惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园 - 叶小钗
D
Docker
GbyAI
GbyAI
Y
Y Combinator Blog
Google DeepMind News
Google DeepMind News
G
Google Developers Blog
P
Proofpoint News Feed
云风的 BLOG
云风的 BLOG
雷峰网
雷峰网
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Stack Overflow Blog
Stack Overflow Blog
WordPress大学
WordPress大学
小众软件
小众软件
Engineering at Meta
Engineering at Meta
酷 壳 – CoolShell
酷 壳 – CoolShell
I
InfoQ
B
Blog
H
Help Net Security
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园 - 聂微东
The GitHub Blog
The GitHub Blog
A
About on SuperTechFans
B
Blog RSS Feed
Microsoft Security Blog
Microsoft Security Blog

Wiz Blog | RSS feed

Meet Wiz for M365: Bringing SaaS into the Security Graph Bringing Security Visibility to Vercel with Wiz Axios NPM Distribution Compromised in Supply Chain Attack Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild The Wiz Blue Agent, now Generally Available Beyond the Badge: What Achieving Microsoft’s Certified Software Designation Means for Your Cloud Security Introducing the Green Agent: AI-Powered Remediation for the Cloud Three’s a Crowd: TeamPCP trojanizes LiteLLM in Continuation of Campaign KICS GitHub Action Compromised: TeamPCP Strikes Again in Supply Chain Attack Introducing the Wiz Red Agent- AI-Powered Attacker Introducing Wiz AI Application Protection Platform (AI-APP) Introducing Wiz Agents & Workflows: Security at the Speed of AI AI Runtime Threat Detection: From Input to Real-World Impact Trivy Compromised: Everything You Need to Know about the Latest Supply Chain Attack It’s Official: Wiz Joins Google Understanding and Reducing AI Risk in Modern Applications Introducing Wiz Tenant Manager: Multi-Tenant Management for Federated Organizations The Agile FedRAMP Playbook, Part 4: Reactive Risk Management through Enriched Incident Response Wiz Achieves CPSTIC Certification in Spain Seeing AI Clearly: Building Visibility Across Modern AI Applications The Agile FedRAMP Playbook, Part 3: Preventative Risk Management by building Secure by Design Wiz Leads the 2026 Latio Application Security Report with awards in 4 categories Building an Agentic Cloud Security Ecosystem: A Reference Architecture with Wiz MCP and Infosys Cyber Next The Agile FedRAMP Playbook, Part 2: Proactive Risk Management with Continuous Monitoring Cloud-native Security for your Windows environment: Announcing the Wiz Runtime Sensor for Windows Would You Click ‘Accept’? Automatically detecting malicious Azure OAuth applications using LLMs Wiz Named a Leader in The Forrester Wave™: Cloud Native Application Protection Solutions, Q1 2026 From Detection to Remediation: It’s Time to Rethink AppSec Around Exploitability and Root Cause Fixes The Agile FedRAMP Playbook, Part 1: Why Risk is Your Best Starting Point Introducing AI Cyber Model Arena: A Real-World Benchmark for AI Agents in Cybersecurity
Wiz becomes the first CNAPP to provide end-to-end cloud f...
Yang Liang, Itay Arbel · 2023-06-21 · via Wiz Blog | RSS feed

In today's fast-paced digital landscape, as businesses of all sizes are moving to the cloud, cloud security becomes a top priority for organizations worldwide. With the ever-evolving threats and sophisticated cyber-attacks, it is crucial to have both robust measures in place to protect the crown jewels in your environment and the tools to respond effectively if such incident occurs. Once an environment is compromised, security and incident response teams need to quickly understand what the incident root cause was and the potential blast radius. Without the right tools and processes, this can be a very manual and time-consuming process, especially across different accounts and permissions. This need was recently emphasized in Gartner’s emerging technology report, citing that product leaders should adopt emerging cloud technologies such as Cloud Investigation and Response Automation (CIRA) to address demand for expanding data collection, analysis, collaboration and future business models. 

Today, we’re excited to launch our Digital Forensics capabilities, helping organizations respond quickly to threats in modern cloud environments by gaining forensic-level detail on incidents automatically using a cloud-native approach

After a security incident occurs, having the relevant data quickly and accurately is top priority, and it is crucial to not interrupt business continuity. When an organization is alerted on a potential incident, either from cloud detection & response or from an EDR solution, security and incident response teams can easily use Wiz Digital Forensics to copy volumes of the potentially compromised workload to a dedicated forensic account and then mount them for a deeper forensic investigation. This process that usually takes hours or even days can now be triggered at the click of a button with no overhead and maintenance needed from these teams. Using an agentless approach for copying volumes helps the teams avoid running intrusive scripts based on the different cloud provider APIs and does not impact the performance of running workloads. 

Wiz Digital Forensics also allows those teams to immediately access the important security logs and artifacts of the potentially compromised machine directly by downloading a forensic investigation package that includes the information needed for the incident first triage. The forensics package is collected agentlessly without needing to run any collection tools or self-developed scripts on the compromised workload. Organizations that use our newly launched Runtime Sensor can also receive a runtime forensic package that includes information on running processes, commands executed, and IPs used for network connectivity. 

Incident response in the cloud doesn’t have to be complicated or time consuming. Digital forensics and incident response (DFIR) helps narrow the scope of the investigation significantly and automates the evidence collection process so security teams can move quicker to containment, eradication, and recovery. 

Copy machine volumes and download Forensics investigation package directly from the Wiz platform.

In short, Wiz Digital Forensics provides you with: 

  • Faster incident investigation: Enable security and incident response teams to collect the necessary information and collaborate over one platform to immediately start analyzing the root cause of an incident. 

  • Seamless data capture across clouds: Gain forensic-level details into cloud and containerized environments by downloading forensic packages and on-demand copy volumes to any forensic accounts of compromised workloads. 

  • Secure chain of custody: Provide organizations peace of mind by maintaining the relevant logs and artifacts in a raw and unprocessed form.  

Our new Digital Forensics capabilities help security and incident response teams to investigate incidents faster with end-to-end forensics experience. You can learn more about Forensics in the Wiz docs (login needed). If you prefer a live demo, we would love to connect with you.