Back to blog

Follow and Subscribe

Brooks Cunningham

Brooks Cunningham

Senior Security Strategist, Fastly

As a Senior Security Strategist at Fastly, Brooks focuses on helping customers deliver performant and secure experiences to their end users. He specializes in fraud and abuse use cases, such as account takeover, gift card stuffing, and inventory denial of service.
Preserving Analytics Attribution During Bot Challenges: A Fastly VCL & NGWAF Deep DiveBrooks Cunningham
Learn how to preserve Google Analytics attribution during bot challenges. Discover how to use Fastly's NGWAF and VCL to maintain data accuracy while securing your site.
DevOpsEngineering+2
CODE - Fastly
Terraform Your Fastly Config in a few CommandsBrooks Cunningham, Fastly Enterprise Solution Architects
Import your complete Fastly setup into Terraform in minutes. No rewrites, no downtime, just your existing infrastructure, now as code.
SecurityEngineering+2
An illustration of a yellow, shining shield with a cracking gray shield peeling off of it
How to Configure Local Logging for an On-Prem Next-Gen WAF AgentBrooks Cunningham, Fastly Enterprise Solution Architects
Learn how to configure local logging for Fastly NGWAF on-prem agents using Docker, environment variables, and real-time log tailing.
DevOpsEngineering+2
Stopping Bad Bots Without Blocking the Good OnesBrooks Cunningham, Fastly Enterprise Solution Architects
Keep trusted automation running while blocking malicious bots. Learn how precise WAF controls reduce false positives without weakening security.
Security
Teach Your robots.txt a New Trick (for AI)Brooks Cunningham, Fastly Enterprise Solution Architects
Control how AI bots like Google-Extended and Applebot-Extended use your website content for training. Update your robots.txt file with simple Disallow rules.
CDN & DeliverySecurity+2
Protecting Against Scrapers with Fastly Bot ManagementBrooks Cunningham, Fastly Enterprise Solution Architects
Protect your website from scrapers and unauthorized access with Fastly Bot Management. Secure cached content, prevent price undercutting, and protect SEO.
PlatformCDN & Delivery+2
Testing Next-Gen WAF Rate Limiting Rule with GitHub ActionsBrooks Cunningham, Fastly Enterprise Solution Architects
Learn how to test a Next-Gen WAF rate limiting rule using Fastly and GitHub Actions. Prevent DDoS attacks and enforce Terms of Service with this post.
Surface and protect authentication endpoints with Login DiscoveryBrooks Cunningham, Fastly Enterprise Solution Architects
As organizations scale, there is a potential for threats to creep in via an increase in application management and beyond. Learn how Fastly can help you avoid these challenges.
SecurityCompute
Advanced Rate Limiting on Fastly’s EdgeBrooks Cunningham, Fastly Enterprise Solution Architects
Use Advanced Rate Limiting with edge deployments of Fastly’s Next-Gen WAF for easier, stronger protection against fraud and abuse.
SecurityCompute
How to Deploy Fastly’s Next-Gen WAF in less than 10 minutesBrooks Cunningham, Fastly Enterprise Solution Architects
Two of the main problems people encounter when trying to secure their web and API endpoints is that their security solution is complicated or difficult to maintain, and that the deployment is slow and painful.
SecurityCompute
Designing Next-Gen WAF Sites for your OrganizationBrooks Cunningham, Travis Sanders, +1
Flexible options for deploying Fastly’s Next-Gen WAF are critical for getting your security running effectively, quickly, and with the right structure for your organization.
SecurityDevOps+1
Grinch bots penalized w/ enriched security data & our edge cloud platform Brooks Cunningham, Fastly Enterprise Solution Architects
In this post, we’ll show how you can use information from an origin response to add an abuse IP address to our penalty box. We've been touting the promise of security at the edge, and this is just one example of what it can do.
SecurityEngineering+1
Request enrichment helps identify user data Brooks Cunningham, Fastly Enterprise Solution Architects
Requests passing through Fastly can be transformed in many ways. In this example, we’ll show you how to use enriched requests and our next-gen WAF to help you make more informed security decisions.
ProductSecurity