Welcome to the CrowdSec Blog

Learn more about CrowdSec, our approach to tactical intelligence, and company news.

Vulnerability Myths
Proactive Cybersecurity

5 Common Vulnerability Myths That Put Your Security At Risk

Discover 5 common cybersecurity myths that increase risk, from “we’re too small” to CVSS blind spots. Learn what really reduces exposure.

Jona Azizaj
production telemetry vs honeypots
Proactive Cybersecurity

Honeypots vs Production Telemetry: What CISOs Should Trust for Threat Intelligence

Threat intelligence isn’t equal. Learn why real-world production telemetry reveals attacker intent, and why CISOs trust it over honeypot-based intel.

Jerome Clauzade
crowdsec react2shell
Ambassador Post

React2Shell: The Overly Spicy Side of React 19. CrowdSec to the Rescue!

React2Shell (CVE-2025-55182) is a critical RCE vulnerability impacting React Server Components and Next.js. Learn how CrowdSec mitigates it fast.

Killian Prin-Abeil

Check out our VulnTracking Reports!

View VulnTracking Reports
Protecting CAPI reliability: Introducing rate limiting on CrowdSec’s Central API
Announcement

Protecting CAPI reliability: Introducing rate limiting on CrowdSec’s Central API

To keep CrowdSec’s Central API (CAPI) reliable as usage continues to grow, we’ve introduced rate limiting. This change helps prevent misconfigured or broken deployments from generating excessive traffic, ensuring fair access and consistent performance for everyone.

The CrowdSec Team
ScaleCommerce x CrowdSec
Use Case

Multi-Tenant WAF In The Real World: How ScaleCommerce Uses CrowdSec

Discover how ScaleCommerce built true multi-tenant WAF management with CrowdSec, enabling dynamic per-tenant rule control without reloads or configuration sprawl.

Thibault Koechlin
security operations
Inside CrowdSec

Secure Kubernetes Ingress with CrowdSec and Traefik: WAF, Virtual Patching, and DevSecOps at Scale

Learn how to secure Kubernetes ingress with Traefik & CrowdSec. Enable open-source WAF, virtual patching, & DevSecOps-friendly protection for web-native workloads.

Manuel Sabban
crowdsec for devsecops
Inside CrowdSec

DevSecOps Without Friction: How CrowdSec Fits Your Pipelines and Your Perimeter

CrowdSec enhances DevSecOps with behavior-based detection and edge filtering. Strengthen security without slowing pipelines.

Jerome Clauzade
haproxy remediation component
Inside CrowdSec

From Over-Engineered to Obvious: Simplifying HAProxy SPOA Architecture

A behind-the-scenes look at why we replaced a clever but over-engineered SPOA architecture with a simple, reliable single-listener design backed by goroutines.

Laurence Jones
openclassrooms et crowdsec
Partners

Building the Next Generation of Cyber Defenders with OpenClassrooms and CrowdSec

CrowdSec partners with OpenClassrooms to deliver accessible, hands-on cybersecurity education.

Paige Jenkins
protect upsun with crowdsec
Integrations

Preemptively Protect Your Upsun Projects at Scale with CrowdSec

Stop attacks before they reach your apps on Upsun with a drop-in CrowdSec project blocking bad actors at the edge.

Julien Devouassoud
secure lamp server with crowdsec
Ambassador Post

Become the Gandalf of your LAMP Server: You Shall Not Pass

Protect your LAMP stack with open source WAFs. Learn how CrowdSec and ModSecurity block SQL injections, XSS, bots, and more.

Killian Prin-Abeil
drupal & crowdsec partner to protect the web
Partners

Beyond Patching: Drupal Association and CrowdSec Team Up to Protect the Open Web

Discover how the Drupal Association and CrowdSec are partnering to bring community-powered, adaptive protection to Drupal sites.

Jona Azizaj
CrowdSec WAF: From First Steps to Advanced Deployments
Inside CrowdSec

CrowdSec WAF: From First Steps to Advanced Deployments

Secure apps with CrowdSec WAF: start with virtual patching, extend with CRS, add custom rules, and scale to enterprise protection.

Jerome Clauzade
cybersecurity effectiveness: crowdsec metrics
Inside CrowdSec

Measuring Cybersecurity Defense Effectiveness with CrowdSec Remediation Metrics

Discover how CrowdSec Remediation Metrics turn blocked attacks into actionable insights, optimized defenses, & demonstrate measurable results.

Paige Jenkins
Strengthen Security and Protection with CrowdSec’s Open Source Web Application Firewall
Tutorial

Strengthen Security and Protection with CrowdSec’s Open Source Web Application Firewall

Block 75% of malicious traffic before it ever reaches your server with CrowdSec’s open source web application firewall.

Thibault Koechlin
Explore and Prioritize Vulnerabilities with the CrowdSec CVE Explorer
Announcement

Explore and Prioritize Vulnerabilities with the CrowdSec CVE Explorer

Introducing our new CVE Explorer. Learn what it is and how it can help your organization prioritize threats and vulnerabilities.

Emanuel Seemann
What Our Community Built with CrowdSec WAF: Real Stories, Real Security
Inside CrowdSec

What Our Community Built with CrowdSec WAF: Real Stories, Real Security

Discover how users around the world are deploying CrowdSec WAF across Kubernetes, cloud, and on-prem environments.

Jerome Clauzade
host secure tunnels with crowdsec and pangolin
Integrations

Web Defense with Pangolin and CrowdSec

Host secure tunnels with Pangolin, a privacy-first alternative to Cloudflare Tunnels, now integrated with CrowdSec for enhanced protection.

Milo Schwartz
When Hackers Go Back to School: Introducing CrowdSec Education and Public Sector Blocklists
Announcement

When Hackers Go Back to School: Introducing CrowdSec Education and Public Sector Blocklists

CrowdSec’s new Education and Public Sector Blocklists deliver proactive cybersecurity powered by real-world attack data & AI insights.

Matthieu Mazzolini
crowdsec web application firewall
Inside CrowdSec

CrowdSec WAF: The Collaborative Future of Web Application Security

Protect your apps with a modern, open-source WAF that adapts in real time using behavior-driven detection and global threat intelligence.

Jerome Clauzade
crowdsec and filigran partnership
Partners

CrowdSec and Filigran Partner to Deliver Real-Time, Intelligence-Driven Cyber Defense

Discover how CrowdSec and Filigran’s partnership delivers real-time threat intelligence, streamlined triage, and automated threat enforcement.

The CrowdSec Team