{"id":19847,"date":"2023-05-19T15:18:25","date_gmt":"2023-05-19T13:18:25","guid":{"rendered":"https:\/\/www.transparentedge.eu\/en\/blog\/"},"modified":"2024-09-12T15:20:54","modified_gmt":"2024-09-12T13:20:54","slug":"the-power-of-a-waf-against-vulnerabilities","status":"publish","type":"post","link":"https:\/\/www.transparentedge.eu\/en\/blog\/the-power-of-a-waf-against-vulnerabilities\/","title":{"rendered":"The power of a WAF against vulnerabilities"},"content":{"rendered":"\n<p>The INCIBE (Spanish acronym for Instituto Nacional de Ciberseguridad, National Institute of Cybersecurity) has published a notice this week due to a serious vulnerability detected in WordPress. This has resulted in a cross-site scripting (XSS) attack, in which cyber attackers can inject malicious codes into a specific website and then infect its visitors. This maneuver is not something that the visitor can notice, which makes it incredibly dangerous.&nbsp;<\/p>\n\n\n\n<p>There\u2019s also another vulnerability in the WordPress <strong><em>Advanced Custom Fields<\/em><\/strong> plugin, that has affected over 2 million users globally. The CMS has already published a new version with updated security features, so the first thing that any site with vulnerable WordPress versions has to do is update their current version to the new <a href=\"https:\/\/es.wordpress.org\/2023\/05\/16\/wordpress-6-2-1-actualizacion-de-mantenimiento-y-seguridad\/\">6.2.1<\/a>.<\/p>\n\n\n\n<p><strong>THE IMMEDIACY IN THE EXPLOITATION OF VULNERABILITIES<\/strong><\/p>\n\n\n\n<p>These two situations are particularly interesting because they reflect the way in which threats work today. Attackers started their activity within the first 24 hours after the publication of the WordPress exploit\u2019s proof of concept (PoC).<\/p>\n\n\n\n<p>The trend is very clear: t<strong>o increase the vulnerability exploits rate, and for these to happen at a higher speed each time<\/strong>. Cyber attackers acted in the first few hours after the announcement was made, so the time frame to react is very small.<\/p>\n\n\n\n<p>Having <strong>real-time observation tools that also have the ability to mitigate these attacks <\/strong>becomes key in order to guarantee the security of web applications.&nbsp;<\/p>\n\n\n\n<p><strong>WAF: IMMEDIATE PROTECTION<\/strong><\/p>\n\n\n\n<p>We\u2019ve explained previously <a href=\"https:\/\/www.transparentedge.eu\/blog\/waf-vulnerabilidades\/\">how the WAF technology<\/a> works. It\u2019s a solid security ecosystem that protects sites and APIs from application attacks and the exploitation of vulnerabilities by <strong>analyzing traffic in real time, searching for malicious requests and security risks<\/strong>.&nbsp;<\/p>\n\n\n\n<p>This visibility allows us to react immediately against threats, even in new cases like the ones we\u2019ve described before.&nbsp;<\/p>\n\n\n\n<p><strong>TRANSPARENT EDGE\u2019S WAF<\/strong><\/p>\n\n\n\n<p>Our WAF goes above and beyond and protects you in real time, without the need of defining rules, and guaranteeing minimum latency, while at the same time protecting the web applications against typical attacks such as SQL injection, XSS, CSRF, and others.&nbsp;<\/p>\n\n\n\n<p>Of course, the Transparent Edge clients that have hired this solution are protected against the two vulnerabilities detected in WordPress that have kicked off this post.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The INCIBE (Spanish acronym for Instituto Nacional de Ciberseguridad, National Institute of Cybersecurity) has published a notice this week due [&hellip;]<\/p>\n","protected":false},"author":14,"featured_media":17526,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"content-type":"","footnotes":""},"categories":[7],"tags":[160,163],"class_list":["post-19847","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-ataque-en","tag-seguridad-en"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>The power of a WAF against vulnerabilities<\/title>\n<meta name=\"description\" content=\"WAF technology interacts against serious vulnerability detected in WordPress. This maneuver is not something that the visitor can notice, which makes it incredibly dangerous.\u00a0\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The power of a WAF against vulnerabilities\" \/>\n<meta property=\"og:description\" content=\"WAF technology interacts against serious vulnerability detected in WordPress. This maneuver is not something that the visitor can notice, which makes it incredibly dangerous.