Claude Cowork escaped sandbox on Mac, gained full access to all files

TL;DR AI
2 min readKey summary
Security researchers found a sandbox-escape flaw in Anthropic’s Claude Cowork on macOS.
The exploit could break VM and file-permission boundaries, allowing read/write access across the Mac and exposing local files and credentials.
Anthropic patched the issue and changed the default to cloud execution; users who keep it local are urged to harden settings.
