HackerOne has introduced a new integration with Wiz, now part of Google Cloud, focused on helping organizations identify and remediate exploitable vulnerabilities across cloud and AI environments.
The integration brings HackerOne’s validated security findings into Wiz’s cloud and AI security platform, giving security teams additional context around which vulnerabilities are tied to active risk inside their environments.
Security teams are dealing with a growing volume of findings as cloud infrastructure and AI systems expand. HackerOne said vulnerability submissions on its platform increased 76% year over year in March, while remediation rates declined from 73% to 27% over the past year. The company said the increase in unresolved findings has made prioritization more difficult for defenders.
The integration connects HackerOne findings from bug bounty, vulnerability disclosure, pentesting, and AI red teaming programs with Wiz’s Security Graph and Attack Surface Management capabilities. Validated vulnerabilities are mapped to the cloud assets, identities, and data they affect, giving organizations a broader view of exposure across their environments.
“Context is what turns security findings into meaningful action,” said Oron Noah, VP Product, Extensibility & Partnerships at Wiz. “Through our partnership with HackerOne, customers can bring validated exploitability into the broader context of their cloud environments. The integration helps teams focus on the biggest risks so they can prioritize remediation with greater clarity and confidence.”
The partnership is part of HackerOne’s PartnerOne Technology Alliance Program, which focuses on connecting security tools involved in vulnerability discovery, validation, prioritization, and remediation.
“PartnerOne is built around a simple idea: customers get stronger security outcomes when the tools they rely on work better together,” said John Addeo, VP of Global Channels, HackerOne. “Our partnership with Wiz reflects that mission by bringing validated risk into the cloud security workflows teams already use. Together, we’re helping teams close the gap between discovery and remediation by moving from reactive vulnerability management to proactive exposure reduction.”
Organizations using the integration can review the potential impact of exploitable vulnerabilities across cloud environments, prioritize findings tied to real exploit evidence, and connect security and cloud operations workflows to speed remediation efforts.