\u00a0\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/\" \/>\n<meta property=\"og:site_name\" content=\"Transparent Edge\" \/>\n<meta property=\"article:published_time\" content=\"2023-05-19T13:18:25+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-09-12T13:20:54+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/05\/waf-vulnerabilidades.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"583\" \/>\n\t<meta property=\"og:image:height\" content=\"328\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Jara Exp\u00f3sito\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@tedgeservices\" \/>\n<meta name=\"twitter:site\" content=\"@tedgeservices\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/\"},\"author\":{\"name\":\"Jara Exp\u00f3sito\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#\\\/schema\\\/person\\\/e2bd1cb076dea3d14dfdad4191c83f1a\"},\"headline\":\"The power of a WAF against vulnerabilities\",\"datePublished\":\"2023-05-19T13:18:25+00:00\",\"dateModified\":\"2024-09-12T13:20:54+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/\"},\"wordCount\":380,\"publisher\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.transparentedge.eu\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/waf-vulnerabilidades.jpg\",\"keywords\":[\"ataque\",\"Seguridad\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/\",\"url\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/\",\"name\":\"The power of a WAF against vulnerabilities\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.transparentedge.eu\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/waf-vulnerabilidades.jpg\",\"datePublished\":\"2023-05-19T13:18:25+00:00\",\"dateModified\":\"2024-09-12T13:20:54+00:00\",\"description\":\"WAF technology interacts against serious vulnerability detected in WordPress. This maneuver is not something that the visitor can notice, which makes it incredibly dangerous.\u00a0\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.transparentedge.eu\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/waf-vulnerabilidades.jpg\",\"contentUrl\":\"https:\\\/\\\/www.transparentedge.eu\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/waf-vulnerabilidades.jpg\",\"width\":583,\"height\":328,\"caption\":\"3D gr\u00e1fico render de cubos naranjas y azules sobrepuestos entre s\u00ed\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/blog\\\/the-power-of-a-waf-against-vulnerabilities\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Portada\",\"item\":\"https:\\\/\\\/www.transparentedge.eu\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The power of a WAF against vulnerabilities\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#website\",\"url\":\"https:\\\/\\\/www.transparentedge.eu\\\/\",\"name\":\"Transparent Edge\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#organization\"},\"alternateName\":\"Transparent Edge\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.transparentedge.eu\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#organization\",\"name\":\"Transparent Edge Services\",\"alternateName\":\"Transparent Edge\",\"url\":\"https:\\\/\\\/www.transparentedge.eu\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.transparentedge.eu\\\/wp-content\\\/uploads\\\/2023\\\/07\\\/logotipo-cuadrado.jpg\",\"contentUrl\":\"https:\\\/\\\/www.transparentedge.eu\\\/wp-content\\\/uploads\\\/2023\\\/07\\\/logotipo-cuadrado.jpg\",\"width\":1328,\"height\":1180,\"caption\":\"Transparent Edge Services\"},\"image\":{\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/tedgeservices\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/transparent-edge\\\/\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UC5zZoyZmiLGBTAdiFpj2xHA\\\/videos\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.transparentedge.eu\\\/#\\\/schema\\\/person\\\/e2bd1cb076dea3d14dfdad4191c83f1a\",\"name\":\"Jara Exp\u00f3sito\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The power of a WAF against vulnerabilities","description":"WAF technology interacts against serious vulnerability detected in WordPress. This maneuver is not something that the visitor can notice, which makes it incredibly dangerous.\u00a0","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/","og_locale":"en_US","og_type":"article","og_title":"The power of a WAF against vulnerabilities","og_description":"WAF technology interacts against serious vulnerability detected in WordPress. This maneuver is not something that the visitor can notice, which makes it incredibly dangerous.