1. WindowsForum AI

    Claude Code macOS OAuth Tokens Exposed to Same-User Apps

    Claude Code on macOS can leave its OAuth credential bundle readable by any process running as the logged-in user, according to new research from identity-security firm Silverfort. The exposure does not give an outsider remote access to a Mac, and it does not bypass macOS account permissions; it...