惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
罗磊的独立博客
M
MIT News - Artificial intelligence
G
Google Developers Blog
V
V2EX
D
Docker
博客园_首页
The Cloudflare Blog
人人都是产品经理
人人都是产品经理
Y
Y Combinator Blog
WordPress大学
WordPress大学
T
Tailwind CSS Blog
博客园 - 司徒正美
J
Java Code Geeks
L
LangChain Blog
博客园 - 三生石上(FineUI控件)
B
Blog RSS Feed
博客园 - 【当耐特】
小众软件
小众软件
Apple Machine Learning Research
Apple Machine Learning Research
大猫的无限游戏
大猫的无限游戏
P
Proofpoint News Feed
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
博客园 - Franky

Wiz Blog | RSS feed

Meet Wiz for M365: Bringing SaaS into the Security Graph Bringing Security Visibility to Vercel with Wiz Axios NPM Distribution Compromised in Supply Chain Attack Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild The Wiz Blue Agent, now Generally Available Beyond the Badge: What Achieving Microsoft’s Certified Software Designation Means for Your Cloud Security Introducing the Green Agent: AI-Powered Remediation for the Cloud Three’s a Crowd: TeamPCP trojanizes LiteLLM in Continuation of Campaign KICS GitHub Action Compromised: TeamPCP Strikes Again in Supply Chain Attack Introducing the Wiz Red Agent- AI-Powered Attacker Introducing Wiz AI Application Protection Platform (AI-APP) Introducing Wiz Agents & Workflows: Security at the Speed of AI AI Runtime Threat Detection: From Input to Real-World Impact Trivy Compromised: Everything You Need to Know about the Latest Supply Chain Attack It’s Official: Wiz Joins Google Understanding and Reducing AI Risk in Modern Applications Introducing Wiz Tenant Manager: Multi-Tenant Management for Federated Organizations The Agile FedRAMP Playbook, Part 4: Reactive Risk Management through Enriched Incident Response Wiz Achieves CPSTIC Certification in Spain Seeing AI Clearly: Building Visibility Across Modern AI Applications The Agile FedRAMP Playbook, Part 3: Preventative Risk Management by building Secure by Design Wiz Leads the 2026 Latio Application Security Report with awards in 4 categories Building an Agentic Cloud Security Ecosystem: A Reference Architecture with Wiz MCP and Infosys Cyber Next The Agile FedRAMP Playbook, Part 2: Proactive Risk Management with Continuous Monitoring Cloud-native Security for your Windows environment: Announcing the Wiz Runtime Sensor for Windows Would You Click ‘Accept’? Automatically detecting malicious Azure OAuth applications using LLMs Wiz Named a Leader in The Forrester Wave™: Cloud Native Application Protection Solutions, Q1 2026 From Detection to Remediation: It’s Time to Rethink AppSec Around Exploitability and Root Cause Fixes The Agile FedRAMP Playbook, Part 1: Why Risk is Your Best Starting Point Introducing AI Cyber Model Arena: A Real-World Benchmark for AI Agents in Cybersecurity
Defend Agentless Workload Detection: Bringing Visibility ...
Ofir Brukner, Or Heller, Tal Moriah · 2025-11-05 · via Wiz Blog | RSS feed

In cloud security, we’re obsessed with visibility. Yet, a massive blind spot persists in nearly every cloud environment- we can’t deploy traditional security agents on many of our most critical assets. Think about your virtual appliances like firewalls and network gateways, vendor-managed systems, or workloads with strict performance requirements. These are "unmonitorable" by traditional tools, and attackers know it.

This lack of visibility is not a theoretical problem. When critical PAN-OS vulnerabilities were discovered, 24% of cloud environments had vulnerable devices. Worse, 7% had internet-facing, exploitable devices. Before, identifying these at-risk appliances was nearly impossible because they are vendor-managed black boxes. This visibility gap means security teams can't detect threats, struggle to collect forensic evidence, and are left vulnerable to novel exploits.

It’s time to close this gap. We believe the solution isn't to force old tools into new environments; it's to continue re-imagining threat detection for the cloud.

What is Defend Agentless Workload Detection?

We are bringing the power of Wiz's agentless scanning to threat detection, investigation, and response with Agentless Workload Detection, a new capability in Wiz Defend. It applies the core Wiz agentless concept to detection: by automatically collecting local logs from appliances, SOC teams gain deep workload visibility with zero deployment friction and no performance impact.

Agentless Workload Detection provides unparalleled visibility into your entire environment

From Raw Logs to a Holistic Story

Getting local logs is just the first step. The real power comes from turning that data into high-fidelity, actionable insights. Here’s how Agentless Workload Detection improves threat detection and investigation:

Extends Visibility to Appliances

Traditional agents simply can't provide coverage on virtual appliances like Palo Alto Networks firewalls or Aviatrix gateways. With Agentless Workload Detection, Wiz Defend can identify at-risk virtual appliances before they're exploited and proactively detect infected machines or exploitation attempts. This is especially critical for malware detection- Agentless Workload Detection enhances malware detection by correlating existing detections with information from newly ingested log files.

Tell a Holistic Threat Story

With Agentless Workload Detection, local machine logs are ingested directly into the Wiz Signals data lake. This allows Wiz Defend to correlate suspicious activity on a workload with cloud control plane events, runtime signals from the Wiz Sensor, and all the cloud context in the Graph. This correlation provides deep investigation context and unparalleled visibility into every phase of the cloud kill-chain - from control plane, through network and workload.

With Agentless Workload Detection, we can now detect lateral movement from a public endpoint into the cloud, and group it into a single threat that provides the full attack context

The Wiz Vision: Unconditional Visibility

Agentless Workload Detection is a core part of our broader vision for Wiz Defend: to provide a single, unified platform for cloud detection and response. Our goal is to provide unconditional visibility into your entire environment.

This new capability finally breaks down the barriers that have frustrated security teams for years:

  • For SecOps and IR teams: You get a critical new source of logs for investigations on your hardest-to-monitor assets.

  • For Cloud Security Architects: You can finally achieve 100% coverage across all cloud assets without adding deployment complexity or friction.

  • For DevOps and Platform Engineers: Security gets the deep visibility it needs without installing performance-impacting agents on workloads.

You can't protect what you can't see. With Agentless Workload Detection, the "unmonitorable" parts of your cloud are no longer a blind spot.

To learn more about how Wiz Defend provides complete, correlated threat detection and response for the cloud, request a demo.

See more of our announcements from Wizdom 2025