Download the latest Vulnerability & Exploitation Report

Download now

Proactive Cybersecurity

How to Block Bots, Headless Browsers, and Scrapers on Nginx with CrowdSec
AI

How to Block Bots, Headless Browsers, and Scrapers on Nginx with CrowdSec

Set up open-source Nginx bot protection with CrowdSec to block scrapers, headless browsers, AI crawlers, and other unwanted automated traffic.

What’s New in CrowdSec 1.8: WAF Bot Detection, Kubernetes Datasource, and Performance Improvements
AI

What’s New in CrowdSec 1.8: WAF Bot Detection, Kubernetes Datasource, and Performance Improvements

Discover what’s new in CrowdSec 1.8, including WAF bot detection, a dedicated Kubernetes datasource, faster LAPI synchronization, and improved Console alerts.

Why You Should Write a Skill for Your Software
AI

Why You Should Write a Skill for Your Software

Learn why AI agent skills make software setup more reliable, reduce LLM guesswork, improve troubleshooting, and can even expose gaps in your documentation.

WAF for Traefik with CrowdSec: Virtual Patching in Docker
Integrations

WAF for Traefik with CrowdSec: Virtual Patching in Docker

Add an open-source WAF to Traefik with CrowdSec. Wire the bouncer plugin, enable virtual patching, and block real attacks, step by step in Docker.

Open-Source WAF for Nginx on Ubuntu with CrowdSec
Integrations

Open-Source WAF for Nginx on Ubuntu with CrowdSec

Deploy an open-source WAF for Nginx on Ubuntu with CrowdSec. Install the AppSec component, enable virtual patching, and block attacks step by step

CISA gives you 3 days to patch and triage. Live Exploit Tracker gives you a head start
Proactive Cybersecurity

CISA gives you 3 days to patch and triage. Live Exploit Tracker gives you a head start

CISA BOD 26-04 mandates risk-based patching driven by real exploitation evidence. Live Exploit Tracker delivers that evidence live — per CVE, per vendor.

Edge is the new endpoint: How to respond when edge CVEs go hot
CrowdSec

Edge is the new endpoint: How to respond when edge CVEs go hot

Edge CVEs move fast from disclosure to exploitation. Learn a practical 60-minute response framework to assess exposure, reduce risk, deploy mitigations, and communicate clearly during edge vulnerability incidents.

vulnerability exploits threats risk
Proactive Cybersecurity

Vulnerability 101: Understanding Security Weaknesses

Learn the difference between vulnerabilities, threats, and risks, and how understanding their lifecycle helps prevent security incidents.

CrowdSec Welcomes db.gcve.eu, Strengthening Europe’s Vulnerability Intelligence, Without Losing Global Interoperability
Proactive Cybersecurity

CrowdSec Welcomes db.gcve.eu, Strengthening Europe’s Vulnerability Intelligence, Without Losing Global Interoperability

Strengthen your vulnerability workflows with db.gcve.eu: aggregated advisories, cross-source correlation, & real-time exploitation insights from CrowdSec.

Vulnerability Myths
Proactive Cybersecurity

5 Common Vulnerability Myths That Put Your Security At Risk

Discover 5 common cybersecurity myths that increase risk, from “we’re too small” to CVSS blind spots. Learn what really reduces exposure.

production telemetry vs honeypots
Proactive Cybersecurity

Honeypots vs Production Telemetry: What CISOs Should Trust for Threat Intelligence

Threat intelligence isn’t equal. Learn why real-world production telemetry reveals attacker intent, and why CISOs trust it over honeypot-based intel.

security operations
Inside CrowdSec

Secure Kubernetes Ingress with CrowdSec and Traefik: WAF, Virtual Patching, and DevSecOps at Scale

Learn how to secure Kubernetes ingress with Traefik & CrowdSec. Enable open-source WAF, virtual patching, & DevSecOps-friendly protection for web-native workloads.

crowdsec for devsecops
Inside CrowdSec

DevSecOps Without Friction: How CrowdSec Fits Your Pipelines and Your Perimeter

CrowdSec enhances DevSecOps with behavior-based detection and edge filtering. Strengthen security without slowing pipelines.

protecting foss from ai crawlers with free crowdsec blocklist
Announcement

Protecting FOSS Communities from AI Crawlers with Free CrowdSec Blocklist

Announcing free access to the CrowdSec AI Crawlers Blocklist for all open source projects, to help FOSS communities reduce unwanted traffic from AI bots.

advanced application security with the crowdsec waf
Ambassador Post

Implementing the CrowdSec WAF for Advanced Web Application Security

Transform your Security Engine into a WAF with this get-started guide and learn how to integrate and configure the AppSec Component with NGINX on Debian 12.

how to protect your digital assets against ai crawlers
Announcement

Protect Your Digital Assets Against AI Crawlers

Let’s explore some of the most abusive AI crawler behaviors and learn how to block them using the CrowdSec AI Crawlers Blocklist.

announcing the release of the multimodal offensive artificial intelligence ebook
Announcement

Multimodal Offensive AI: The Next Frontier in Offensive AI and A Wake-Up Call for Cybersecurity

The Multimodal Offensive AI ebook explores the next evolutionary step of offensive AI. Understand this next evolution of cyber threats and how you can prepare.

the value of preemptively blocking an a cyber attack
Proactive Cybersecurity

The Real Value of Preemptively Blocking a Cyber Attack

Preemptively blocking malicious IPs is not just good for your security posture, it’s also good for your wallet.  In this article, I’ll explain how you can track remediation metrics using your CrowdSec Security Engine and how you can estimate the actual cost savings enabled by the CrowdSec Blocklists. Remediation Component metrics With the release of […]

3 reasons to handle application security with crowdsec waf
Proactive Cybersecurity

3 Reasons to Handle Your Application Security with CrowdSec WAF

The CrowdSec WAF is a powerful solution that combines the classic benefits of a WAF with CrowdSec’s unique crowd-powered and behavior-based approach

7 key aspects to consider for effective cloud detection and response
Proactive Cybersecurity

7 Key Aspects to Consider for Effective Cloud Detection and Response

Effective CDR isn’t just about spotting and reacting to threats but also creating a proactive strategy that keeps your cloud infrastructure safe and resilient.

ingress traffic vs egress traffic
Proactive Cybersecurity

Securing Ingress Traffic Vs. Egress Traffic: A Retrospective

In this article, we shed some light on the ingress traffic vs. egress traffic paradigm and how CISO’s focus shifted from securing servers to securing users.