#8
The Hacker News
general
July 23, 2026 at 13:27 UTC
Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files
By [email protected] (The Hacker News)
AI Summary
Accomplish AI researchers discovered a sandbox escape vulnerability in Anthropic's Claude Cowork product that allows a malicious or manipulated AI agent to break out of its Linux VM and read or write files anywhere on the host macOS filesystem. The vulnerability affects approximately 500,000 macOS users running the Claude Cowork application. The flaw illustrates a systemic risk in AI agent sandboxing architectures where VM isolation boundaries are insufficiently enforced.
Relevance score: 76.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →