
3/4/2024 · Daniele Molteni, John Cosgrove, Ayush Kumar, Ankur Aggarwal
What this post added
This post introduces Cloudflare's 'Defensive AI' framework, detailing how AI is being integrated into security solutions to combat AI-powered threats. Key developments include: 1. API Anomaly Detection for API Gateway, an upcoming ML-powered feature that learns application business logic by analyzing client API request sequences to identify deviations and stop attacks. 2. Enhancements to the Web Application Firewall (WAF) using ML models (like WAF Attack Score) that learn from attack traffic to detect new and evolving vulnerabilities without manual rule creation. 3. AI models within Cloudflare Email Security (Honeycomb and Labyrinth) to detect sophisticated phishing attacks, analyzing sender reputation and spoofing attempts. 4. AI-driven user risk scoring for Cloudflare Zero Trust, which analyzes real-time user behavior to identify anomalies and tailor security posture.