Home/Cloudflare
Source

Cloudflare

2,113 articles from Cloudflare.

SRE & Ops — Cloudflare incident on September 17, 2024

Cloudflare incident on September 17, 2024

On September 17, 2024, during planned routine maintenance, Cloudflare stopped announcing 15 IPv4 prefixes, affecting some Business plan websites for approximately one hour. During this time, IPv4 traffic for these customers would not have reached Cloudflare and users attempting to connect to websites using addresses within those prefixes would have received errors.

JAJoe AbleyJoe Abley·September 20, 2024SRE & Ops
Security — How Cloudflare is helping domain owners with the upcoming Entrust CA distrust by Chrome and Mozilla

How Cloudflare is helping domain owners with the upcoming Entrust CA distrust by Chrome and Mozilla

Chrome and Mozilla will stop trusting Entrust’s public TLS certificates issued after November 2024 due to concerns about Entrust’s compliance with security standards. In response, Entrust is partnering with SSL.com to continue providing trusted certificates. Cloudflare will support SSL.com as a CA, simplifying certificate management for customers using Entrust by automating issuance and renewals.

DDinaDina·September 19, 2024Security
Security — Protecting APIs from abuse using sequence learning and variable order Markov chains

Protecting APIs from abuse using sequence learning and variable order Markov chains

At Cloudflare, we protect customer APIs from abuse. This is no easy task, as abusive traffic can take different forms, from giant DDoS attacks to low-and-slow credential stuffing campaigns. We now address this challenge in a new way: by looking outside typical volumetric measures and using statistical machine learning to find important API client request sequences.

PFPeter FosterPeter Foster·September 12, 2024Security
Performance — A good day to trie-hard: saving compute 1% at a time

A good day to trie-hard: saving compute 1% at a time

Pingora handles 35M+ requests per second, so saving a few microseconds per request can translate to thousands of dollars saved on computing costs. In this post, we share how we freed up over 500 CPU cores by optimizing one function and announce trie-hard, the open source crate that we created to do it.

KGKevin GuthrieKevin Guthrie·September 10, 2024Performance
Security — A wild week in phishing, and what it means for you

A wild week in phishing, and what it means for you

From the U.S. elections and geopolitical conflict to tens of millions in corporate dollars lost, phishing remains the root cause of cyber damages. Learn why a comprehensive solution is the best way to stay protected.

PPPete PangPete Pang·August 16, 2024Security
Engineering — Celebrating one year of Project Cybersafe Schools

Celebrating one year of Project Cybersafe Schools

August 8, 2024, marks the first anniversary of Project Cybersafe Schools, Cloudflare’s initiative to provide small K-12 public school districts in the United States with a package of Zero Trust cybersecurity solutions – for free, and with no time limit.

ZZZaid Zaid, Caroline HendricksonZaid Zaid, Caroline Hendrickson·August 8, 2024Engineering
SRE & Ops — A recent spate of Internet disruptions

A recent spate of Internet disruptions

Cloudflare Radar is constantly monitoring the Internet for widespread disruptions. Here we examine several recent noteworthy disruptions detected in the first month of Q3, including traffic anomalies observed in Bangladesh, Syria, Pakistan, and Venezuela.

DBDavid BelsonDavid Belson·August 1, 2024SRE & Ops
Engineering — Q2 2024 Internet disruption summary

Q2 2024 Internet disruption summary

Government directed shutdowns and cable cuts were both significant sources of Internet outages in Q2 2024. This post explores these disruptions, as well as others caused by power outages, maintenance,

DBDavid BelsonDavid Belson·July 16, 2024Engineering
Security — Application Security report: 2024 update

Application Security report: 2024 update

Cloudflare’s updated 2024 view on Internet cyber security trends spanning global traffic insights, bot traffic insights, API traffic insights, and client-side risks

MTMichael Tremante, SabinaMichael Tremante, Sabina·July 11, 2024Security
Security — DDoS threat report for 2024 Q2

DDoS threat report for 2024 Q2

Welcome to the 18th edition of the Cloudflare DDoS Threat Report. Released quarterly, these reports provide an in-depth analysis of the DDoS threat landscape as observed across the Cloudflare network. This edition focuses on the second quarter of 2024

OJOmer, JorgeOmer, Jorge·July 9, 2024Security
Security — RADIUS/UDP vulnerable to improved MD5 collision attack

RADIUS/UDP vulnerable to improved MD5 collision attack

The RADIUS protocol is commonly used to control administrative access to networking gear. Despite its importance, RADIUS hasn’t changed much in decades. We discuss an attack on RADIUS as a case study for why it’s important for legacy protocols to keep up with advancements in cryptography

GMGoldbe, Miro HallerGoldbe, Miro Haller·July 9, 2024Security
Networking — Cloudflare 1.1.1.1 incident on June 27, 2024

Cloudflare 1.1.1.1 incident on June 27, 2024

On June 27, 2024, a small number of users globally may have noticed that 1.1.1.1 was unreachable or degraded. The root cause was a mix of BGP (Border Gateway Protocol) hijacking and a route leak

BMBryton, MingweiBryton, Mingwei·July 4, 2024Networking
Security — Cloudflare incident on June 20, 2024

Cloudflare incident on June 20, 2024

A new DDoS rule resulted in an increase in error responses and latency for Cloudflare customers. Here’s how it went wrong, and what we’ve learned

LJLloyd, Julien DesgatsLloyd, Julien Desgats·June 26, 2024Security
Security — Celebrating 10 years of Project Galileo

Celebrating 10 years of Project Galileo

On its 10th anniversary, Cloudflare's Project Galileo continues to offer free security services to over 2,600 journalists and nonprofits globally, supporting human rights and democracy.

MPMatthew Prince, Alissa StarzakMatthew Prince, Alissa Starzak·June 12, 2024Security
SRE & Ops — Adopting OpenTelemetry for our logging pipeline

Adopting OpenTelemetry for our logging pipeline

Recently, Cloudflare's Observability team undertook an effort to migrate our existing syslog-ng backed logging infrastructure to instead being backed by OpenTelemetry Collectors. In this post, we detail the process that we undertook, and the difficulties we faced along the way

CCloudflare·June 3, 2024SRE & Ops