XSS cloudflare
Hey everyone, I was wondering. based on what does Cloud Flare determine if a request is XSS? I'm guessing Regex?
1 Reply
not just regex,but i would say it includes waf rules,Pattern Matching,OWASP Core Ruleset,cloudflare managed ruleset
plus they have soo much traffic,i guess they have a global threat intelligence network that gathers data across millions of websites.