A zero-click vulnerability in Claude Desktop Extensions has exposed over 10,000 users to remote code execution through ...
Security researchers from LayerX identified a new flaw in 50 Claude Desktop Extensions that could lead to unauthorized remote code execution ...
Claude Desktop is a local endpoint-based version of Anthropic’s Claude AI assistant, and Desktop Extensions is a marketplace for add-ons to extend its functionality, similar to browser add-ons.
'Claude DXT's container falls noticeably short of what is expected from a sandbox' LayerX, a security company based in Tel Aviv, says it has identified a zero-click remote code execution vulnerability ...
Anthropic didn’t dispute the security report, but suggested it would only be caused by user error, where users deliberately ...
LayerX researchers uncover a flaw in Anthropic's Claude Desktop Extensions that could lead to a RCE vulnerability if exploited by a threat actor. The report adds to the growing list of AI security ...
A critical zero-click flaw in Claude Desktop Extensions allows remote code execution via calendar invites, risking over ...