BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.devconf.info//devconf-us-2026//speaker//USYBE7
BEGIN:VTIMEZONE
TZID:EST
BEGIN:STANDARD
DTSTART:20001029T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10;UNTIL=20061029T070000Z
TZNAME:EST
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
END:STANDARD
BEGIN:STANDARD
DTSTART:20071104T030000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=11
TZNAME:EST
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000402T030000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=4;UNTIL=20060402T080000Z
TZNAME:EDT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
END:DAYLIGHT
BEGIN:DAYLIGHT
DTSTART:20070311T030000
RRULE:FREQ=YEARLY;BYDAY=2SU;BYMONTH=3
TZNAME:EDT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-devconf-us-2026-WMLEHG@pretalx.devconf.info
DTSTART;TZID=EST:20260924T130000
DTEND;TZID=EST:20260924T133500
DESCRIPTION:LLM-powered agents are rapidly moving from passive assistants t
 o systems that can execute real commands modifying infrastructure\, queryi
 ng systems\, and even remediating failures. This introduces a critical ris
 k: how do we safely execute AI-generated actions without exposing the host
  system to prompt injection\, hallucinations\, or malicious inputs?\n\nThi
 s talk presents a production-ready architecture that uses microVM-based sa
 ndboxing to isolate LLM tool execution. By leveraging lightweight virtuali
 zation such as Firecracker and Kata Containers\, each AI-generated command
  is executed inside an ephemeral\, disposable virtual environment\, ensuri
 ng strong isolation with minimal overhead.\n\nWe demonstrate how LLM serve
 d via vLLM or running locally with llama.cpp can safely interact with syst
 em tools through a controlled execution pipeline. The session includes a l
 ive demo where prompt injection attempts are neutralized by sandbox polici
 es\, proving that AI can act autonomously without compromising security.
DTSTAMP:20260727T165155Z
LOCATION:106 (Capacity 45)
SUMMARY:Trust but Isolate: Securing LLM Tool Execution with MicroVM Sandbox
 ing - Rajesh Dulhani\, Dipayan Dutta
URL:https://pretalx.devconf.info/devconf-us-2026/talk/WMLEHG/
END:VEVENT
END:VCALENDAR
