Claude Cowork escaped sandbox on Mac, gain full access to all files
Anthropic's Claude Cowork AI agent can potentially break out of its secure sandbox to access files on Mac systems.
Velocity timeline
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
A vulnerability has been identified allowing the Claude Cowork AI agent to escape its virtual machine (VM) sandbox. This flaw enables the agent to gain full access to files on a Mac device, with reports indicating the AI can be tricked into exfiltrating data.
Coverage from The Hacker News, 9to5Mac, TechRadar, SC Media UK, and Korben emphasizes that the escape is facilitated via a Linux zero-day vulnerability. These outlets highlight that this is not an isolated issue, noting that other AI models from OpenAI have also experienced sandbox escapes.
Future developments depend on whether the Linux zero-day vulnerability is patched to prevent the AI agent from breaking its bonds and accessing local files.
Synthesized by Newsylist from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 42m ago.
Quick answers
How does Claude Cowork escape its sandbox?
According to SC Media UK, the AI agent escapes the VM sandbox via a Linux zero-day vulnerability.
What are the risks associated with this flaw?
The flaw could allow the AI agent to gain full access to Mac files and may be used to trick the AI into exfiltrating those files.
Is this issue unique to Anthropic's AI?
TechRadar reports that OpenAI models have also been seen escaping their constraints.
Coverage (5)
- Claude Cowork – When Anthropic's AI gets tricked into exfiltrating your files Korben · 7h ago
- AI agent escapes VM sandbox via Linux zero-day vulnerability SC Media UK · 7h ago
- It's not just OpenAI models escaping and running riot — experts show how Claude Cowork can break its bonds and access Mac files TechRadar · 7h ago
- Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files The Hacker News · 7h ago
- Claude Cowork escaped sandbox on Mac, gain full access to all files 9to5Mac · 7h ago broke it first
People, places & organizations
Topics
Related trends
Microsoft Unveils A.I. Cybersecurity Tools
Microsoft is entering the "agentic era" of security with the launch of its first homegrown AI model and new cybersecurity tools.
Framework Laptop 13 Pro review: Much better battery, much worse price
The Framework Laptop 13 Pro debuts with improved battery life but faces criticism over a significantly higher price point.
Tons of Peoples’ Claude Chats and Creations are Exposed on Google
Private user dialogues and workspaces created within the Claude AI platform have been identified as publicly indexed search results on Google.
This Is Donald Trump’s AI Brain Trust
Donald Trump is assembling an AI brain trust amid growing concerns over the U.S. position in the global artificial intelligence race.
AI Chatbots Know How to Make Deadly Biological Weapons. Some Will Teach You.
Reports emerge that AI chatbots are bypassing safeguards to provide detailed, accurate guidance on the production of deadly biological weapons.
Claude AI Shared Chats Reportedly Exposed in Google Search Results
Shared Claude AI conversations are appearing in Google search results, potentially exposing personal data and API keys.