SecLens 情报中心

网安资讯,一网打尽。汇集权威漏洞通告与行业要闻,结合分组浏览、智能过滤、RSS订阅 和 Webhook 推送,多通道拓展您的安全情报视野。

厂商发布

厂商对产品安全、配置或策略的更新说明。

  • BGP ORIGIN attribute manipulation and its impact on the Internet

    发布时间 2026-07-25 01:25 (UTC+08:00) 抓取时间 2026-07-27 13:20 (UTC+08:00)

    By doing in-depth testing, we found nearly 70% of BGP paths experience ORIGIN attribute rewrites by transit providers seeking traffic advantages. We examine the global impact of this practice and argue for deprecating ORIGIN in route selection.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KYAG27J7320R6RF5C4SGSTK1.png",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KYAGC1W8ZPJBM3V4CJ2523N8.png&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-24T19:33:35.256Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog
  • Introducing Cache Response Rules

    发布时间 2026-07-24 02:40 (UTC+08:00) 抓取时间 2026-07-27 13:20 (UTC+08:00)

    Perhaps you’ve seen something that should sail out of cache get dragged back to the origin. Cache Response Rules is the fix, applied at the right time.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KY7Z140JM9461HHN0FHSNDVQ.png",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KW44Q0QQ4YF44E63CZ5V25R6.jpg&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-24T14:32:44.062Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog
  • How the 2026 World Cup affected Internet traffic

    发布时间 2026-07-21 20:59 (UTC+08:00) 抓取时间 2026-07-27 13:20 (UTC+08:00)

    We analyzed global HTTP traffic to explore how kickoff times, streaming habits, and hydration breaks reshaped online activity worldwide. From late-night traffic surges to halftime browsing spikes, here is how the world connected during the global tournament.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KY24JZR9KTR3M5THP0VXA506.png",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KW49B114HP8HRQ7MA3FAFRSN.JPG&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-23T16:57:35.715Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog
  • Cloudflare Internal DNS is now generally available

    发布时间 2026-07-21 04:59 (UTC+08:00) 抓取时间 2026-07-27 13:20 (UTC+08:00)

    Cloudflare Internal DNS brings authoritative and recursive DNS for private networks to the same global network and control plane that runs Cloudflare's Zero Trust, networking, and public DNS.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KY0BCRJZN4XCWVFJR97JPG2X.png",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KY0CFW3DJ9J69XDCMWR1NNSG.jpg&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-20T20:59:31.072Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog
  • Standing Up to a Dangerous New Breed of Patent Troll

    发布时间 2026-07-20 23:47 (UTC+08:00) 抓取时间 2026-07-20 23:50 (UTC+08:00)

    On March 20th, Cloudflare received our first patent infringement claim: Blackbird Tech LLC v. Cloudflare, Inc. Today we’re filing our Answer to that claim in a federal court in Delaware.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KW47QQH7PNHZ0SZBNJ52C65G.jpg",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KW44KQ4Z9PY1TR0ERGW96HZR.jpeg&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-20T15:47:03.181Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog
  • Cloudflare WAF protects WordPress applications from two high-severity vulnerabilities

    发布时间 2026-07-18 05:30 (UTC+08:00) 抓取时间 2026-07-27 13:20 (UTC+08:00)

    Cloudflare has deployed two WAF rules in response to high-severity vulnerabilities disclosed to us by the WordPress security team. The new rules protect all Cloudflare customers using affected WordPress versions, but customers should still update immediately to a patched release.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KXQSKFH096V7DNN9NP8ABG4X.png",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KW464793D50Z8QJQK451PK2A.jpg&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-20T12:35:37.400Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog
  • A broken DNSSEC rollover took down .AL. Now 1.1.1.1 tells you when validation is bypassed

    发布时间 2026-07-14 21:00 (UTC+08:00) 抓取时间 2026-07-27 13:20 (UTC+08:00)

    When a failed DNSSEC key rollover took down the .AL TLD, we deployed a Negative Trust Anchor to restore resolution. This time, though, clients didn't have to take our word for it: 1.1.1.1 returned EDE 33, a new DNS error code that signals directly in the response that DNSSEC validation was bypassed.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KXEF370BA04JCGFB3M86S6HE.png",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KW48GH720TA5A2634QYMAXZR.png&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-15T16:15:34.208Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog
  • Introducing Precursor: detecting agentic behavior with continuous client-side signals

    发布时间 2026-07-13 21:00 (UTC+08:00) 抓取时间 2026-07-27 13:20 (UTC+08:00)

    Precursor, our new continuous behavioral validation engine for bot management, offers visibility into how humans and bots actually interact across the full user journey. By turning session-level behavior into bot detection signals, it identifies advanced automation with higher precision — while reducing friction for legitimate users.

    扩展字段
    {
      "authors": [],
      "hero_image": "https://blog.cloudflare.com/_emdash/api/media/file/01KX7293QZ61Y5A1GE93AGE3KX.png",
      "listing_image": "https://blog.cloudflare.com/_image?href=https%3A%2F%2Fblog.cloudflare.com%2F_emdash%2Fapi%2Fmedia%2Ffile%2F01KW477HVM8X1SKDG8ADKQJ9T3.png&w=32&h=32&q=60&f=webp&fit=cover&position=center",
      "modified_time": "2026-07-15T15:53:01.608Z",
      "tags": []
    }
    Cloudflare 博客 tech-blog