RSS Amplifier

AI Interview Prep · Aug 11, 2026

LLM Inference Interview Questions #13 - The AST Sandbox Trap

0
Sign in to vote or save

Hao Hoang · AI Interview Prep

Why relying on code denylists to secure your LLM agents silently exposes your entire application, and the kernel-level isolation you actually need to stop a breach.

∙ Paid

You’re in a Staff AI Engineer interview at Google and the interviewer asks:

You shipped a code-executing agent behind an AST sandbox that blocks os, subprocess, and dunder access. Security signed off. Six weeks later you’re breached. What class of attack did your sandbox structurally fail to stop?”

Don’t say: “The model found a bypass, we need a stricte…

User's avatar

Continue reading this post for free, courtesy of Hao Hoang.

Read the original on aiinterviewprep.substack.com

Comments

Nothing yet. Say the first thing.

    Sign in to join the conversation.

    Reading · AI Interview Prep · RSS Amplifier