惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

G
Google Developers Blog
博客园 - 司徒正美
Last Week in AI
Last Week in AI
Recent Announcements
Recent Announcements
Y
Y Combinator Blog
博客园 - 聂微东
M
MIT News - Artificial intelligence
博客园_首页
Jina AI
Jina AI
博客园 - 叶小钗
酷 壳 – CoolShell
酷 壳 – CoolShell
H
Hackread – Cybersecurity News, Data Breaches, AI and More
J
Java Code Geeks
F
Fortinet All Blogs
aimingoo的专栏
aimingoo的专栏
小众软件
小众软件
Vercel News
Vercel News
The Cloudflare Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
云风的 BLOG
云风的 BLOG
N
Netflix TechBlog - Medium
B
Blog
Google DeepMind News
Google DeepMind News
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More

Wiz Blog | RSS feed

Meet Wiz for M365: Bringing SaaS into the Security Graph Bringing Security Visibility to Vercel with Wiz Axios NPM Distribution Compromised in Supply Chain Attack Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild Beyond the Badge: What Achieving Microsoft’s Certified Software Designation Means for Your Cloud Security Introducing the Green Agent: AI-Powered Remediation for the Cloud Three’s a Crowd: TeamPCP trojanizes LiteLLM in Continuation of Campaign KICS GitHub Action Compromised: TeamPCP Strikes Again in Supply Chain Attack Introducing the Wiz Red Agent- AI-Powered Attacker Introducing Wiz AI Application Protection Platform (AI-APP) Introducing Wiz Agents & Workflows: Security at the Speed of AI AI Runtime Threat Detection: From Input to Real-World Impact Trivy Compromised: Everything You Need to Know about the Latest Supply Chain Attack It’s Official: Wiz Joins Google Understanding and Reducing AI Risk in Modern Applications Introducing Wiz Tenant Manager: Multi-Tenant Management for Federated Organizations The Agile FedRAMP Playbook, Part 4: Reactive Risk Management through Enriched Incident Response Wiz Achieves CPSTIC Certification in Spain Seeing AI Clearly: Building Visibility Across Modern AI Applications The Agile FedRAMP Playbook, Part 3: Preventative Risk Management by building Secure by Design Wiz Leads the 2026 Latio Application Security Report with awards in 4 categories Building an Agentic Cloud Security Ecosystem: A Reference Architecture with Wiz MCP and Infosys Cyber Next The Agile FedRAMP Playbook, Part 2: Proactive Risk Management with Continuous Monitoring Cloud-native Security for your Windows environment: Announcing the Wiz Runtime Sensor for Windows Would You Click ‘Accept’? Automatically detecting malicious Azure OAuth applications using LLMs Wiz Named a Leader in The Forrester Wave™: Cloud Native Application Protection Solutions, Q1 2026 From Detection to Remediation: It’s Time to Rethink AppSec Around Exploitability and Root Cause Fixes The Agile FedRAMP Playbook, Part 1: Why Risk is Your Best Starting Point Introducing AI Cyber Model Arena: A Real-World Benchmark for AI Agents in Cybersecurity Wiz + Spotify Backstage: Security at the Developer’s Desk
The Wiz Blue Agent, now Generally Available
Matan Haim, Tal Moriah · 2026-03-30 · via Wiz Blog | RSS feed

In the AI era, answering the basic questions behind a security finding becomes incredibly challenging. Is this a legitimate activity, a security test, or a malicious attack? What is the blast radius? Manually piecing together those answers across sprawling cloud environments can take hours. To keep up with attackers in the cloud and AI era, SecOps teams need AI-driven incident response—but that only works if the AI has the right context.

Wiz already brings that context together through the Security Graph, code-to-cloud visibility, and runtime signals. To turn that into action, today we’re announcing the Wiz Blue Agent is now generally available for all Wiz Defend customers. Building on the foundation we introduced at Wizdom NYC, the Blue Agent now features deeper investigation capabilities and workflow automation to accelerate incident response.

Investigation with full context

To truly validate a threat, you need to see how everything is connected. The Blue Agent goes beyond surface-level triage- it brings that expansive cloud context together and builds an investigation in the way a trained incident responder would.

Specialized sub-agents help deepen the investigation and increase verdict fidelity:

  • Forensics: When the Wiz Sensor automatically collects a forensics package at the time of detection—capturing scripts, binaries, and artifacts— the Blue Agent instantly analyzes that evidence to uncover the root cause of suspicious machine activity and better inform its investigation.

  • Code Analysis: To understand if a behavior is malicious, you must understand what the application was built to do. The Blue Agent correlates runtime activity directly back to source code, identifying related pull requests, code changes, and code owners. This allows the Blue Agent to distinguish between a legitimate (but unusual) application action and a genuine attack.

From triage to action

The goal is simple- reduce response time and help teams act with confidence.

The Blue Agent provides a transparent investigation process, so analysts can see the questions asked, the data retrieved, and how each signal shaped the final verdict. No black boxes, just clear, explainable reasoning.

With Wiz Workflows, teams can turn those verdicts into action. Based on verdict and confidence level, they can automatically escalate incidents, notify response teams, or trigger containment playbooks.

Customers are already seeing the impact of this AI-driven context, and using the Blue Agent to decrease investigation times and hand threats off with accuracy

Start automating investigations

It’s time to move at the speed of AI. The Blue Agent is now generally available. Go to your Wiz portal today to explore the new capabilities, or learn more in the Wiz Docs.