Information security
fromTheregister
2 weeks agoAnthropic's Files API exfiltration risk resurfaces in Cowork
Cowork's Files API can be exploited via prompt injection to exfiltrate sensitive files to an attacker's Anthropic account without additional user approval.