Cloudflare launches Application Profiles for enhanced web security
Cloudflare has introduced Application Profiles, a tool designed to tighten web application security by learning and enforcing expected patterns in HTTP request data. The new feature, available in closed beta to select enterprise customers, aims to reduce attack risks—especially from AI-generated threats—by allowing only requests that match established, legitimate profiles. This shift from detecting known attacks to validating normal behavior builds on Cloudflare's positive security for APIs, now extended to web apps.
- Application Profiles learns normal HTTP request patterns
- Feature targets AI-enabled automated attacks
- Tool extends positive security from APIs to web apps
- Launched in closed beta for some enterprise customers
- Detection adds conformity metadata without blocking traffic
Sources covering this
In this story
More in Cybersecurity
Critical zero-days in Citrix NetScaler exploited, patches released
Citrix has confirmed that two critical zero-day vulnerabilities affecting NetScaler ADC and Gateway devices have been exploited.
Dutch police arrest former hacker in ShinyHunters probe
Dutch police have arrested Pepijn van der Stap, a previously convicted hacker, in connection with an ongoing investigation into the…
Apple fixes CoreGraphics flaw after targeted attacks
Apple has released security updates for iOS, iPadOS, and macOS to fix a CoreGraphics vulnerability that may have been used in highly…
New Spectre BTR attack exposes Linux root password hashes
Researchers have unveiled a new Spectre Variant 2 attack, named Branch Target Reuse (BTR), that can extract root password hashes from…