You don’t always need a vulnerable app to pull off a successful exploit. Sometimes all it takes is a well-crafted email, an LLM agent, and a few “innocent” plugins. This is the story of how I used a Gmail message to trigger code execution through Claude Desktop, and how Claude itself (!) helped me plan..
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2025/07/code-execution-through-email-how-i-used-claude-to-hack-itself/
![]()

