GitHub Copilot Missed A Vulnerability That Wiz's AI Agent Found
2026-08-17
Forbes

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
Wiz's autonomous AI agent, Red Agent, discovered and exploited a script injection vulnerability in Snowflake's public GitHub repository, which GitHub Copilot Autofix failed to detect. The flaw enabled unauthorized access to sensitive internal data, highlighting the risks of AI-assisted development and the need for robust oversight in AI-driven cybersecurity.[AI generated]