top of page

Blogs


Remediation for Ingress NGINX Controller Vulnerability
On March 24, 2025, WIZ Research disclosed critical vulnerabilities in the Kubernetes Ingress NGINX Controller that allow unsanitized user...
Boris Rozenfeld
Mar 252 min read


From Zero to 900+ Million Requests: A Year with open-appsec WAF
Payswiff Technologies' perspective and insights after one year with open-appsec WAF
Krishna Mohan Parsha
Mar 244 min read


Introducing New Schema and CRDs for open-appsec Declarative Configuration and Enhancements for Large-Scale Deployments (K8s)
In this blog we announce the availability of significant enhancements for managing the custom-resource-based configuration of open-appsec.
Christopher Lutat
Mar 135 min read


open-appsec Integration with Envoy Proxy (Docker) - Now Available in beta!
In this blog, we explain how to deploy Envoy with open-appsec WAF on Docker using docker-compose and provide insights about the integration.
Christopher Lutat
Feb 106 min read


How to Set Up open-appsec for Best Threat Prevention Results of the Contextual Machine Learning Engine
This blog explains how to get the best threat prevention results and lowest false positive rate from open-appsec contextual ML engine.
Christopher Lutat
Feb 56 min read


open-appsec WAF - Docker Compose Deployment: New Capabilities!
In this blog, we announce the (beta) release of a new docker-compose-based deployment option.
Christopher Lutat
Jan 227 min read


Announcing "General Availability" for NGINX Proxy Manager / open-appsec WAF integration!
With more than a half thousand NPM deployments protected with open-appsec WAF, we are moving this integration to "General Availability"!
Christopher Lutat
Jan 142 min read

Best WAF Solutions in 2024-2025: Real-World Comparison
This article describes how we tested the efficacy of several leading WAF solutions in real-world conditions and the test's striking results.
Boris Rozenfeld
Dec 1, 202414 min read


How did we learn open-appsec is the best WAF solution for us? Nesecon’s take on their journey with open-appsec
Nesecon's user journey with open-appsec and their insights after over one year in their labs, pre-production, and the field
Flavio Molinelli
Nov 21, 20244 min read


open-appsec WAF announces upcoming support for Envoy and Istio
open-appsec announces its upcoming support for Envoy Proxy and Istio Service Mesh, without adding complexity or compromising performance
Christopher Lutat
Nov 14, 20245 min read


Announcing open-appsec WAF integration with Apache APISIX API Gateway
open-appsec announces its new integration with APISIX gateway. This blogs explains the deployment process on Linux, Docker and Kubernetes.
Christopher Lutat
Oct 22, 20249 min read


How to Protect Exposed Web Applications in Your Homelab by Adding open-appsec WAF to Your Reverse Proxy
Protecting web applications in your homelab from unknown zero-day attacks by adding open-appsec to your reverse proxy.
Christopher Lutat
Oct 9, 20244 min read


open-appsec WAF Announces Upcoming Support for ARM-Based Platforms
This blog describes open-appsec upcoming support for ARM-Based platforms, addressing a key request from our user community.
Christopher Lutat
Sep 26, 20243 min read


How to Deploy a WAF with Confidence - Learn to Deploy open-appsec Using Virtual Hands-On Labs
This blog describes the benefits of practicing your WAF deployment before installing it and presents open-appsec's many playground options.
Hen Eliyahu
Sep 16, 20247 min read


Announcing open-appsec WAF Integration with Docker SWAG (Secure Web Application Gateway)
Discover the power of open-appsec WAF integrated with Docker SWAG for a seamless web app security solution
Christopher Lutat
Aug 7, 20249 min read


NGINX Proxy Manager WAF: New central WebUI management option for open-appsec
Discover the power of open-appsec WAF integrated with NGINX Proxy Manager (NPM) for a seamless web app security solution, now with a new cen
Christopher Lutat
May 29, 20243 min read


Leveraging open-appsec / CloudGuard WAF for PCI DSS Requirement 6.4.1-2 Compliance
Learn how to leverage open-appsec / CloudGuard WAF for PCI DSS Requirement 6.4.1-2 Compliance.
Oriane Louzoun
Feb 25, 20243 min read


Announcing open-appsec WAF Integration with NGINX Proxy Manager
Announcing open-appsec WAF Integration with NGINX Proxy Manager!
Christopher Lutat
Dec 28, 20239 min read


Zero-day protection for MOVEit CVE-2023-36934
Blog examines CVE-2023-36934, a critical vulnerability in MOVEit Transfer software. We detailed the vulnerability's exploitation mechan
Boris Rozenfeld
Dec 18, 20233 min read


How you can integrate open-appsec logs into various SIEM services
open-appsec events can be seen in the open-appsec central management WebUI. Here we explain how these events can also be displayed in SIEM.
Christopher Lutat
Oct 27, 20236 min read
bottom of page