The many ways to obtain credentials in AWS
Attackers with cloud knowledge will look for cloud credentials on any resources they gain access to. On AWS, this may mean looking for IAM role…
Attackers with cloud knowledge will look for cloud credentials on any resources they gain access to. On AWS, this may mean looking for IAM role…
A common way to allow third-party SaaS solutions to access AWS accounts is via OpenID Connect (OIDC) integrations. These integrations require specific conditions in the…
2025 has arrived! As we gear up for the new year and the next chapter in cloud security, we thought, “Why not tap into the…
Ivanti has confirmed active exploitation of two vulnerabilities, CVE-2025-0282 and CVE-2025-0283, in Ivanti Connect Secure (ICS) VPN appliances. CVE-2025-0282, a zero-day vulnerability, has been exploited…
Today the Wiz executive team expands as we officially welcome its newest member: Fazal Merchant, who joins as CFO & President. 2024 brought so many…
Updated on 2025-01-19 to include additional investigation findings related to Sliver and Mirai infections. CVE-2024-50603 is a critical code execution vulnerability impacting Aviatrix Controller with…
It is always humbling to receive recognition from industry experts, but our mantra at Wiz is that nothing matters more than the trust of our…
In the ever-evolving world of cloud-native technologies, Kubernetes continues to reign supreme – and with great power comes great responsibility. Our latest Kubernetes Security Report…
In cloud security, the key to proactively managing your attack surface is understanding how different risk factors combine to create attack paths that would lead…
The vast majority of companies relying on cloud infrastructure are at least partially using environments hosted by one of the big three Cloud Service Providers.…
Today’s organizations face the challenge of securing vast amounts of sensitive data scattered across increasingly complex and distributed environments. Traditional approaches to data security often…
AI has enabled employees across every team to build applications faster than ever before. But that speed is also what’s keeping every CISO up at…