Revenir au blog

Follow and Subscribe

Sécurité

Page 4

  • Subresource monitoring with Compute

    Équipe de recherche en sécurité Fastly

    Compute, our serverless compute environment, can be used to solve headaches dealing with attackers looking to modify and manipulate resources. In this post, we tell you how.

    Sécurité
    Compute
  • Preventing SSRF: Apache CVE-2021-40438 | Fastly

    Équipe de recherche en sécurité Fastly

    Our Security Research Team provides guidance on how to address CVE-2021-40438, a vulnerability in Apache HTTP Server version 2.4.48 and earlier, by patching impacted version(s) and enabling a new templated rule to prevent exploitation.

    Engineering
    Sécurité
  • Protect against Apache vulnerability | Fastly

    Équipe de recherche en sécurité Fastly

    The recent Apache HTTP Server vulnerability (CVE-2021-41773) is reportedly being exploited in the wild. Fastly already detects this vulnerability, but our next-gen WAF customers can also create a rule to block exploitation.

    Sécurité
  • DevOps Practices Primed to Combat Threats | Fastly

    Brendon Macaraeg

    Organizations implementing DevOps practices often sacrifice security for speed, exposing them to potential threats. In reality though, many DevOps practices are already primed for security initiatives.

    Sécurité
    DevOps
  • The Importance of Securing Applications & Security in DevOps

    Julie Rockett

    Forrester’s 2021 Annual State of Application Security Report stresses the need for updated application security tools that can be easily integrated into development plans and architecture.

    Sécurité
    DevOps
  • Integrating Security in DevOps

    Brendon Macaraeg

    Your organization may have operational and cultural roadblocks to overcome when it comes to integrating security and DevOps. These tips can help you ensure a smooth transition to more secure DevOps.

    DevOps
    Sécurité
  • Legacy vs next-gen WAF: the differences matter

    Brendon Macaraeg

    Compare legacy versus next-gen WAFs to see what sets them apart. Determine if your company can benefit from a next-gen approach.

    Sécurité
  • 6 essential features of modern web app & API security tools

    Julie Rockett

    Modern applications need modern security tools that include flexible deployment, DevOps support, and strong API protection. Here are the six most important characteristics of modern web app and API security tools.

    Sécurité
  • Atlassian Confluence OGNL Injection Vulnerability Protection | Fastly

    Équipe de recherche en sécurité Fastly, Xavier Stevens, 1 de plus

    Our Security Research Team has built and deployed a rule to help protect customers of our next-gen WAF against the recently announced Confluence Server OGNL injection vulnerability, CVE-2021-26084.

    Sécurité
  • Legacy security tools: peace of mind at what price?

    Julie Rockett

    Companies using an average of 11 web application and API security tools should be able to rest easy, but the vast majority of them report successful attacks are still getting through. These legacy tools aren’t cutting it.

    Informations sur le secteur
    Sécurité
  • Fastly/Signal Sciences: one year update | Fastly

    Dana Wolf

    When we acquired Signal Sciences, we put a stake in the ground as a company that cares about the complete delivery path and making it not just resilient and performant, but inherently secure as well. Here’s our update on that mission.

    Actualités de la société
    3 de plus
  • Introducing right-sized web app and API protection packages

    Brendon Macaraeg

    Today, we launched Fastly Secure packages, a unified web app and API security solution that provides “right-sized” protection for any organization at a spend level that works for a variety of budgets.

    Produit
    Sécurité
  • 4 Steps to Centralized Security Tooling

    Sean Leach

    Here are four repeatable steps that will help you pay down your security technical debt, make your apps and APIs more secure, and move you toward consolidated security tooling.

    Informations sur le secteur
    Sécurité
  • Why don’t your security tools work anymore?

    Sean Leach

    As the internet landscape gets more complex, more API driven, and more distributed, many security and IT professionals are left wondering — why aren’t the security tools that were good enough a few years ago good enough now?

    Informations sur le secteur
    Sécurité
  • New research shows security tooling is at a tipping point

    Brendon Macaraeg

    We released a new report today in partnership with ESG Research that reveals some fascinating insights into the state of web application security tooling.

    Sécurité
  • Request enrichment helps identify user data | Fastly

    Brooks Cunningham

    Requests passing through Fastly can be transformed in many ways. In this example, we’ll show you how to use enriched requests and our next-gen WAF to help you make more informed security decisions.

    Produit
    Sécurité
  • Introducing Response Security Service

    Kevin Rollinson

    Our new Response Security Service provides direct, 24/7 access to our Customer Security Operations Center to help you prepare for and respond when you suspect an attack.

    Sécurité
  • How to recognize and repel four high-risk attack types

    Brendon Macaraeg

    After years of helping protect companies across a variety of industries, we’ve come to recognize four common risk attack types. Here’s how they work and how to counter them.

    Sécurité
  • 4 Ways Legacy WAF Fails to Protect Your Apps

    Liz Hurder

    The legacy WAF isn’t ubiquitous because it’s the perfect technology. Its success comes down to being mandated, despite four ways it often fails.

    Sécurité
  • Suggestive signals: how to tell good bot traffic from bad

    Brendon Macaraeg

    While some bots are benign search engine crawlers or website health monitors, others are on the prowl with nefarious intent, looking to execute account takeovers and compromise APIs. In this post, we’ll look at how to tell them apart in order to allow the good bots and block the bad ones.

    Sécurité