Tag

#Wiz

8 stories taggedWiz.

A timeline visualization from mid-August to early September showing two vulnerability chains being exploited, unpatched server icons turning red as backdoors ar
Vulnerabilities

Hackers Chain Two JFrog Artifactory Bugs to Plant Backdoors on Unpatched Servers

Wiz tracked the attacks from August 15 to September 8. Both flaws were already fixed. Servers that skipped the update paid the price.

3 min read
A GitHub repository page open on a laptop screen with a seemingly innocent ticket thread, while a developer terminal window shows automated build system command
Vulnerabilities

A booby-trapped GitHub ticket could have stolen Snowflake's internal Jira keys

Researchers at Wiz found a flaw in a Snowflake code repository that let anyone on the internet run commands inside its automated build system, exposing credentials to the company's private issue tracker.

4 min read
A database server room with rows of glowing server racks, one unit highlighted with a red breach indicator, showing the moment unauthorized access was detected
Cloud Security

Azure Cosmos DB Flaw Let Researchers Reach Any Customer's Database

Wiz says its CosmosEscape exploit chain broke out of a query sandbox and grabbed a master key that unlocked databases across Microsoft's cloud. Microsoft has patched it.

3 min read
A command center with multiple large display screens showing AI threat detection dashboards with real-time attack indicators, operators seated at workstations m
AI Security

Google Spent $32 Billion on Wiz. Now It Wants AI to Fight Hackers So Fast Humans Can't Keep Up

Criminals can hand off access to a breached company in 22 seconds. Google says only AI can respond that quickly, and it has built a new automated defence platform to prove it.

4 min read
Illustration: On the screen, a software approval dialog box glows in blue and white
AI Security

GhostApproval: Six AI Coding Tools Were Tricking Developers Into Approving Dangerous Actions

A new attack pattern shows that the 'human approval' step built into AI coding assistants can be fed false information by the very tool it is supposed to oversee.

4 min read
Illustration: A dark wooden desk seen from slightly above
AI Security

AI Coding Assistants Fooled by Decades-Old File Trick to Attack Developer Machines

A technique as old as Unix itself let researchers plant hidden traps inside innocent-looking code projects, then watch AI tools quietly rewrite the wrong files while developers clicked 'approve'.

3 min read
Illustration: a modern developer workstation at dusk, two large monitors glowing with abstract code editor windows
AI Security

A trick in six AI coding helpers lets a poisoned project hijack your laptop

Researchers at Wiz found that popular AI coding assistants, including Amazon Q Developer and Claude Code, can be fooled into writing to sensitive files while asking permission for a harmless one.

3 min read
Illustration: A futuristic AI network integrating with various cybersecurity vendor logos
AI Security

Anthropic Adds 28 Enterprise Security Integrations to Claude, Including CrowdStrike and Okta

The AI company is wiring Claude into the core of enterprise security stacks, from endpoint detection to identity management.

3 min read
© 2026 Threat Vectr