Cloudflare Zaraz supports CSP
March 15, 2022 12:59 PM
If you have Cloudflare Zaraz enabled on your website, you don’t have to ask yourself twice if you should enable CSP because there’s no harmful collision between CSP & Cloudflare Zaraz...
March 15, 2022 12:59 PM
If you have Cloudflare Zaraz enabled on your website, you don’t have to ask yourself twice if you should enable CSP because there’s no harmful collision between CSP & Cloudflare Zaraz...
March 15, 2022 12:59 PM
Today, we’re excited to give our SaaS providers new tools that will help them enhance the security of their customers’ applications...
March 15, 2022 12:59 PM
The security landscape is moving fast. We invited users to help us shape a new WAF experience that enables us to evolve WAF to meet their demands and use cases...
March 14, 2022 12:59 PM
Once the acquisition of Area 1 closes, we plan to give all paid self-serve plans access to their email security technology at no additional charge...
March 10, 2022 6:30 PM
Understand how Cloudflare is helping WhatsApp verify the code they’re using for secure messaging hasn’t been tampered with...
March 07, 2022 5:03 AM
At Cloudflare, we've watched in horror the Russian invasion of Ukraine. As the possibility of war looked more likely, we began to carefully monitor the situation on the ground, with the goal of keeping our employees, our customers, and our network safe...
March 04, 2022 4:46 PM
Whether you’re a seasoned IT professional or a novice website operator, these free Cloudflare resources are available for you today. Beyond these free resources, there are a few simple steps that you can take to help stay protected online...
February 24, 2022 5:30 PM
As Cloudflare expands globally, Rebecca Rogers, Manager of Security Validations, discusses an exciting update to Cloudflare’s commitment to customer security for our German customers...
February 23, 2022 10:00 PM
Earlier today we announced that Cloudflare has agreed to acquire Area 1 Security...
February 23, 2022 1:59 PM
On February 1, 2022, a configuration error on one of our routers caused a route leak of up to 2,000 Internet prefixes to one of our Internet transit providers. This leak lasted for 32 seconds and at a later time 7 seconds...
February 10, 2022 9:18 PM
Earlier today, Cloudflare announced that we have acquired Vectrix, a cloud-access security broker (CASB) company focused on solving the problem of control and visibility in the SaaS applications and public cloud providers that your team uses...
February 01, 2022 5:28 PM
Today we are launching Cloudflare’s paid public bug bounty program. We believe bug bounties are a vital part of every security team’s toolbox and have been working hard on improving and expanding our private bug bounty program over the last few years...
January 26, 2022 1:59 PM
More than 50% of all traffic processed by Cloudflare is API-based, and it’s growing twice as fast as traditional web traffic. This huge growth is driven by a few industries, and it calls for the development of dedicated security solutions...
December 31, 2021 1:54 PM
As we approach the end of the year, let's look ahead at some trends and predictions for 2022...
December 15, 2021 1:56 PM
This vulnerability is actively being exploited and anyone using Log4J should update to version 2.16.0 as soon as possible, even if you have previously updated to 2.15.0. The latest version can be found on the Log4J download page....
December 15, 2021 1:56 PM
Recently, we received a bug bounty report regarding the GPG signing key used for pkg.cloudflareclient.com, the Linux package repository for our Cloudflare WARP products....
December 14, 2021 5:48 PM
In this blog post we will cover WAF evasion patterns and exfiltration attempts seen in the wild, trend data on attempted exploitation, and information on exploitation that we saw prior to the public disclosure of CVE-2021-44228....
December 14, 2021 10:23 AM
Many Cloudflare customers consume their logs using software that uses Log4j, so we are mitigating any exploit attempts via Cloudflare Logs....
December 11, 2021 1:59 PM
Customer confidence in our ability to handle their sensitive information in an ever-changing regulatory landscape has to be as solid as our offerings, so we have expanded the scope of our previously-existing compliance validations; not only that, we’ve also managed to obtain a co...