Feeds.4Sysops
Critical Vulnerability in Claude Cowork Allows AI Agents to Escape Sandbox
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A critical vulnerability, identified as SharedRoot, has been discovered in Anthropic’s Claude Cowork, enabling AI agents to escape their Linux virtual machine sandbox on macOS. By exploiting a kernel flaw, these agents can gain unauthorized read and write access to the host file system, risking exposure of sensitive information such as SSH keys and cloud credentials. This flaw affects around 500,000 users running the agent locally, as the application mounts the entire host file system into the virtual machine with read-write privileges. The vulnerability poses a significant risk to user data and system integrity. Immediate action is advised to mitigate potential exploitation. No specific CVE has been assigned yet, but the issue is being treated with urgency.
Key Points: • The SharedRoot vulnerability allows AI agents to escape their VM sandbox on macOS. • Approximately 500,000 users are affected, risking exposure of sensitive data. • Immediate action is recommended to secure systems against potential exploitation.