\u00a0","og_url":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/","og_site_name":"Transparent Edge","article_published_time":"2023-05-19T13:18:25+00:00","article_modified_time":"2024-09-12T13:20:54+00:00","og_image":[{"width":583,"height":328,"url":"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/05\/waf-vulnerabilidades.jpg","type":"image\/jpeg"}],"author":"Jara Exp\u00f3sito","twitter_card":"summary_large_image","twitter_creator":"@tedgeservices","twitter_site":"@tedgeservices","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/#article","isPartOf":{"@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/"},"author":{"name":"Jara Exp\u00f3sito","@id":"https:\/\/www.transparentedge.eu\/#\/schema\/person\/e2bd1cb076dea3d14dfdad4191c83f1a"},"headline":"The power of a WAF against vulnerabilities","datePublished":"2023-05-19T13:18:25+00:00","dateModified":"2024-09-12T13:20:54+00:00","mainEntityOfPage":{"@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/"},"wordCount":380,"publisher":{"@id":"https:\/\/www.transparentedge.eu\/#organization"},"image":{"@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/#primaryimage"},"thumbnailUrl":"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/05\/waf-vulnerabilidades.jpg","keywords":["ataque","Seguridad"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/","url":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/","name":"The power of a WAF against vulnerabilities","isPartOf":{"@id":"https:\/\/www.transparentedge.eu\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/#primaryimage"},"image":{"@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/#primaryimage"},"thumbnailUrl":"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/05\/waf-vulnerabilidades.jpg","datePublished":"2023-05-19T13:18:25+00:00","dateModified":"2024-09-12T13:20:54+00:00","description":"WAF technology interacts against serious vulnerability detected in WordPress. This maneuver is not something that the visitor can notice, which makes it incredibly dangerous.\u00a0","breadcrumb":{"@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/#primaryimage","url":"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/05\/waf-vulnerabilidades.jpg","contentUrl":"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/05\/waf-vulnerabilidades.jpg","width":583,"height":328,"caption":"3D gr\u00e1fico render de cubos naranjas y azules sobrepuestos entre s\u00ed"},{"@type":"BreadcrumbList","@id":"https:\/\/www.transparentedge.eu\/blog\/the-power-of-a-waf-against-vulnerabilities\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Portada","item":"https:\/\/www.transparentedge.eu\/en\/"},{"@type":"ListItem","position":2,"name":"The power of a WAF against vulnerabilities"}]},{"@type":"WebSite","@id":"https:\/\/www.transparentedge.eu\/#website","url":"https:\/\/www.transparentedge.eu\/","name":"Transparent Edge","description":"","publisher":{"@id":"https:\/\/www.transparentedge.eu\/#organization"},"alternateName":"Transparent Edge","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.transparentedge.eu\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.transparentedge.eu\/#organization","name":"Transparent Edge Services","alternateName":"Transparent Edge","url":"https:\/\/www.transparentedge.eu\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.transparentedge.eu\/#\/schema\/logo\/image\/","url":"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/07\/logotipo-cuadrado.jpg","contentUrl":"https:\/\/www.transparentedge.eu\/wp-content\/uploads\/2023\/07\/logotipo-cuadrado.jpg","width":1328,"height":1180,"caption":"Transparent Edge Services"},"image":{"@id":"https:\/\/www.transparentedge.eu\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/tedgeservices","https:\/\/www.linkedin.com\/company\/transparent-edge\/","https:\/\/www.youtube.com\/channel\/UC5zZoyZmiLGBTAdiFpj2xHA\/videos"]},{"@type":"Person","@id":"https:\/\/www.transparentedge.eu\/#\/schema\/person\/e2bd1cb076dea3d14dfdad4191c83f1a","name":"Jara Exp\u00f3sito"}]}},"_links":{"self":[{"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/posts\/19847","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/users\/14"}],"replies":[{"embeddable":true,"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/comments?post=19847"}],"version-history":[{"count":3,"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/posts\/19847\/revisions"}],"predecessor-version":[{"id":19850,"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/posts\/19847\/revisions\/19850"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/media\/17526"}],"wp:attachment":[{"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/media?parent=19847"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/categories?post=19847"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.transparentedge.eu\/en\/wp-json\/wp\/v2\/tags?post=19847"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}