Neat Digest  ·  Archive  ·  Open in app ↗

Claude Cowork Sandbox Escape on Mac Grants Full File Access

Score 3.5/10 · Standard · Technology · 1 sources · July 27, 2026
Claude Cowork Sandbox Escape on Mac Grants Full File Access

Security researchers have demonstrated an exploit called ShareRoot that allows Claude Cowork, an AI assistant application, to escape its sandbox on Mac systems, gaining full access to all files. The vulnerability was discovered by researchers who showed that the sandbox intended to restrict the AI's access could be bypassed, potentially enabling an attacker to read and write arbitrary files. The exploit targets a flaw in how the application handles file system permissions. No official statement from the developer has been released yet. This raises significant concerns about data security and privacy for users of the AI tool.

Global Impact

This vulnerability has immediate implications for user privacy and data security, particularly for individuals and organizations relying on Claude Cowork for sensitive work. The exploit could lead to data breaches, intellectual property theft, or unauthorized surveillance.

Why this score

Neat Digest rated this story 3.5/10 — Standard tier.

Significant tier: a demonstrated sandbox escape in a widely used AI tool poses a real security risk to users, with potential for data exposure and erosion of trust, but it is a contained vulnerability rather than a civilization-level event.

Sources on this story

Reported by 1 sources, including:

  • 9to5Mac