Skip to content
coldstart.dev

Blogs

100 articles

Artifactory Under Attack: In-the-Wild Exploitation of CVE-2026-42016, CVE-2026-42018 & CVE-2026-82329

Kurt Giacchino · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz achieves GovRAMP High Authorization

Bryan Rosensteel · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Off Guard: Breaking LiteLLM from authentication bypass to cloud compromise

Yaara Shriki · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

How Developers Prevent Production Risk at the Source

Mike McGuire · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Introducing Continuous Vulnerability Assessment: Real-Time Defense for the AI Threat Era

Shaked Rotlevi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

JetBrains Cadence Compromised via Exploitation of TeamCity Vulnerability (Incident)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Coder Module Registry Compromise Leads to Credential-Stealing Malware Distribution (Incident)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

@7nohe/openapi-react-query-codegen Compromised in Supply Chain Attack (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Inside 90 days of attacks on AI infrastructure

Yaara Shriki · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

From Concept to Context Engine: How Wiz Built AI-Powered Data Discovery

Erez Voitiz · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Version Control DFIR: a Cheatsheet to GitHub, GitLab, Bitbucket, and Azure DevOps

Sean Johnstone · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Democratizing FinOps with Wiz: Driving Cost Attribution with the Wiz Service Catalog

Avital Katz · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

The State of Cloud Risk 2026: Most Security Findings Aren’t Real Attacker Opportunities

Wiz Threat Research · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Rust Supply Chain Attack on arrayref: Significant Overlap with DPRK Campaigns

Benjamin Read · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

arrayref and Other Rust Crates Hijacked in Supply Chain Attack (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz Penetration Test Findings is now GA

Shaked Rotlevi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

How to Spot and Stop Rogue Device Joins

Sapir Federovsky · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Announcing the 2026 Wiz Partner Alliance Award Winners

Andy Ritchie · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz Red Agent Finds Its Way Into Snowflake’s Internal Jira Due to an AI-Generated GitHub Copilot “Autofix”

Gal Nagli · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

The Closed Loop Remediation Playbook with Wiz

Shir Hadad · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz on Wiz: How the Wiz FinOps Team Uses Wiz Cloud Cost

Allison Jackson · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Securing Data in the AI era

Chad Knipschild · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

How to Investigate GitHub PAT Compromise: Lessons From a Multi-Organization Campaign

Eden Abergil · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Closing the Blind Spot: Securing Personal Repositories in the Software Supply Chain

Ziad Ghalleb · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Inside the Metabase SQLi: Exploited in the Wild

Rami McCarthy · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Payroll Pirates Phishing Campaign Targets Microsoft 365 Financial Workflows (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Cloud Threat Highlights: H1 2026

Wiz Threat Research · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz Brings Automated DISA STIG Assessment to Amazon Linux 2023 and Windows Server 2025

Nic Hall · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz at Black Hat 2026: Driving AI Threat Readiness

Salman Ladha · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

keyv and cacheable npm Package Hijacked in Supply Chain Attack

Merav Bar · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

keyv and cacheable npm Package Hijacked in Supply Chain Attack (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Introducing the Wiz Sensor for Developer Workstations to Protect Endpoints in the AI Era

Yoav Balasiano · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

S3 Clones in the Neoclouds

Scott Piper · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

CaptiveCrunch: Midnight Blizzard Hospitality Network AiTM Campaign (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Rethinking scanning for the AI era: Wiz’s Agentic Code Security System

Amir Lande Blau · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

CosmosEscape: Taking Over Every Database in Azure Cosmos DB

Lior Maman · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz’s First 6 Months as Part of Google

Assaf Rappaport · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

The Wiz Red Agent is Now Generally Available

Shaked Rotlevi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

The risk hiding behind exposed MCP servers

Hila Ramati · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Accelerating CISA BOD 26-04 Vulnerability and Triage Activities through Wiz

Bryan Rosensteel · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Atlas: Wiz's autonomous AI Agent for vulnerability research, ranked #1 on CyberGym

Yuval Avrahami · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Opening the Black Box: Agentless Threat Detection for Virtual Appliances

Shahar Dorfman · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Cl0p Exploitation of PTC Windchill and FlexPLM Vulnerability (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Agentless Visibility: Uncovering Cloud Blind Spots

Shahar Dorfman · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

300 WINtegrations Strong: An Open Security Ecosystem Built for the Speed of AI

Nadav Tzuker · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Exploitation in the Wild of wp2shell

Gili Tikochinski · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

SleeperGem: RubyGems Supply Chain Attack Targets Dormant Maintainer Accounts (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

NadMesh: Autonomous AI-Focused Botnet Targeting Cloud and AI Infrastructure (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

CVE-2025-54068 Exploited in Large-Scale Laravel Livewire Credential Theft Campaign (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

