Opening the Black Box: Agentless Threat Detection for Virtual Appliances
Mapping appliances event logs to real-world campaigns: A step-by-step researcher’s guide to continuous agentless monitoring.
Mapping appliances event logs to real-world campaigns: A step-by-step researcher’s guide to continuous agentless monitoring.
How Agentless Workload Detection exposes hidden threats in virtual appliances and modern cloud networks.
Wiz Research has identified exploitation of "wp2shell", a critical pre-auth RCE vulnerability chain impacting WordPress Core (CVE-2026-63030 & CVE-2026-60137). Attackers are deploying persistent webshells on vulnerable servers. Organizations should prioritize patching or applying WAF mitigations.
Part 3: How the Red Agent bypassed a credit and paywall system by changing a single client-side value from false to true.
Detect and mitigate malicious @asyncapi npm packages linked to the latest npm supply chain attack.
Verizon's latest DBIR highlights how attackers are exploiting familiar weaknesses at increasing speed and scale. Here's what Wiz research reveals about vulnerabilities, trust relationships, and AI in modern cloud environments.
Uncovering a category-level blind spot in modern AI coding assistants, and why the Human-in-the-Loop safety model fails against this classic threat
Part 2: How the Red Agent bypassed backend resolvers to expose an entire airline booking database in fifteen minutes
By automatically loading MCP servers from workspace files, Amazon Q enabled attackers to execute code and access sensitive cloud environments.
An inside look at how the Red Agent, our AI-Powered Attacker, uncovers complex, exploitable risks in the wild
Detect and mitigate malicious npm packages linked to the latest npm supply chain attack, based on the open sourced Mini Shai-Hulud malware.
Discussion of PQC relevant statistics that we see across our customers and other data sources.