Uncategorized

Cloudflare Partners with Wiz to Secure Global AI Attack Surface

Eliminating Blind Spots Caused by Shadow AI and Giving Organisations a Clear Path to Identify Risks and Stop Attacks in Real Time

Cloudflare, Inc., the leading connectivity cloud company, has announced a partnership with cloud and Artificial Intelligece (AI) security leader Wiz, now part of Google Cloud. The partnership aims to give security teams a unified way to analyse and protect AI-powered applications across their entire environment. By integrating the power of Cloudflare’s AI Security for Apps directly into the Wiz Security Graph, organisations will gain access to the most comprehensive map of their entire AI footprint, and the tools needed to secure it.

Organisations are shipping AI-powered features faster than security teams can track them. Every new chatbot, copilot, or AI-powered search endpoint is a potential attack surface vulnerable to prompt injection, sensitive data exfiltration, and abuse. The challenge is knowing which ones exist across your web properties, whether they have security guardrails in place, and whether those guardrails are actually working. To help organisations understand their AI footprint and whether they have the necessary guardrails in place, CISOs need a single source of truth where they can better understand and secure their AI and cloud infrastructure.

Cloudflare, Wiz to Help Organisations Eliminate AI Blind Spots

The integration helps customers autonomously eliminate AI blind spots across their infrastructure, allowing security teams to safely accelerate AI adoption. Cloudflare’s AI Security for Apps equips organisations with guardrails at the edge to secure AI endpoints from risks such as prompt injection and unsafe topics, while Wiz’s AI Application Protection Platform (AI-APP) simultaneously maps the complete AI application and surfaces the security gaps. By integrating Cloudflare’s security rules into the Wiz Security Graph, security teams can prioritize risks based on exploitability. As a result, CISOs gain visibility into the LLMs operating across their web properties and runtime controls to enforce policies. Cloudflare and Wiz are model and host-agnostic, protecting endpoints regardless of the LLM or cloud provider.

“AI is the most transformative technology we’ve seen in a generation, powering countless capabilities. But for a majority of businesses, it can be a black box. When talking with CISOs today, they are struggling with the balance of being an enabler of innovation with AI, while combating uncontrolled shadow AI across their organization because their legacy security tools are effectively useless at this level,” said Tom Evans, Chief Partner Officer at Cloudflare. “The Cloudflare and Wiz partnership helps tackle this trade-off. Now, we are delivering a solution to allow innovation with AI at speed, without the worry that their most sensitive data will be exposed.”

“Security alignment isn’t just about reducing risk, it’s an enabler of AI application development,” said Oron Noah, VP of Product, Extensibility & Partnerships at Wiz. “By combining Wiz’s end-to-end visibility with Cloudflare’s edge protections, we close a critical gap in how AI risk is managed. This partnership gives organizations a unified view of AI application endpoints and shared risk context, helping them stop threats like prompt injection and shadow AI before they start.”

Empowering Customers in Different Ways

Cloudflare’s partnership with Wiz empowers customers to:

  • Discover Shadow AI: identify all LLM endpoints across your web properties, including ones deployed without security team involvement, and understand which are protected and which are exposed.
  • Inspect AI Traffic In Real Time: Cloudflare AI Security for Apps runs detections on every request to LLM endpoints to identify and mitigate PII leakage, prompt injection, and custom-defined topics. These detections run in parallel across Cloudflare’s global network, without adding latency to AI traffic.
  • Map Sensitive Data Flows: Wiz maps data flows between AI applications, models, and data stores onto its Security Graph, giving security teams visibility into where sensitive data interacts with AI workloads to help teams prioritise remediation.
  • Verify Guardrails: Wiz verifies that AI deployments are protected by Cloudflare’s AI Security for Apps. If guardrails are missing or misconfigured, Wiz alerts teams for direct remediation within the Cloudflare platform.
  • Prioritise Remediation: The integration surfaces which unprotected AI endpoints have access to sensitive data or production systems, so security teams fix the highest-risk gaps first.

The partnership delivers a seamless integration without needing custom workflows or additional agents to deploy. Cloudflare’s detections run inline on its global network, one of the largest and most interconnected in the world, so organisations gain AI security without architectural changes or performance trade-offs. To learn more about the integration, please visit:

CSA Editorial

Launched in Jan 2018, in partnership with Cyber Security Malaysia (an agency under MOSTI). CSA is a news and content platform focusing on key issues in cybersecurity in the region. CSA is targeted to serve the needs of cybersecurity professionals, IT professionals, Risk professionals and C-Levels who have an obligation to understand the impact of cyber threats.

Related Articles

Leave a Reply

Your email address will not be published. Required fields are marked *