Wire · opportunities
Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files
◆ Sectors
◆ Geography
◆ Source
◆ Verified
Fusion42 · 23 July 2026 · Fusion42 review
Cybersecurity researchers discovered a sandbox escape vulnerability in Anthropic's Claude Cowork that allows AI agents running in a Linux VM to access files anywhere on a host Mac, affecting ~500,000 macOS users before patching. Anthropic closed the report without issuing a fix, instead defaulting new deployments to cloud execution, leaving local-run users still exposed.
This Wire brief sits within Fusion42's coverage of Cybersecurity.
◆ ◆ The Wire takeaway
If you're shipping an AI agent that runs local on user machines, your sandbox isolation is the entire security perimeter—and Claude Cowork just proved it fails with one prompt. Every founder building agent software for the desktop has a month to audit their own containerisation before researchers start publishing exploit chains.
◆ Coverage
1 source · 23 Jul 2026
◆ Related on Wire
◆ Topics