API Shield - New Vulnerability Scanner for API Shield
3mo ago
Source
CloudflareAPI Shield - New Vulnerability Scanner for API Shieldcloudflare.comIntroducing Cloudflare's Web and API Vulnerability Scanner (Open Beta) Cloudflare is launching the Open Beta of the Web and API Vulnerability Scanner for all API Shield customers. This new, stateful Dynamic Application Security Testing (DAST) platform helps teams proactively find logic flaws in their APIs. The initial release focuses on detecting Broken Object Level Authorization (BOLA) vulnerabilities by building API call graphs to simulate attacker and owner contexts, then testing these contexts by sending real HTTP requests to your APIs. The scanner is now available via the Cloudflare API. To scan, set up your target environment, owner and attacker credentials, and upload your OpenAPI file with response schemas. The scanner will be available in the Cloudflare dashboard in a future release. Access : This feature is only available to API Shield subscribers via the Cloudflare API. We hope you will use the API for programmatic integration into your CI/CD pipelines and security dashboards. Documentation : Refer to the developer documentation to start scanning your endpoints today.
You might also wanna read
Cloudflare unveils model-agnostic AI security architecture for scalable vulnerability scanning
Cloudflare has published a blog post detailing its AI security architecture, which uses a model-agnostic approach to vulnerability discovery
Cloudflare Launches Agent-Ready Scanner to Check Website AI Compatibility
Cloudflare has launched an Agent-Ready Scanner tool that analyzes websites for AI compatibility by checking standards like robots.txt, MCP,
Astra API Security Platform: Comprehensive API Discovery and Security Scanning Solution
Astra's API Security Platform is designed to help security and engineering teams discover undocumented, shadow, zombie, and dormant APIs thr
Cloudflare Introduces Unified CLI Tool for Accessing All Platform APIs
Cloudflare is introducing a new unified CLI tool called 'cf' designed to provide consistent access to their entire API ecosystem, which incl
CF-Shield – An open source tool to protect any website with Cloudflare
github.com·1y ago
Early Exploitation of React2Shell Vulnerability (CVE-2025-55182) Targets Critical Infrastructure
The article details early exploitation activity following the public disclosure of the critical React2Shell vulnerability (CVE-2025-55182).

Comments
Sign in to join the conversation.
No comments yet. Be the first.