Fastly Blog (Security)
Fastly's edge cloud platform helps the world's most popular digital businesses keep pace with their customer expectations by delivering fast, secure, and scalable online experiences.
Updated: 5 hours 2 min ago
DDoS in November
DDoS attackers were largely absent on Black Friday 2025. Fastly’s latest report reveals why, and what the shifting attack patterns mean for your apps and APIs.
Categories: Software Security
Black Friday is Dead, Long Live Black Fridays: Cyber 5 Traffic Insights
Black Friday isn’t the traffic spike it used to be. Fastly’s data shows holiday demand now stretches across all of November. Here’s what Cyber 5 2025 really looked like.
Categories: Software Security
How React2Shell is evolving: Industries and regions targeted
Fastly is seeing sustained React2Shell attacks across all industries and regions. Learn what’s happening and the critical steps enterprises should take to patch vulnerable apps.
Categories: Software Security
Fastly’s Proactive Protection for Critical React RCE CVE-2025-55182 and CVE-2025-66478
Protect your apps from the critical React RCE bugs (CVE-2025-55182/66478). Fastly's NGWAF Virtual Patch provides proactive defense.
Categories: Software Security
Mitigating DDoS attacks faster and with even more accuracy
Learn how Fastly's Adaptive Threat Engine update for DDoS Protection boosts mitigation accuracy and reduces Mean Time to Mitigation by 72% for the holidays.
Categories: Software Security
Outages, Attacks, and a Need for Resilience
Cloud outages are a stark reminder of our digital economy's fragility. Learn how Fastly mitigated a major traffic failover and concurrent DDoS attacks with zero disruption.
Categories: Software Security
Wikipedia Tells AI Companies to "Stop Scraping"
Wikipedia cracks down on AI scraping, citing server strain and lost traffic. See why publishers are fighting back and turning to bot management.
Categories: Software Security
The New 2025 OWASP Top 10 List: What Changed, and What You Need to Know
The 2025 OWASP Top 10 list is here! Discover what changed, the two new categories, and how to secure your applications against emerging threats.
Categories: Software Security
Increasing the accessibility of managed security services
Make world-class protection accessible. Fastly’s new Managed Security Professional delivers 24/7 expert defense for your most critical apps and APIs.
Categories: Software Security
Your API Catalog Just Got an Upgrade
Discover, monitor, and secure your APIs with Fastly API Discovery. Get instant visibility, cut the noise, and keep your APIs secure and compliant.
Categories: Software Security
3 Costly Mistakes in App and API Security and How to Avoid Them
Avoid costly app and API security mistakes. Learn how to streamline WAF evaluation, estimate TCO, and embrace agile development for optimal security.
Categories: Software Security
DDoS in September
Fastly's September 2025 DDoS report details modern application attacks. Get insights and guidance to strengthen your security initiatives.
Categories: Software Security
In AI We Trust? Increasing AI Adoption in AppSec Despite Limited Oversight
AI adoption in AppSec is soaring, yet oversight lags. Explore the paradox of trust vs. risk, false positives, and the future of AI in application security.
Categories: Software Security
Design for Chaos: Fastly’s Principles of Fault Isolation and Graceful Degradation
Learn how Fastly builds a resilient CDN through fault isolation & graceful degradation. Discover our principles for minimizing disruption & ensuring continuous service.
Categories: Software Security
Fastly's Seven Years of Recognition as a Gartner® Peer Insights™ Customers’ Choice
Fastly was named a 2025 Gartner® Peer Insights™ Customers’ Choice for Cloud WAAP, marking seven consecutive years of recognition driven by customer trust and reviews.
Categories: Software Security
Make Sense of Chaos with Fastly API Discovery
Discover, monitor, and secure your APIs with Fastly API Discovery. Get instant visibility, cut the noise, and keep your APIs secure and compliant.
Categories: Software Security
Teach Your robots.txt a New Trick (for AI)
Control how AI bots like Google-Extended and Applebot-Extended use your website content for training. Update your robots.txt file with simple Disallow rules.
Categories: Software Security
DDoS in August
August 2025 DDoS attack trends: Hyperscale clouds are the source for 70% of attacks. Get insights on the latest application DDoS trends to strengthen security.
Categories: Software Security
CISO Perspective: Q2 2025 Threat Insights Report
Explore Fastly's Q2 2025 Threat Report through our CISO, Marshall Erwin's eyes. Uncover bot traffic insights and key security practices.
Categories: Software Security
Fastly DDoS Protection wins SiliconANGLE TechForward Cloud Security Award
Fastly DDoS Protection wins SiliconANGLE TechForward Cloud Security Award after rigorous analysis by 32 industry peers.
Categories: Software Security