top of page

Blogs


CSRF vs. XSS
CSRF and XSS are popular, sneaky tactics attackers use to exploit customers' trust by hijacking user sessions and stealing sensitive data.
Eyal Katz
Dec 11, 20235 min read


A DevOps Guide to WAF Testing
WAF testing is a systematic approach to evaluating the effectiveness of a WAF in detecting and mitigating potential security risks.
Eyal Katz
Dec 11, 20235 min read


How you can integrate open-appsec logs into various SIEM services
open-appsec events can be seen in the open-appsec central management WebUI. Here we explain how these events can also be displayed in SIEM.
Christopher Lutat
Oct 27, 20236 min read


7 Reasons Why You Need WAF with Kubernetes
Over the past few years, Kubernetes (K8s) has emerged as the leading container orchestration platform for developers, offering the...
Eyal Katz
Oct 27, 20234 min read


7 WAF Rules You Can Twilight
Web applications are magnets for cyber attacks, like DDoS, SQL hacks, and XSS, which can steal data, cause financial problems, and damage...
Eyal Katz
Oct 27, 20236 min read


Transitioning from ModSecurity WAF to open-appsec at IT Creation, Netherlands
How IT Creation, Netherlands transitioned from ModSecurity WAF to a machine-learning based open source WAF.
Eyal Katz
Oct 17, 20233 min read


Top 10 Free WAFs (Web Application Firewalls) for 2024
Modern web applications are constantly under attack from various threats. These threats span from well-known XSS and SQL injection...
Eyal Katz
Sep 29, 20235 min read


Using Gamification to demystify the AI black-box in a Web Application Firewall (WAF) product
Gamification and metaphors can make AI's learning journey more transparent and relatable, explained on an open-source ML-based WAF
Oded Gonda
Sep 29, 20235 min read


How to deploy open-appsec on MicroK8s
In this blog we describe how to secure MicroK8s Kubernetes cluster on an Ubuntu machine, using open-appsec based on NGINX ingress controller
Oriane Louzoun
Sep 29, 20236 min read


7 Expert Tips for Optimizing AWS WAF Pricing
Navigating the intricate landscape of cloud services can be a daunting endeavor, especially when considering the cost implications. Among...
Eyal Katz
Sep 28, 20235 min read


ModSecurity on NGINX is Twilighting: Top Four Alternatives to Consider
Thanks to the Open Web Application Security Project (OWASP) framework, we now have robust rules to guard against the most common security...
Eyal Katz
Sep 12, 20235 min read


Top 10 Best WAF Solutions
Sophisticated attacks and complex environments are raising the bar for security standards, with known and unknown vulnerabilities...
Eyal Katz
Sep 11, 20237 min read
bottom of page