What if your load balancer could stop attacks before they reach your application?

Learn how Google Cloud Service Extensions and Fastly's Next-Gen WAF deliver real-time threat protection directly in the load balancing pipeline—without sacrificing performance.

🔒 Block malicious traffic earlier
⚡ Maintain low latency
📈 Scale with GKE

Read more: https://www.fastly.com/blog/deploying-fastly-next-gen-waf-google-cloud-service-extensions-secure-traffic

#GoogleCloud #CloudSecurity #WAF #Kubernetes #DevSecOps

Guy scanning my site thinks it's #spring . I'll be honest, I'd rather kill myself than to use #java . I guess new rules for the #waf ?

#golang

I try to be friendly to "AI" search web crawlers but I'm on (pretty good, but nevertheless) shared hosting and "Claude-SearchBot" has been hammering my site with ~12000 requests now, in intervals between 1-4 seconds. Inevitably, it ended up on the blocklist because of the excessive resource consumption.

And that's exactly ONE day after "Amzn-SearchBot" ended on the blocklist, for the exact same reason. Fucking idiots.

GoogleBot and BingBot have such a light footprint by comparison, IDK how it can be so hard for the companies that claim to have SUCH "intelligence" at their hands to not make that better. Instead, they just show their glaring ignorance and incompetence.

(not that I'd expect that their "search" results would bring much traffic to my site anyway... so I guess blocking them isn't a big loss in the end. 🤷🏻‍♂️)

#Webmastering #Website #AI #Claude #Amazon #Hosting #Firewall #WAF

OWASP CRS is powerful.
But static rules alone can’t keep up with evolving attacks.
Combine it with CrowdSec’s real-time threat intelligence for stronger protection 👇

https://www.crowdsec.net/blog/protecting-your-web-applications-with-owasp-crs-and-crowdsec

#WAF #CyberSecurity #DevSecOps

X-Real-IP, X-Forwarded-For и белый список WAF: разбор опасного мисконфига

Привет, Хабр. Меня зовут Аскар Добряков, ведущий эксперт направления защиты данных и приложений в

https://habr.com/ru/companies/k2tech/articles/1045012/

#WAF #обратный_прокси #nginx #HAProxy #XForwardedFor #XRealIP #мисконфигурация #обход_WAF #информационная_безопасность #веббезопасность

X-Real-IP, X-Forwarded-For и белый список WAF: разбор опасного мисконфига

Привет, Хабр. Меня зовут Аскар Добряков, ведущий эксперт направления защиты данных и приложений в К2 Кибербезопасность , занимаюсь WAF и цепочками обратных прокси. В одном из недавних проектов мы с...

Хабр

WAF: wrong approach firewall - why the common negative security model is wrong, why the positive model is superior and how you can implement it with #vinylcache. talk at #gpn24

https://media.ccc.de/v/gpn24-385-waf-wrong-approach-firewall

#vinylcache #gpn24 #waf #webapplicationfirewall

WAF: Wrong Approach Firewall

media.ccc.de
Security Tip: When a zero-day or critical CVE hits, the race to patch begins. 🛡️ If an immediate reboot isn't possible, use virtual patching. By deploying targeted WAF rules or IPS signatures, you can block exploit attempts at the network edge while your team prepares the permanent fix. Stay informed on the latest threats at https://cvedatabase.com #CyberSecurity #InfoSec #PatchManagement #CVE #WAF
CVEDatabase.com - Search & Analyze CVE Vulnerabilities

Search and analyze CVE vulnerabilities with instant access to CVSS scores, affected products, and AI-powered remediation guidance.

CVEDatabase.com

👀 What's being cooked at CrowdSec?

Your WAF already knows *what* requests are doing.

What if it could also help answer *who* is behind them?

More soon!

#CyberSecurity #WAF #BotDetection #ThreatIntelligence

Question for all the other #selfhosting peeps: has anyone got any suggestions for setting up a #WAF in front of your services? Currently I’m relying on #haproxy on my #pfsense appliance, but a web application firewall would make me feel a bit safer.
#jellyfin #navidrome #audiobookshelf #kavita

🛡️ chaitin/SafeLine

Blocks SQLi, XSS, RCE and 20+ web attacks via a self-hosted reverse proxy with rate limiting, bot challenges and dynamic HTML/JS encryption to secure traffic before it reaches your apps

⭐ Stars: 21428
📅 Last Update: May 31, 2026

https://github.com/chaitin/SafeLine

#selfhosted #homelab #selfhost #selfhosting #opensource #waf #reverseproxy

GitHub - chaitin/SafeLine: SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.

SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits. - chaitin/SafeLine

GitHub