MORE POSTS
October 16, 2023 5:53 PM
Introducing the Project Argus Datacenter-ready Secure Control Module design specification
The DC-SCM (Datacenter-ready Secure Control Module) decouples server management from the server motherboard. It provides flexibility to implement multiple server management and security solutions with the same server motherboard design...
October 10, 2023 12:02 PM
HTTP/2 Rapid Reset: deconstructing the record-breaking attack
This post dives into the details of the HTTP/2 protocol, the feature that attackers exploited to generate the massive Rapid Reset attacks...
October 10, 2023 12:02 PM
HTTP/2 Zero-Day vulnerability results in record-breaking DDoS attacks
The “HTTP/2 Rapid Reset” attack exploits a weakness in the HTTP/2 protocol to generate enormous, hyper-volumetric DDoS attacks. Cloudflare has mitigated a barrage of these attacks in recent months, including an attack three times larger than any previous attack we’ve observed...
October 05, 2023 3:00 PM
Uncovering the Hidden WebP vulnerability: a tale of a CVE with much bigger implications than it originally seemed
Google announced a security issue in Chrome titled "Heap buffer overflow in WebP in Google Chrome." At first it seemed like just another bug, but has implications that extended well beyond Chrome....
October 03, 2023 12:55 PM
Announcing General Availability for the Magic WAN Connector: the easiest way to jumpstart SASE transformation for your network
We’re announcing the general availability of the Magic WAN Connector, which serves as the glue between your existing network hardware and Cloudflare’s networ...
October 02, 2023 1:00 PM
Birthday Week recap: everything we announced — plus an AI-powered opportunity for startups
Need a recap or refresher on all the big Birthday Week news this week? This recap has you covered...
September 29, 2023 1:00 PM
Cloudflare now uses post-quantum cryptography to talk to your origin server
Starting today, you can secure the connection between Cloudflare and your origin server with post-quantum cryptography...
September 29, 2023 1:00 PM
Detecting zero-days before zero-day
In this blog post we talk about our approach and ongoing research into detecting novel web attack vectors in our WAF before they are seen by a security researcher....
September 29, 2023 1:00 PM
Cloudflare is free of CAPTCHAs; Turnstile is free for everyone
Now that we’ve eliminated CAPTCHAs at Cloudflare, we want to hasten the demise of CAPTCHAs across the internet. We’re thrilled to announce that Turnstile is generally available, and Turnstile’s ‘Managed’ mode is now completely free to everyone for unlimited use. ...
September 25, 2023 1:00 PM
Cloudflare account permissions, how to use them, and best practices
Cloudflare has a lot of new roles, how should we use them, and how can we stay safe...
September 15, 2023 1:00 PM
Making Content Security Policies (CSPs) easy with Page Shield
We just deployed a number of updates to our Client-Side Security Product: Page Shield. As of today we support all major CSP directives, better suggestions, better violation reporting, Page Shield specific user role permissions, and domain insights...
August 21, 2023 2:15 PM
Application Security Report: Q2 2023
We are back with a quarterly update of our Application Security report. Read on to learn about new attack trends and insights visible from Cloudflare’s global network...
August 21, 2023 1:00 PM
An August reading list about online security and 2023 attacks landscape
Here is a reading list with 2023 trends, what you need to know about attacks, and a guide on how to stay protected using Cloudflare...
August 09, 2023 1:00 PM
Introducing per hostname TLS settings — security fit to your needs
Starting today, customers that use Cloudflare’s Advanced Certificate Manager can configure TLS settings on individual hostnames within a domain...
August 04, 2023 6:29 PM
Unmasking the top exploited vulnerabilities of 2022
The Cybersecurity and Infrastructure Security Agency (CISA) just released a report highlighting the most commonly exploited vulnerabilities of 2022. ...