Skip to content

Claude Cowork Sandbox Flaw Lets Attackers Execute Commands as Root in Hyper

Gbhackers Divya July 3, 2026

A newly disclosed sandbox escape technique in Anthropic’s Claude Cowork for Windows illustrates how attackers can achieve root-level command execution inside a Hyper-V–isolated Ubuntu virtual machine (VM) by exploiting design vulnerabilities in CoworkVMService and its Remote Procedure Call (RPC) interface. This issue, documented by researcher Nick McClendon from Armadin, highlights weaknesses in the interaction between […]

Extracted Entities

Platforms (2)