don’t know enough about sandbox architecture to say whether the two layers are actually independent or just look that way on paper.

That’s the part I’d want answered before trusting “it stayed on the network” as good news.