VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_e159988bd46b5a0aba74067e74412e77

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files

Published Jul 23, 2026

Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic's Claude Cowork that makes it possible to break out of the confines of a Linux virtual machine (VM) within which the agent runs to read or write files anywhere on the Mac.

Accomplish AI, which shared details of the vulnerability with The Hacker News ahead of publication, said about 500,000 macOS users running

Affected AI Products

anthropic ai agent claude
Get the weekly digest. Every Monday: top AI security stories of the week. Free.