Back to blog

Follow and Subscribe

Security

Page 3 of 19

You own your availability: resilience in the age of third-party dependenciesAnjan Srinivas, Leon Brocard, +1
Understand how third-party dependencies can impact website availability and performance. Discover how edge proxying helps reduce risk, improve resilience, and maintain uptime during third-party outages.
PerformanceSecurity
DDoS in December 2025Liam Mayron, David King, +1
Learn how sophisticated Layer 7 and network DDoS attacks evolved in December 2025, including the year’s largest attack and mitigation strategies.
SecurityIndustry insights
Streamlining User Experiences While Fighting BotsDavid King, Daniel Corbett
Streamline user experiences and fight bots with Fastly's new embedded challenges for Bot Management.
ProductSecurity
Building Resilient Applications with Layered SecurityLorraine Bellon
Fastly's new security packages make layered application security easier to buy, use, and grow. Protect your apps with predictable pricing.
SecurityProduct
API Security FeaturesNatalie Griffeth
Explore API security features, testing best practices, and edge protections to prevent data breaches, bot abuse, credential attacks, and API exploitation.
Security
Top Application Security Threats in 2026 (And What Actually Stops Them)Ashley Hurwitz
Discover the top application security threats in 2026, from broken access control and AI-driven attacks to credential stuffing, shadow APIs, and supply chain risks.
Security
An illustration of a yellow, shining shield with a cracking gray shield peeling off of it
Imperva AlternativesNatalie Griffeth
Legacy WAFs can't keep up with modern apps. Discover Imperva alternatives like Fastly that offer developer-friendly, low-latency web application protection.
Security
Best Botnet Protection ToolsNatalie Griffeth
Compare the best botnet protection tools in 2026 for detecting malicious bots, mitigating DDoS attacks, and protecting web applications and APIs
Security
Credential Stuffing Attacks Vs. Brute Force Attacks - What is the difference?Natalie Griffeth
Learn the difference between credential stuffing and brute force attacks, how each works, and best practices to prevent account takeover and unauthorized access.
Security
An illustration of a hand holding a megaphone with shield and lock icons blaring out
From AI Crawlers to Headless Bots: How Automated Traffic is Changing the WebDavid King, Natalie Griffeth
Bots now drive nearly a third of web traffic. Learn how AI crawlers and headless bots are reshaping security, performance, and business decisions.
SecurityIndustry insights
IDC Study Reveals 3X Gains from Modern AppSec ProgramsNatalie Griffeth
An IDC study reveals that modern AppSec programs achieve 3X better business outcomes and are almost 2X less likely to experience a data breach.
SecurityIndustry insights+1
React2Shell Continued: What to know and do about the 2 latest CVEsFastly Security Research Team
In the wake of the critical severity React2Shell CVEs, two new CVEs exploiting similar Next.js and React components were announced on December 11. Learn more about these new CVEs.
SecurityIndustry insights
The Sleep Test: How Embracing Chaos Unlocks API ResilienceLorraine Bellon, Anna Jensen
Learn how Fastly's API Discovery and new Inventory feature unlock API resilience for platform engineers by embracing chaos and strategic, thoughtful planning.
SecurityProduct
DDoS in November David King, Liam Mayron
DDoS attackers were largely absent on Black Friday 2025. Fastly’s latest report reveals why, and what the shifting attack patterns mean for your apps and APIs.
SecurityIndustry insights
Prepare for peaks
Black Friday is Dead, Long Live Black Friday: Cyber 5 Traffic InsightsRobyn Bean, Alec Olslund
Black Friday isn’t the traffic spike it used to be. Fastly’s data shows holiday demand now stretches across all of November. Here’s what Cyber 5 2025 really looked like.
SecurityCDN & Delivery+2
An illustration of a shield with arrows and a server behind it
How React2Shell is evolving: Industries and regions targetedKelly Shortridge
Fastly is seeing sustained React2Shell attacks across all industries and regions. Learn what’s happening and the critical steps enterprises should take to patch vulnerable apps.
SecurityIndustry insights
Fastly’s Proactive Protection for React2Shell, Critical React RCE CVE-2025-55182 and CVE-2025-66478Kelly Shortridge
Protect your apps from the critical React RCE bugs (CVE-2025-55182/66478). Fastly's NGWAF Virtual Patch provides proactive defense.
Security
CAPTCHAs Are Costing Retailers Customers — Heavy AI Users Are the First to Walk AwayAlina Lehtinen-Vela
Our original survey of 881 online shoppers shows CAPTCHAs are quietly killing conversions especially among heavy AI users.
AISecurity
An illustration of a shield with arrows and a server behind it
Mitigating DDoS attacks faster and with even more accuracyLiam Mayron, David King
Learn how Fastly's Adaptive Threat Engine update for DDoS Protection boosts mitigation accuracy and reduces Mean Time to Mitigation by 72% for the holidays.
SecurityProduct
Fastly's resilient architecture helps prevent outages and mitigate severity
Outages, Attacks, and a Need for ResilienceAustin Spires
Cloud outages are a stark reminder of our digital economy's fragility. Learn how Fastly mitigated a major traffic failover and concurrent DDoS attacks with zero disruption.
CDN & DeliveryEdge network+3