Back to blog

Follow and Subscribe

Security

Page 8 of 19

Active exploitation of unauthenticated stored XSS vulnerabilities in WordPress PluginsFastly Security Research Team, Simran Khalsa, +2
We have observed active exploitation attempts targeting three high-severity CVEs: CVE-2024-2194, CVE-2023-6961, and CVE-2023-40000.
SecurityIndustry insights
Fastly drives improved internet routing security with global push to adopt RPKIRob Bushell, Job Snijders, +2
Fastly actively supports and participates in IETF, driving network security standards. Learn how we're enhancing routing security and improving industry standards for a safer Internet.
CDN & DeliveryEdge network+1
Chaotic Good: Resilience Stress Tests at the EdgeKelly Shortridge
Getting started with chaos experimentation? In this post, we’ll walk through a small starter example experiment – verifying basic security assumptions on a website.
ComputeSecurity+3
Creating industry-leading managed security commitmentsLiam Mayron, Cody Arnold
Get proactive commitments to your security with Fastly’s industry-first Time to Notify SLA for its Managed Security Service customers.
Security
Six years in a row: Fastly once again named Customers’ Choice for Cloud WAAPKim Ogletree
Fastly has been recognized in the 2024 Gartner® Peer Insights™ Voice of the Customer for Cloud Web Application and API Protection.
SecurityCompany news
Introducing effortless bot management for a better, safer webLiz Hurder, Akil Muralidaharan
See how Fastly's Bot Management targets malicious bots to protect your apps and website for a better user experience. Learn more about our bot management capabilities.
SecurityProduct+1
Stay ahead of attackers by pushing your security perimeter to the edgeBlake Dournaee
An effective edge security strategy can provide significant benefits and protect organizations from the continually evolving threat landscape.
SecurityEdge network+1
Are APIs the Key to Digital Innovation or a Trojan Horse?Jay Coley
In this new report, we surveyed 235 IT and cybersecurity professionals across Europe to shed light on the state of API security.
SecurityIndustry insights
TLS: More secure; always fastEmmanuel Thompson
This post details the journey of improving the security of TLS private keys and improving the performance and efficiency of TLS handshakes along the way.
PrivacySecurity+3
PCI DSS v 4.0 Everything to know before Mar 31, 2024David King
The PCI Security Standards Council announced Version 4.0, the latest iteration forces nearly every organization to update policies, procedures, and more.
SecurityPrivacy+1
A new level of security called for by the White House and Office of the National Cyber DirectorAnil Dash, Luke Wagner
The White House and Office of the National Cyber Director called for the adoption of memory safe languages, and we see a way for existing code be more memory safe as well.
SecurityCompany news+3
How to Protect Against Credential Stuffing Arun Kumar, Fastly Security Research Team
In this post, we will discuss a low latency approach to detect these attacks by co-locating the password hashes in a KV Store, along with Compute on Fastly’s edge.
ComputeEdge network+2
Threshold blocking best practicesSina Siar, David King
Learn threshold blocking best practices and how it increases your WAF confidence so you can get into blocking mode faster.
Security
BoringSSL to make TLS more secureRoberto Guimaraes, Wayne Thayer
Replacing OpenSSL with BoringSSL was to reduce the frequency of CVE response and improve the security of our TLS termination system for our customers.
SecurityIndustry insights+3
An illustration of a yellow, shining shield with a cracking gray shield peeling off of it
Cyber 5 Threat InsightsSimran Khalsa, Charlie Bricknell, +1
To gain a broader understanding of the threat landscape during "Cyber 5" weekend, we analyzed attack activities with a particular focus on commerce sites.
Industry insightsSecurity+1
The evolution of blockingDavid King, Sina Siar
Flexibility is required for confident blocking decisions that impact as little legitimate traffic as possible. Learn more about the evolution of blocking.
SecurityEngineering+1
WAF Simulator: Transforming DevSecOps WorkflowsFastly Security Research Team, Simran Khalsa
We're excited to announce Fastly's new WAF Simulator, which simplifies the testing process and provides the following key benefits.
DevOpsEngineering+1
Patch that Vuln! Identify, Triage, and Qualify CVEsFastly Security Research Team, Simran Khalsa
Vulnerabilities are an unfortunate inevitability. However, when using a WAF there are options for your security teams while waiting for a patch.
SecurityDevOps+1
An illustration of a secured browser window inside a blue bubble that is protecting it from incoming red arrows
A guide to protecting your data during the holidaysAshley Hurwitz
Check out this collected guide on cybersecurity best practices to survive the holiday season with Fastly's Next-Gen WAF.
ProductSecurity+2
An illustration of a shield with arrows and a server behind it
8 recommendations to prep for Black Friday weekend with the Next-Gen WAFFarzam Ebadypour
Downtime during peak shopping seasons can be detrimental to businesses, but with Fastly's Next-Gen WAF you can set yourself up for success.
ProductSecurity