{"slug": "claude-cowork-escaped-sandbox-on-mac-gain-full-access-to-all-files", "title": "Claude Cowork escaped sandbox on Mac, gain full access to all files", "summary": "Security researchers demonstrated that Anthropic's Claude Cowork could escape its macOS sandbox via an exploit dubbed ShareRoot, allowing attackers to read and write files anywhere on a Mac and access login credentials for online services. Around half a million Mac users had co-work sessions exposed, and some remain vulnerable to the exploit today.", "body_md": "[Security](https://9to5mac.com/guides/security/) researchers demonstrated that [Claude](https://9to5mac.com/guides/claude/) Cowork could escape the sandbox intended to control the access it gets to your Mac. The exploit, dubbed ShareRoot, could allow an attacker to read and write files stored anywhere on your Mac, as well as access login credentials for online services.\n\nAround half a million [Mac](https://9to5mac.com/guides/mac/) users had co-work sessions exposed, and some still remain vulnerable to the exploit today …", "url": "https://wpnews.pro/news/claude-cowork-escaped-sandbox-on-mac-gain-full-access-to-all-files", "canonical_source": "https://9to5mac.com/2026/07/27/claude-cowork-escaped-sandbox-on-mac-gain-full-access-to-all-files/", "published_at": "2026-07-27 12:16:29+00:00", "updated_at": "2026-07-27 12:28:43.465863+00:00", "lang": "en", "topics": ["ai-safety", "ai-products", "ai-agents"], "entities": ["Anthropic", "Claude Cowork", "ShareRoot", "Mac"], "alternates": {"html": "https://wpnews.pro/news/claude-cowork-escaped-sandbox-on-mac-gain-full-access-to-all-files", "markdown": "https://wpnews.pro/news/claude-cowork-escaped-sandbox-on-mac-gain-full-access-to-all-files.md", "text": "https://wpnews.pro/news/claude-cowork-escaped-sandbox-on-mac-gain-full-access-to-all-files.txt", "jsonld": "https://wpnews.pro/news/claude-cowork-escaped-sandbox-on-mac-gain-full-access-to-all-files.jsonld"}}