The Red Agent POV: The One Boolean That Broke a B2B Platform’s Credit System

Gal Nagli · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

M-Red-Team: AsyncAPI Supply Chain Compromise via GitHub Actions

Merav Bar · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

AsyncAPI Supply Chain Compromise via GitHub Actions (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Why IaC Coverage Belongs on Your Security Dashboard

Gilad Berenblut · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Cryptomining campaign targeting Linux SSH servers (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Jscrambler npm Package Compromised in Supply Chain Attack (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

How ProdSec uses Wiz

John Elliot · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz in the Verizon DBIR: How AI Acceleration and Cloud Sprawl Impact Modern Defense

Wiz Threat Research · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Compromised Injective SDK npm Package Exfiltrates Cryptocurrency Wallet Keys (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

GhostApproval: A Trust Boundary Gap in AI Coding Assistants

Maor Dokhanian · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz ASM for any environment, any risk, everywhere

Yaron Niddam · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Coordinated GitHub API Enumeration and Access Token Abuse (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

FAQs from the Field: Is Wiz a Runtime Security Tool?

Shashank Golla · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Build AI Security Agents with Wiz MCP

Hen Perez · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Breaking Down the White House’s Actions on Post-Quantum Cryptography Readiness

Mitch Herckis · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Start Secure in the AI Era: Accelerating AI Threat Readiness with WizOS

Ofir Cohen · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Bridging the Visibility Gap: A Unified Security Operating Model for Hybrid Cloud Teams

Itay Gershon · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

The Borderless Attack Surface: Securing Public Sector Hybrid Environments

Bryan Rosensteel · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

The Red Agent POV: Exploiting Broken Object-Level Authorization in an Airline GraphQL API

Gal Nagli · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

MCP Auto-Execution: From Git Clone to Cloud Compromise in Amazon Q VS Code Extension

Maor Dokhanian · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Uncovering Hidden Attack Paths in Cloud Environments Using Runtime Signals

Hila Ramati · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Cryptojacking Campaign Targeting K8s Clusters (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

How AI Is Rewriting the SecOps Playbook

Arie Zilberstein · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

AI Threat Readiness Pillar 4: Detect and contain threats in real-time

Tal Moriah · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Cloud-native Security for your Windows environment: Announcing the Wiz Runtime Sensor for Windows

Itay Gershon · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

The President’s Executive Actions on AI Have a Lot to Say on Cybersecurity

Jennifer Thibodeau · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Klue Supply Chain Breach Leads to Salesforce Data Exfiltration (Incident)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

The Red Agent POV: How it Reasoned its Way to SSRF

Shaked Rotlevi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Introducing the Red Agent POV Series

Shaked Rotlevi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Mastra Packages Trojanized with Malicious Dependency (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Wiz Exposure Management Dashboard: Your CTEM Command Center

Shaked Rotlevi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

FortiBleed: Credential Compromise Campaign Targeting Fortinet Devices (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Navigating the New Federal Logging Mandate | OMB Memorandum M-26-14

Chris Saunders · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Atomic Arch: AUR Package Supply Chain Compromise Using Malicious npm Package (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

AI Threat Readiness Pillar 3: Perform AI Code Analysis Natively in Wiz

Sharron Ben Zeev · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

AI Threat Readiness Pillar 2: Accelerate Patching and Response

Bandhna Bedi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

ServiceNow Unauthenticated Access Incident (Incident)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

Introducing Wiz Cloud Cost: Powering Cost Management and Optimization with Context

Avital Katz · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

TeamPCP adds Malware to Multiple Microsoft-Linked GitHub Projects (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

AI Threat Readiness Pillar 1: Reduce Critical Exposures & Scan with AI

Shaked Rotlevi · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Binding.gyp Supply Chain Attack Enables CI/CD Worm Propagation Across npm Packages (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

From Posture to Runtime: A Unified Approach to OpenShift Security

Shashank Golla · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Eliminate Critical API Attack Paths with Wiz API SPM

Saar Shtalryd · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Miasma: Supply Chain Attack Targeting RedHat npm Packages

Merav Bar · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Miasma: Supply Chain Compromise in RedHat npm Packages (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

State of Post Quantum Cryptography

Scott Piper · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Evidence at the Moment of Attack. Answers at AI Speed.

Itay Gershon · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Commit to Compromise: A New Threat Actor Targeting the Cryptocurrency Industry's Software Development Infrastructure

Benjamin Read · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

Defending at Machine-Speed: Building AI Threat Readiness with Wiz

Kelsey Nelson · wiz

·

Open original

A preview is not available. Open the original article to keep reading.

JINX-0164 Targeting Cryptocurrency Development Infrastructure (Campaign)

threat.hunters@wiz.io (Wiz Threat Research) · wiz-threats

·

Open original

A preview is not available. Open the original article to keep reading.

State of SDLC Security 2026: How Risk Scales in Modern Development

Wiz Threat Research · wiz

·

Open original

A preview is not available. Open the original article to keep reading.