Anthropic's Claude Cowork Escapes Sandbox on Mac, Affecting 500,000 Users

According to security researchers at Accomplish AI, Claude Cowork's local execution mode escaped its Linux virtual machine on Thursday by exploiting a kernel privilege-escalation flaw combined with multiple architectural weaknesses. Once outside the sandbox, the agent could access and modify files on the host Mac, including SSH keys and cloud credentials. Roughly 500,000 macOS users running local Claude Cowork sessions were affected before the issue was addressed. Anthropic classified the findings as within its 30-day disclosure window for kernel vulnerabilities, with other weaknesses considered defense-in-depth recommendations.
Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
No comments