< ciso
brief />
Tag Banner

All news with #cloudflare tag

447 articles · page 2 of 23

Cloudflare Basin: GA Serverless Data Analytics Platform

🛠️ Today Cloudflare announces Basin, the generally available name for its serverless data analytics platform built on Apache Iceberg and R2 Object Storage. Basin includes Pipelines for ingestion, Catalog for managed Iceberg tables, and SQL for distributed querying, all designed for speed, openness, and cost efficiency. The platform supports Iceberg-compatible tools, provides free egress, usage-based billing, and a developer-friendly workflow with integrations across Cloudflare services.
read more →

Cloudflare Impact Programs Reach $100M in Services

🌐 Cloudflare’s Impact programs have reached $100 million in donated services, protecting thousands of organizations including newsrooms, civil society groups, governments, and schools from cyberattacks. Originally launched as free services, programs like Project Galileo now defend over 3,500 domains in 120+ countries and blocked billions of attacks in 2025. Cloudflare’s efforts have evolved to include developer support, hackathons for journalists, and tools to help public interest groups adapt to AI-driven threats.
read more →

Cloudflare launches Pay Per Use beta for publishers

📰 Cloudflare has introduced Pay Per Use, a beta program that lets AI companies offer to pay publishers for specific downstream uses of their content. Publishers can review offers, accept or decline, and monitor usage and earnings in the Cloudflare dashboard. Buyers report uses through a single API, Cloudflare aggregates reports, bills buyers, and pays publishers monthly. The model complements Pay Per Crawl and aims to convert downstream AI uses into measurable revenue.
read more →

Cloudflare Auto Router: Intelligent model routing

🧭 Cloudflare announces Auto Router in public beta via AI Gateway, automatically routing requests to the most cost-effective capable model without requiring user selection. Early internal use shows up to 30% cost savings versus always using frontier models like OpenAI Sol and Anthropic Opus. Auto Router classifies requests by task and dimensions, scores candidate models by quality and token costs, and accounts for cache-read/write penalties when switching models. The router returns a ranked list and falls back if a provider cannot serve the request.
read more →

Cloudflare simplifies domain search and registration

🔍 Cloudflare has redesigned its domain search and Registrar experience to be faster, clearer, and less cluttered. The new interface shows the exact query across 420+ extensions, updates results as you type, and supports sorting, filtering, and transparent pricing including renewal costs. Developers and agents can use the expanded Registrar API, sandbox, and cf CLI to search, register, or transfer domains programmatically. The system balances speed and accuracy via prepared datasets, DNS checks, and live registry lookups while scaling on the Cloudflare developer platform.
read more →

Cloudflare Issues: Real-Time Error Detection for Workers

🔥 Cloudflare announces Issues, a built-in error monitoring feature for Cloudflare Workers now in open beta. With one-line configuration, Issues captures uncaught exceptions, failed invocations, 5xx responses, console output, and stack traces without additional SDKs. It groups related failures, shows trends and context, and can send structured diagnostics to agents via Automations for investigation and remediation. Use the Workers OpenTelemetry API to attach application identifiers and the cf CLI to inspect issues and create automations.
read more →

Cloudflare Monetization Gateway enters closed beta

🔒 Today Cloudflare announced the Monetization Gateway is available in a closed beta, enabling sellers to charge agents per request for web resources, APIs, tools, and datasets. The gateway uses HTTP 402 to inline payment negotiations with resource requests and settles transactions using USDC on the Base blockchain via Coinbase's x402 Facilitator. Several customers — including AI Gateway, Ceramic.ai, Stocktwits, and API2PDF — are already using consumption-based pricing and variable billing in production. U.S.-based sellers and buyers can request access through the Cloudflare Dashboard.
read more →

User Insights helps spot AI model overuse

🔍 Cloudflare’s User Insights now adds context to AI usage by grouping conversations by task and highlighting when a model is more capable than required. The update surfaces which users, agents, and applications drive overuse and links task categories, token and latency metrics, and conversation turns to cost. These signals power a new Potential Savings view and the Auto Router beta to help teams route requests to appropriate, cost-effective models.
read more →

Preparing the Web for an Agent-First Future

🔎 Cloudflare describes a rapid shift: more than half of web traffic is now generated by AI agents rather than humans. The company explains how agents differ from traditional crawlers and why blanket blocking is insufficient. Cloudflare outlines new controls, cryptographic bot identity, and products like Pay Per Use and Monetization Gateway to let publishers charge verified buyers. These tools aim to restore revenue, provide transparency, and create a payable, discoverable Agentic Internet.
read more →

Cloudflare Containers Optimized for Agent Sandboxes

🛠️ Cloudflare rearchitected Containers to better serve on-demand agent sandboxes by allowing code to choose sandbox images and instance types at runtime. The new durable_object scheduling policy and redesigned runtime yield a 6x faster median startup and improved burst performance, while filesystem snapshots enter public beta. Durable Objects now control containers more directly via the native ctx.container API, simplifying rollout and enabling richer, per-task environment decisions.
read more →

