Engineering posts about Data Masking
Curated summaries and key learnings for engineers working with Data Masking.
Labyrinth 1.1: Making End-to-End Encrypted Backups Even More Reliable
Labyrinth 1.1 introduces a new sub-protocol aimed at improving the reliability of end-to-end encrypted backups for Messenger, allowing messages to be securely backed up even in cases of device loss...
How Meta Is Strengthening End-to-End Encrypted Backups
Meta's HSM-based Backup Key Vault is designed to enhance the security of end-to-end encrypted backups for WhatsApp and Messenger. The system utilizes hardware security modules (HSMs) to store...
Alert Fatigue Is a Business Risk
The article highlights the critical issue of alert fatigue in enterprise security operations, where the overwhelming volume of alerts leads to significant risks as analysts struggle to prioritize and...
Privacy-first connections: Empowering social experiences at Airbnb
The article outlines Airbnb's approach to enhancing user privacy through the implementation of context-aware profile IDs that decouple user identities from their public profiles. By separating...
Our ongoing commitment to privacy for the 1.1.1.1 public DNS resolver
The article outlines Cloudflare's ongoing commitment to privacy regarding its 1.1.1.1 public DNS resolver, emphasizing the importance of trust in handling personal data. It details the independent...
Agentic AI Security: New Risks and Controls in the Databricks AI Security Framework (DASF v3.0)
The Databricks AI Security Framework (DASF) has been updated to include Agentic AI as its 13th component, introducing 35 new technical security risks and 6 mitigation controls tailored for the...
Announcing Cloudflare Account Abuse Protection: prevent fraudulent attacks from bots and humans
Cloudflare has introduced a suite of fraud prevention capabilities aimed at mitigating account abuse from both automated bots and human attackers. Key features include leaked credentials detection,...
AI Security for Apps is now generally available
Cloudflare has announced the general availability of its AI Security for Apps, a solution designed to detect and mitigate threats specifically targeting AI-powered applications. This tool provides...
Building a security overview dashboard for actionable insights
The article presents a comprehensive overview of a newly developed security dashboard designed to enhance the efficiency of security teams by providing actionable insights rather than mere...
Investigating multi-vector attacks in Log Explorer
The article discusses the complexities of modern multi-vector attacks in cybersecurity, emphasizing the necessity for comprehensive visibility through tools like Cloudflare Log Explorer. It outlines...
Active defense: introducing a stateful vulnerability scanner for APIs
The article introduces Cloudflare's new stateful vulnerability scanner designed specifically for APIs, addressing the limitations of traditional defensive security measures. It highlights the...
Stop reacting to breaches and start preventing them with User Risk Scoring
The article presents a proactive approach to cybersecurity by integrating User Risk Scoring into zero trust network access (ZTNA) policies. It outlines how Cloudflare One's platform allows security...
Always-on detections: eliminating the WAF “log versus block” trade-off
The article presents a novel approach to web application security through the introduction of always-on detections that eliminate the traditional trade-off between logging and blocking malicious...
Introducing the 2026 Cloudflare Threat Report
The 2026 Cloudflare Threat Report outlines significant shifts in the cybersecurity landscape, emphasizing the transition from brute force attacks to high-trust exploitation strategies employed by...
Toxic combinations: when small signals add up to a security incident
The article explores the concept of 'toxic combinations' in cybersecurity, where seemingly harmless signals can converge to create significant security incidents. It highlights how minor...
Understanding AI Security
The article discusses the critical importance of AI security in protecting data, models, and infrastructure from various threats, including unauthorized access and data poisoning. It emphasizes the...