Wiz is excited to announce it is a launch partner for the new Amazon Inspector, bringing Amazon Inspector findings together with Wiz insights to give our customers actionable, prioritized and...
Co-authored by: Sriram P and Deepak Setty ‘Tis the season for scams. Well, honestly, it’s always scam season somewhere. In... The post ‘Tis the Season for Scams appeared first on McAfee Blog.
The 2nd joint report between the NCSC and KPMG UK benchmarks against the 2020 findings to gauge what progress has been made.
In recent years, we have observed various trends in the changing threat landscape for industrial enterprises, most of which have been evolving for some time. We can say with high confidence that...
Cyberattackers are continuing to sharpen their tactics against essential services, this time targeting the green energy sector.
Cyberattackers are continuing to sharpen their tactics against essential services, this time targeting the green energy sector.
Booking.com got hacked five years ago, and didn't tell its customers... but now we know who might have been behind it. Bossware rears its ugly head again in the workplace, spying on employees. And...
With the release of windows 11, Microsoft announced the Windows Subsystem for Android or WSA. This following their previous release, Windows Subsystem for Linux or WSL. These enable you to run a...
US trading platform Robinhood is at the center of data breach affecting up to 7 million of the popular investing app’s users, after falling victim to a social engineering attack carried out on 3rd...
US trading platform Robinhood is at the center of data breach affecting up to 7 million of the popular investing app’s users, after falling victim to a social engineering attack carried out on 3rd...
In the pre-cloud era, the responsibility for security was fully in the hands of the users. As we uncover new types of vulnerabilities, we discover more and more issues that do not fit the current...
This is the full story of the Azure ChaosDB Vulnerability that was discovered and disclosed by the Wiz Research Team, where we were able to gain complete unrestricted access to the databases of...
A summary and recording of Wiz's talk at BlackHat Europe 2021: the full extent of ChaosDB, the impact it had, and the questions it raises about security in managed cloud services.
Authored By Kiran Raj Due to their widespread use, Office Documents are commonly used by Malicious actors as a way... The post The Newest Malicious Actor: “Squirrelwaffle” Malicious Doc. appeared...
Last time we left off with a pretty decent understanding about how our router is structured and what components were used. We also found two interesting debug pads that showed oscillating voltages...
An anonymous hacker has allegedly leaked the entirety of Argentina’s National Registry of Persons, offering select information for sale on a dark web forum.
An anonymous hacker has allegedly leaked the entirety of Argentina’s National Registry of Persons, offering select information for sale on a dark web forum.
This summary provides an overview of APT attacks on industrial enterprises disclosed in H1 2021.
Sinclair Broadcast Group, one of the largest television network conglomerates in the U.S fell victim to a ransomware attack causing mass disruptions throughout its entire network.
Sinclair Broadcast Group, one of the largest television network conglomerates in the U.S fell victim to a ransomware attack causing mass disruptions throughout its entire network.
On 2021-10-26, a campaign was reported, involving an unknown actor, gaining initial access via Software misconfig, 1-day vulnerability, targeting Jenkins, WebLogic to achieve Resource hijacking....
Authored by: Wenfeng Yu McAfee Mobile Research team recently discovered a new piece of malware that specifically steals Google, Facebook,... The post Social Network Account Stealers Hidden in...
Acer has confirmed a 60GB data breach resulting from a cyber attack on its Indian offices - the second major breach to affect the global hardware and electronics company this year.
Acer has confirmed a 60GB data breach resulting from a cyber attack on its Indian offices - the second major breach to affect the global hardware and electronics company this year.
Customers have come to realize ignorance isn’t bliss. Cloud has gotten too big and unwieldy for most companies to effectively manage on their own. That’s where Wiz comes in.
Learn how to protect cloud environments from the new critical Apache HTTP Server vulnerability.
On 2021-10-08, a campaign was reported, involving Abcbot operator, gaining initial access via Cloud native misconfig, to achieve Resource hijacking. The following tools were observed: Kunpeng.
Learn how to protect your cloud environment from supply chain attacks.
In this post, we’re going to dive into the role and limitations of security agents in the cloud, and put forth a different approach for cloud infrastructure security: agentless deep scanning.
If last year taught us anything, it was that we can move quickly to organise a fully online hacker conference in little over a month. This year our annual, internal hacker conference ran from the...