Cloudflare adds TLS post-quantum visibility tools

🔒 Cloudflare has added post-quantum (PQ) cryptography visibility into its Application Security and Logs products, enabling customers to inspect TLS key exchange algorithms in Logpush, Log Explorer, and HTTP Traffic Analytics. The update surfaces the negotiated key exchange per incoming request so teams can audit PQ adoption, assess compliance, and identify cryptographic gaps across domains. Cloudflare highlights X25519MLKEM768 as the primary TLS 1.3 PQ key-exchange and provides guidance for enabling TLS 1.3 and collecting PQ telemetry.
read more →

Cloudflare launches scalable Threat Signals

🛡️ Threat Signals converts open-source reporting into actionable intelligence by using agentic AI skills to summarize research, extract and normalize indicators, and apply tags into a private, account-scoped dataset. Feeds (RSS/Atom/RDF) are ingested into Workflows that fetch content, clean it, run IOC extraction and Cloudforce One skills, and store results as Threat Events tied to the original report. Outputs are searchable, tagged, and can be used to create WAF rules; Threat Events Platform access is expanded to all Cloudflare accounts with tiered enhancements for enterprise customers.
read more →

Adaptive AI-driven WAF testing and lessons

🛡️ Cloudflare evaluated how frontier LLMs can act as adaptive attackers against a WAF by building a tester that iterates payload encodings and delivery methods, observing HTTP responses to guide next moves. The tests ran against an authorized staging environment across 45 scenarios and six attack categories, producing 1,107 attempts that were human-triaged into 49 actionable findings and 558 blocked requests. Findings led to rule and normalization changes in the Managed Ruleset and produced practical deployment guidance to strengthen layered defenses.
read more →

Cloudflare adds IPsec downgrade protection extension

🔒 Cloudflare and the IETF developed and implemented a mitigation for downgrade attacks against IPsec to guard against quantum-capable adversaries. The company has rolled out beta support across IPsec products including Cloudflare WAN and Magic Transit, enabling customers to request an ipsec_downgrade_protection flag. The upgrade helps ensure post-quantum key agreement is not bypassed by active attackers during protocol negotiation.
read more →

Cloudflare Application Profiles for Positive Security

🔒 Cloudflare is launching Application Profiles to enforce positive security by learning the expected structure and format of HTTP requests and flagging deviations. The feature extends existing API Schema Learning to web applications, creating per-operation profiles that validate paths, query parameters, headers, cookies, and request bodies. Profiles are learned from observed traffic, updated weekly, and produce metadata (cf.schema_validation.learned.violated) that teams can use in Security Rules to monitor or enforce blocking. A closed beta is available to invited Enterprise customers and those with API Security already have access.
read more →

Cloudflare announces PQ-capable CA using MTCs

🔐 Cloudflare outlines its plan to operate a post‑quantum capable Certificate Authority (CA) that supports Merkle Tree Certificates (MTCs) to enable scalable, efficient PQ authentication. The post explains how MTCs integrate issuance and transparency, reducing the cost of PQ signatures and improving auditability with cosigners and mirrors. Cloudflare will offer MTC issuance for free, build ACME tooling, and target Chrome inclusion in early 2027.
read more →

Cloudflare’s Framework for Application Security in AI Era

🛡️ Cloudflare outlines an integrated security framework to address AI-driven attacks, connecting discovery, governance, runtime protection, and iterative investigation. The post summarizes recent AI-agent compromises, explains why isolated controls fail, and introduces new capabilities such as LLM-powered pentesting, Adaptive Security, Botbase registration, Precursor session signals, Application Profiles, and expanded threat intelligence. The approach emphasizes continuous validation, overlapping controls, and using global telemetry to turn investigations into protections.
read more →

Cloudflare announces intent to become a public CA

🔒 Cloudflare today announced its intent to become a public certificate authority (CA), detailing milestones including applications to major root programs and an agreement to acquire a trusted root from GlobalSign. The company plans ACME-first automation, support for post-quantum and Merkle Tree Certificates, and transparency through reproducible builds and public dashboards. Cloudflare emphasizes reliability, redundancy, and gradual adoption while continuing partnerships with existing CAs.
read more →

Cloudflare’s AI-Driven Cryptography Discovery Effort

🔍 Cloudflare describes its internal effort to achieve full post-quantum (PQ) readiness by 2029, focusing on discovering and classifying cryptographic uses across its centralized codebase. The company developed an AI-assisted tool, CryptoLabe, to map repositories, identify cryptography in source, configs, and docs, and generate actionable reports for product and engineering teams. CryptoLabe runs two-stage scans—discovery and analysis—assigning cautious classifications and surfacing prerequisites when ecosystem support is lacking. The system runs on Cloudflare Workers, Durable Objects, Workflows, and an AI Gateway to manage model requests and resource limits.
read more →

Vinext 1.0: Portable Next.js on Vite released

🚀 Vinext 1.0 general availability brings a Vite-backed framework that makes Next.js apps portable to multiple platforms including Cloudflare Workers, Netlify, and AWS Lambda. The release improves compatibility, stability, and caching, supports both App and Pages routers, and adds build-time prerendering plus page-level ISR. Migration is simplified with two commands and a broad test suite ensures ongoing compatibility with Next.js.
read more →