Skip to content
Threat Feed

Tag

Waf

5 briefs RSS
medium advisory

AWS WAF Web ACL Deletion Defense Evasion

Adversaries with high-level privileges may delete AWS Web Application Firewall (WAF) Web ACLs to disable security controls and facilitate unauthorized access to protected applications.

AWS WAF defense-evasion cloud-security aws waf
1r 1t
critical advisory

Progress Software LoadMaster and MOVEit WAF Vulnerabilities Lead to RCE and Root Privileges

Multiple vulnerabilities have been identified in Progress Software LoadMaster and MOVEit WAF products, allowing an attacker from an adjacent network to execute arbitrary program code and gain root privileges on the affected systems.

LoadMaster +1 progress-software moveit waf rce privilege-escalation network-security
3t
low advisory

Azure Front Door WAF Policy Deletion Detection

Detection of Azure Front Door Web Application Firewall (WAF) policy deletion, which can indicate an attacker's attempt to evade defenses by removing a security layer protecting web applications.

Azure Front Door WAF azure waf defense_evasion
2r 1t
medium advisory

AWS WAF Rule or Rule Group Deletion

Detection of AWS WAF rule or rule group deletions, which can weaken web application security and expose applications to various attacks.

AWS WAF aws waf defense-evasion cloud
2r 1t
medium advisory

AWS WAF Access Control List Deletion

Detection of AWS Web Application Firewall (WAF) Web ACL deletion, which adversaries may perform to disable security controls, evade detection, and prepare for subsequent attacks, potentially leading to web-application compromise, data theft, or resource abuse.

AWS WAF +3 cloud aws waf defense-evasion
2r 1t