---
format: "aidr-story-markdown/v1"
id: "6afe128b79847f0e1b4706a2e7311837f5c4e2720c5f974a1cbc42504580917d"
canonical_url: "https://aidr.today/6afe128b?lang=en"
title: "Wiz AI Breaches Snowflake Jira Using GitHub Copilot Flaw Created 5 Days Prior"
lang: "en"
requested_lang: "en"
available_langs: ["en","vi"]
translation_fallback: null
fallback_fields: []
published_at: "2026-08-17T20:53:05.000Z"
category: "Agents"
topics: ["wiz","snowflake","agent","copilot","security","vulnerability"]
source_urls: ["https://huggingnews.com/cybersecurity/wiz-ai-breaches-snowflake-jira-using-github-copilot-flaw-created-5-days-a181462d","https://x.com/wiz_io/status/2089352371772014613","https://x.com/wiz_io/status/2089352376968761754","https://x.com/galnagli/status/2089352538948550678","https://x.com/galnagli/status/2089352541603586526","https://x.com/galnagli/status/2089352556044595365","https://x.com/galnagli/status/2089352559144149158"]
summary: "Wiz's Red Agent autonomous AI discovered a flaw in Snowflake's GitHub Actions workflow that allowed it to enter the company's internal Jira instance. The agent authenticated as qa@snowflake.net using a token that provided read access to engineering, security compliance, and bug bounty projects. GitHub's Copilot Autofix AI bot introduced the vulnerability five days before discovery by replacing a safer environment implementation with direct string interpolation. Snowflake deployed a fix on the same day Wiz disclosed the issue and used audit logs to confirm no other actors exploited the flaw during the exposure window."
---

# Wiz AI Breaches Snowflake Jira Using GitHub Copilot Flaw Created 5 Days Prior

> [Open the canonical story](<https://aidr.today/6afe128b?lang=en>)

**Published:** 2026-08-17T20:53:05.000Z
**Category:** Agents
**Topics:** wiz, snowflake, agent, copilot, security, vulnerability

## Summary

Wiz's Red Agent autonomous AI discovered a flaw in Snowflake's GitHub Actions workflow that allowed it to enter the company's internal Jira instance\. The agent authenticated as qa@snowflake\.net using a token that provided read access to engineering, security compliance, and bug bounty projects\. GitHub's Copilot Autofix AI bot introduced the vulnerability five days before discovery by replacing a safer environment implementation with direct string interpolation\. Snowflake deployed a fix on the same day Wiz disclosed the issue and used audit logs to confirm no other actors exploited the flaw during the exposure window\.

## Sources

- [Story source](<https://huggingnews.com/cybersecurity/wiz-ai-breaches-snowflake-jira-using-github-copilot-flaw-created-5-days-a181462d>)
- [Story source](<https://x.com/wiz_io/status/2089352371772014613>)
- [Supporting source](<https://x.com/wiz_io/status/2089352376968761754>)
- [Story source](<https://x.com/galnagli/status/2089352538948550678>)
- [Supporting source](<https://x.com/galnagli/status/2089352541603586526>)
- [Supporting source](<https://x.com/galnagli/status/2089352556044595365>)
- [Supporting source](<https://x.com/galnagli/status/2089352559144149158>)

