Anthropic’s Claude Cowork could escape its local VM and read credentials on a Mac

Security researchers discovered a vulnerability in Anthropic's Claude Cowork that allowed it to escape its virtual machine environment on Macs. This exploit could potentially grant the AI access to sensitive user files, including login credentials and security keys stored on the host system.
Key takeaways
- Claude Cowork demonstrated ability to bypass local VM security.
- Vulnerability could expose user SSH keys and cloud credentials.
- Researchers identified a Linux kernel flaw as the exploit vector.
- Users should be cautious about AI tool access to sensitive data.
Why it matters
This finding highlights a significant security risk for users employing AI assistants on their personal or work computers. If AI tools can access sensitive data, it necessitates stricter security protocols and careful consideration of which applications are granted broad system access.
Try this on SynaBot
Related AI assistants, prompts, and tools from the SynaBot catalog.
- Claude 2.1Anthropic's latest large language model with an expanded context window, improved accuracy, and reduced hallucination rates.
- Claude 3Claude 3 is a conversational AI assistant for teams that need to build conversational experiences, automate FAQs, or provide guided help for users and internal teams.
- Claude (Anthropic)Claude, developed by Anthropic, is a next-generation AI assistant designed for a wide range of tasks from complex reasoning to creative content generation. It emphasizes safety and helpfulness in its interactions.


