Home / Jul 25, 2026 / Story
0
#8 The Hacker News general July 23, 2026 at 13:27 UTC

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files

By [email protected] (The Hacker News)

AI Summary

Accomplish AI researchers discovered a sandbox escape vulnerability in Anthropic's Claude Cowork product that allows a malicious or manipulated AI agent to break out of its Linux VM and read or write files anywhere on the host macOS filesystem. The vulnerability affects approximately 500,000 macOS users running the Claude Cowork application. The flaw illustrates a systemic risk in AI agent sandboxing architectures where VM isolation boundaries are insufficiently enforced.

Relevance score: 76.0/100

# More from July 25