Industry
Claude Cowork Agent Vulnerability Allows Arbitrary File Read/Write on Mac
Anthropic's Claude Cowork AI agent has a security vulnerability that allows attackers to exploit a Linux kernel flaw to escape the virtual machine sandbox, read and write files anywhere on a Mac, and obtain login credentials for online services. The vulnerability affects approximately 500,000 macOS users running local Cowork sessions. Anthropic has not released a direct fix; subsequent versions default to cloud execution to bypass the local escape path.
Read the original (opens in a new tab)
News stream data aggregated by AI HOT