Sandstorm Security Review (English Version) 一次在 Sandstorm 跳脫沙箱的滲透經驗 (中文版本) Introduction In early 2017, we had a pentesting target protected with Sandstorm. Sandstorm is a web-based platform which allows users to install their web apps, such as WordPress, GitLab, etc. The main feature of Sandstorm is that it containerizes every app in its own sandbox. Therefore, even though we had found several vulnerabilities of the apps, we still could not put a threat to the ...