Cloudflare Blog
20 stories

Cloudflare BlogToolsIntroducing context-aware vulnerability discovery and remediation with Cloudflare Managed Defense and OpenAI Daybreak models Use production traffic and security signals to prioritize findings, prepare edge mitigations when safe, and propose code patches. By combining WAF data with OpenAI Daybreak models, Vulnerability Discovery and Remediation

Cloudflare BlogToolsHow we could save petabytes of cache storage with Zstandard and Pingora Could we get more cache space with the same hardware? We prototyped compression inside Cloudflare's cache to find out.

Cloudflare BlogToolsIntroducing Adaptive Intelligence: Undermining the economics of every bot attack Bot operators have historically had the economic advantage, bypassing static, deterministic detection rules with cheap proxies and retooling. Cloudflare's new Adaptive Intelligence engine flips this dynamic by autonomous

Cloudflare BlogToolsBotBase for Operators: A clearer path to joining Cloudflare's directory of bots and agents Bot operators now have a home in the Cloudflare dashboard to manage submissions. This update adds submission status tracking, submission editing, and a behavior model so operators can accurately declare how their bots us

Cloudflare BlogToolsHow we saved 100 terabytes of memory by optimizing 1.1.1.1’s DNS cache Five Rust-level memory optimizations to the DNS cache layout of Big Pineapple cut per-entry memory by 56%, freeing approximately 100 TB of memory across Cloudflare's fleet.

Cloudflare BlogToolsThe Cloudflare Blog — brought to you by EmDash We migrated the Cloudflare Blog to EmDash to prove our stack at massive scale. Here is how we stress-tested performance, safely routed production traffic, and redesigned the frontend experience.

Cloudflare BlogToolsSay it once: Introducing Bot Preference Sync Cloudflare's new Bot Preference Sync automatically aligns your robots.txt file with your AI bot policies for Search, Agent, and Training. Easily manage which bots access your content without maintaining static files.

Cloudflare BlogToolsFrom all-or-nothing to task-based OAuth consent Cloudflare OAuth now supports optional scopes, giving users more control over what an app can access and helping developers build secure consent flows around the task at hand.

Cloudflare BlogToolsA revisit of remote Spectre attacks on Cloudflare Workers In 2024 and 2025, we reassessed remote Spectre attacks on our Workers infrastructure. We share details about the new attack primitives like Spectre gadgets, remote timers, achieving co-location and how new defenses furth

Cloudflare BlogToolsBGP Role model: tracking the adoption of RFC 9234 RFC 9234 lets routers reject route leaks on their own, using BGP Roles and the Only to Customer attribute. We measured who has deployed it, and found two Tier 1 networks unexpectedly stripping OTC.

Cloudflare BlogToolsHow Cloudflare detects MCP traffic and helps secure it Cloudflare Gateway identifies MCP requests using protocol-level heuristics. Security teams can use that signal to find shadow MCP traffic, enforce Portal-only access for approved servers, and block direct connections on

Cloudflare BlogToolsSecure all your internal vibe-coded applications — in one click Introducing Cloudflare Access for Workers. Attach an Access policy directly to a Worker and it applies everywhere that Worker runs — routes, custom domains, workers.dev, and previews — automatically.

Cloudflare BlogToolsTotal eclipse of the Internet: traffic impacts in Iceland, Spain, and Portugal Cloudflare's data shows a clear impact on Internet traffic from Iceland to Spain and Portugal, following the path of totality of the total solar eclipse that occurred on August 12, 2026.

Cloudflare BlogToolsCertificate Transparency Monitoring is now generally available Cloudflare's Certificate Transparency Monitoring is now generally available. The biggest change: we no longer email you about certificates Cloudflare issued for your domain, so when an alert lands in your inbox, it's wor

Cloudflare BlogToolsCloudflare DDoS Threat Report H1 2026: 1 Tbps attacks soar as DNS floods and geopolitical tensions drive a new wave In the first half of 2026, Cloudflare detected a 519% surge in hyper-volumetric DDos attacks across its network. These attacks were driven heavily by DNS and CLDAP reflection vectors. This report breaks down how major ge

Cloudflare BlogToolsEverything we launched during Agents Week Our latest Agents Week has come to a close. Here’s a recap of all the announcements we made from Wallets to Radar.

Cloudflare BlogToolsServing the most critical missions: Cloudflare for Government achieves FedRAMP Class D (High) Certified status Cloudflare for Government achieves FedRAMP Class D (High) Certified status. We also announce our commitment to pursue DoD IL4 authorization. Cloudflare brings world-class security, performance, and developer products to

Cloudflare BlogToolsUnveiling good and bad behaviors on the Agentic Internet Cloudflare is shifting bot mitigation from point-in-time Risk assessment to continuous Trust evaluation. Learn how new good and bad behaviors from bots and agents are assessed by our systems, including BotBase and Precur

Cloudflare BlogToolsIntroducing Radar Researcher: An AI tool for exploring Internet data in plain language Cloudflare Radar Researcher is a new AI-powered tool that lets you explore global Internet trends and traffic data using plain language. Built entirely on Cloudflare's Developer Platform, it turns natural language querie

Cloudflare BlogToolsAnnouncing Cloudflare Ambassadors, Community Engineers, and another $1M in open-source funding We are launching updated community programs, including Cloudflare Ambassadors and Community Engineers, backed by $1M in open-source funding. Learn how we are supporting maintainers and scaling our developer community.
Nothing matches this filter yet.