WorkThe story, in brief

Wiz Discloses CosmosEscape, and Practitioners Debate What Customers Could Have Done

Microsoft took five months to revoke a master key after a sandbox escape. Practitioners are asking: what's your shared responsibility model worth?

Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
People, judgement and the changing nature of work.AI illustration by KeyNews
The KeyNews take

Why it matters

A disclosed vulnerability in Azure Cosmos DB exposed the gap between blocking an attack vector and actually removing the blast radius. The debate among practitioners centers on who bears the cost of remediation — and whether Azure's security posture meets enterprise standards.

The key facts

9 to know
  1. CosmosEscape: sandbox escape in Azure Cosmos DB Gremlin API

  2. Vulnerability granted platform-wide read/write access to all databases

  3. Microsoft blocked entry point within 2 days; key revocation took 5 months (until July 2026)

  4. Disclosure by Wiz Research

  5. Practitioner debate on shared responsibility model and rearchitecture costs

  6. CosmosEscape vulnerability: sandbox escape in Azure Cosmos DB's Gremlin API

  7. Attack chain reached platform-wide master key with read/write access to all databases

  8. Microsoft blocked entry point within 2 days; revoked the key in July 2026 (5-month delay)

  9. Practitioner debate focused on shared responsibility model and remediation costs

Go to the source

InfoQ AI/MLinfoq.com

Publisher excerpt: Wiz Research disclosed CosmosEscape, a chain that escaped Azure Cosmos DB's Gremlin sandbox and reached a platform-wide key granting read and write access to every database on the service. Microsoft blocked the entry point within two days but took until July 2026 to remove the key. Practitioners…
Read original report
Back to today's editionMore work news

The wider picture

View all
Illustration of independent geometric mechanisms passing paper tasks along branching amber tracks.
AI illustration by KeyNews
Work01

The Emerging M&A Map For AI Agent Security

As agents move from pilots to production with real system access, enterprise security models are breaking. The M&A map is forming around who controls agent permissions, monitoring, and governance — a new class of identity management problem that practitioners need to architect for now.

Crunchbase News
Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
AI illustration by KeyNews
Work02

AI privacy budgets: Ask for the calculation, not the claim

Enterprise AI buyers are accepting privacy budget numbers without verification. This deep dive explains what questions to ask vendors about federated learning privacy claims, and why the gap between contractual promises and operational evidence is where real exposure lives.

CIO
Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
AI illustration by KeyNews
Work03

Andrew Kelley Interview: Why He Built Zig, Banned AI Contributions, and Moved Zig off GitHub

Open-source governance is shifting in response to AI-generated contributions. Zig's formal ban and migration off GitHub signals broader industry concern about code quality, maintainer burden, and the cultural impact of automated submissions — a flashpoint for how AI changes the work of software development.

InfoQ AI/ML