Twenty Years of Cloud Security Research
On March 14, 2006, AWS announced S3, marking the first AWS service that was generally available and what AWS celebrates as their start. Azure and…
On March 14, 2006, AWS announced S3, marking the first AWS service that was generally available and what AWS celebrates as their start. Azure and…
Update March 23, 17:40 UTC: Wiz Research has identified a parallel compromise of kics-github-action On March 19, 2026, threat actors compromised Aqua Security’s Trivy vulnerability…
When most people think about AI runtime security, they think about prompt injection. But securing AI in production is much broader than filtering inputs —…
Getting comprehensive visibility into your cloud environment starts with agentless inventory and risk analysis. Wiz builds a complete picture of your attack surface and the…
AI hasn’t just changed how we build — it has fundamentally changed how risk emerges. AI applications are dynamic, interconnected systems — combining models, agents,…
AI is changing not just how we build — but how security operates. AI-generated code, autonomous agents, and dynamic applications are increasing both the speed…
Amazon Web Services (AWS) recently announced support for resource-based policies and resource control policies (RCPs) for AWS Sign-In. By using resource-based policies and RCPs, you…
Update (April 22, 2026): We are excited to announce that the Red Agent is now in Public Preview. At RSA 2026, we announced the launch…
AI is changing the economics of both software development and cyberattacks. Organizations are shipping code faster than ever, increasingly with the help of AI agents…
The KICS GitHub Action was compromised with credential-stealing malware by TeamPCP, the same group behind the Trivy attack. KICS is an open source infrastructure as…
LiteLLM is the latest victim in TeamPCP’s spree of attacks targeting the open source ecosystem. Previously, Wiz has covered the compromises of Aqua Security’s Trivy…
AI isn’t just helping developers write code: it’s reshaping the entire development lifecycle. With AI-assisted tools, agents, and MCP integrations speeding up development, the cloud…