Your Agent Sandbox Is Only as Strong as Its Weakest Mount
| 35 min read
AI Security A July 2026 flaw in Claude Cowork let an AI agent break out of its Linux VM and read SSH keys and cloud credentials on the host Mac. The bug is specific. The mistake behind it is everywhere: mounting the thing you are protecting into the box you do not trust.