MORE POSTS
March 20, 2025 1:10 PM
Introducing Cloudy, Cloudflare’s AI agent for simplifying complex configurations
Cloudflare’s first AI agent, Cloudy, helps make complicated configurations easy to understand for Cloudflare administrators....
March 20, 2025 1:00 PM
Making Application Security simple with a new unified dashboard experience
We’re introducing a new Application Security experience in the Cloudflare dashboard, with a reworked UI organized by use cases, making it easier for customers to navigate and secure their accounts....
February 07, 2025 8:13 PM
Resolving a Mutual TLS session resumption vulnerability
Cloudflare patched a Mutual TLS (mTLS) vulnerability (CVE-2025-23419) reported via its Bug Bounty Program. The flaw in session resumption allowed client certificates to authenticate across different...
August 12, 2024 2:00 PM
Advancing Threat Intelligence: JA4 fingerprints and inter-request signals
Explore how Cloudflare's JA4 fingerprinting and inter-request signals provide robust and scalable insights for advanced web security and threat detection.
...
July 25, 2024 1:00 PM
Making WAF ML models go brrr: saving decades of processing time
In this post, we discuss performance optimizations we've implemented for our WAF ML product. We'll guide you through code examples, benchmarks, and we'll share the impressive latency reduction numbers...
July 11, 2024 5:00 PM
Application Security report: 2024 update
Cloudflare’s updated 2024 view on Internet cyber security trends spanning global traffic insights, bot traffic insights, API traffic insights, and client-side risks...
March 07, 2024 2:00 PM
General availability for WAF Content Scanning for file malware protection
Announcing the General Availability of WAF Content Scanning, protecting your web applications and APIs from malware by scanning files in-transit...
March 04, 2024 2:02 PM
Cloudflare announces Firewall for AI
Cloudflare is one of the first providers to safeguard LLM models and users in the era of AI...
March 04, 2024 2:00 PM
Cloudflare launches AI Assistant for Security Analytics
Introducing AI Assistant for Security Analytics. Now it is easier than ever to get powerful insights about your web security. Use the new integrated natural language query interface to explore Security Analytics...
January 23, 2024 2:00 PM
How Cloudflare’s AI WAF proactively detected the Ivanti Connect Secure critical zero-day vulnerability
The issuance of Emergency Rules by Cloudflare on January 17, 2024, helped give customers a big advantage in dealing with these threats...
November 15, 2023 2:00 PM
Introducing hostname and ASN lists to simplify WAF rule creation
Today we are expanding Custom Lists by enabling you to create lists of hostnames and ASNs...
October 04, 2023 4:03 PM
All Cloudflare customers protected from the Atlassian Confluence CVE-2023-22515
On 2023-10-04 at 13:00 UTC, Atlassian released details of the zero-day vulnerability described as “Privilege Escalation Vulnerability in Confluence Data Center and Server” (CVE-2023-22515), a zero-day vulnerability impacting Confluence Server and Data Center products...
September 29, 2023 1:00 PM
Detecting zero-days before zero-day
In this blog post we talk about our approach and ongoing research into detecting novel web attack vectors in our WAF before they are seen by a security researcher....
September 19, 2023 1:00 PM
New! Rate Limiting analytics and throttling
Cloudflare Analytics can now suggest rate limiting threshold based on historic traffic patterns. Rate Limiting also supports a throttle behavior...
August 21, 2023 2:15 PM
Application Security Report: Q2 2023
We are back with a quarterly update of our Application Security report. Read on to learn about new attack trends and insights visible from Cloudflare’s global network...