- Post History
- Subscribe to RSS Feed
- Mark as New
- Mark as Read
- Bookmark
- Subscribe
- Printer Friendly Page
- Report Inappropriate Content
3 hours ago - edited 2 hours ago
What's New?
We've introduced two new integrations (Live on Vulnerability Response Integration with Wiz version#: 32.8.4) that work alongside the existing Wiz Container Vulnerability Integration to create a chained workflow for discovering, mapping, and tracking vulnerable container images across your environment:
✅ Wiz Container Grouped Vulnerability Integration
✅ Wiz Container Deployment Context Integration
✅ Wiz Container Vulnerability Integration (existing)
These integrations are installed automatically, enabled by default, and work together to provide a more comprehensive view of container runtime exposure.
Why Was This Built?
Previously, CVIT creation for a container image was limited to deployments across 16 clusters. For customers operating large Kubernetes environments, this could result in incomplete visibility into where vulnerable images were actively running. These enhancements remove that limitation and provide a more complete view of runtime exposure, enabling security teams to better understand and prioritise risk.
What Does This Deliver?
- Unlimited Cluster Coverage - CVITs can now be created for vulnerable images deployed across any number of clusters.
- Rich Deployment Context - Security teams gain visibility into the clusters, namespaces, and services where vulnerable images are running.
- Automated Coverage Expansion - When an existing image is deployed in new locations, missing vulnerable items are automatically created.
- Accurate Tracking Without Duplication - The integrations maintain deployment relationships and update records as environments evolve without creating duplicate vulnerable items.
Improvements for Existing Customers
Customers already using container image granularity (for Namespace and Cluster fields) will automatically benefit from:
- Creation of previously missing CVITs for deployments beyond the former 16-cluster limit
- Complete deployment mappings across clusters, namespaces, and services
- Improved alignment between vulnerability findings and runtime exposure
Customers not using granularity will still gain enhanced deployment context on container discovered images, while maintaining their current vulnerable item creation behaviour.
Key Benefits
✅ Removes the previous 16-cluster limitation
✅ Expands visibility into where vulnerable images are deployed
✅ Automatically identifies and tracks newly deployed vulnerable images
✅ Improves remediation prioritisation with richer runtime context
✅ Preserves existing granularity configurations and workflows
✅ Eliminates visibility gaps in large-scale Kubernetes environments
- 49 Views
