Security news aggregator

Latest coverage for Cloudflare

Stay secure online with the latest Cloudflare updates and insights in information security, protecting websites and networks from threats.

197 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Cloudflare is a web infrastructure and website security company that offers services aiming to enhance online security, performance, and reliability for website owners and users. Within information security, Cloudflare provides a suite of products that protect against various threats such as Distributed Denial of Service (DDoS) attacks, malicious bot activity, and data breaches.

The company operates a global network of data centers that work together to absorb and mitigate traffic spikes, filter harmful traffic, and ensure that legitimate visitors have uninterrupted access. Cloudflare's security services include features like the Web Application Firewall (WAF), secure DNS services, and SSL/TLS encryption to safeguard data in transit. In essence, it acts as a shield between the user's website and the rest of the internet, analyzing and screening out potential threats before they can cause harm.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 197 Filtered view

FBI director site went offline after a hack used a fake Cloudflare page to trick users into running a ClickFix attack that installed malware. The merchandise website of FBI director Kash Patel (basedapparel[.]com) was taken offline on Friday after reports that it had been compromised by hackers using it to spread malware. The malware was […]

Bank Info Security 1 week, 5 days ago

ISMG Editors: The Governance Questions Haunting OpenAI

Also: Rethinking SASE and AI's Impact on the Cyber WorkforceIn this week's panel, four ISMG editors discussed what the Musk vs. Altman trial exposed about OpenAI's governance program, how AI is reshaping the way enterprises think about security and why Cisco, Cloudflare, Arctic Wolf and other firms are redesigning their workforces for the AI era.

Bank Info Security 3 weeks, 2 days ago

Cloudflare Cuts 1,100, Arctic Wolf Axes 250 Amid AI Surge

Cloud Connectivity, Security Operations Providers Reportedly Chop 20%, 7% of StaffCloudflare cut more than 1,100 workers from its 5,483-person staff, saying the layoffs will align Cloudflare's operations with AI-driven workflows and productivity gains. And Arctic Wolf laid off 250 workers from its estimated staff of 3,402 to free resources for investment in AI initiatives.

Recent major cloud service outages have been hard to miss. High-profile incidents affecting providers such as AWS, Azure, and Cloudflare have disrupted large parts of the internet, taking down websites and services that many other systems depend on. The resulting ripple effects have halted applications and workflows that many organizations rely on every day

Cloudflare has addressed a security vulnerability impacting its Automatic Certificate Management Environment (ACME) validation logic that made it possible to bypass security controls and access origin servers.  "The vulnerability was rooted in how our edge network processed requests destined for the ACME HTTP-01 challenge path (/.well-known/acme-challenge/*)," the web infrastructure

OG CDN boss says fighting illegal streams is about stopping criminals cashing in, not free speech Interview After Cloudflare CEO Matthew Prince recently threatened to disrupt the Winter Olympics to protect free speech after Italian authorities fined his company for not disrupting pirate video streams, rival CDN provider Akamai’s CEO Dr. Tom Leighton fired back with what reads a lot like thinly veiled criticism.…

Trend Micro Research, News and Perspectives 4 months, 3 weeks ago

Analyzing a Multi-Stage AsyncRAT Campaign via Managed Detection and Response

Threat actors exploited Cloudflare's free-tier infrastructure and legitimate Python environments to deploy the AsyncRAT remote access trojan, demonstrating advanced evasion techniques that abuse trusted cloud services for malicious operations.

Security community needs to rally and share more info faster, one researcher says Amid new reports of attackers pummeling a maximum security hole (CVE-2025-55182) in the React JavaScript library, Cloudflare's technology chief said his company took down its own network, forcing a widespread outage early Friday, to patch React2Shell.…

Bank Info Security 5 months, 4 weeks ago

React Flaw Mitigation Leads to Cloudflare Outage

Outage Briefly Took Down Zoom, LinkedIn and Other WebsitesContent delivery network giant Cloudflare is investigating a brief outage early Friday that took down multiple websites. The incident marks the second outage in the span of a month, although the causes are unrelated. It stemmed from how Cloudflare's web application firewall parses requests.

Loading more headlines...