Industry information
Industry insights on DDoS, API security, acceleration and TLS.
Industry information
70 articlesSelected industry events, security alerts and protection practices from May 2024 to October 2026, with historical events organized by event date.
2025
Let’s Encrypt expiration emails: who owns certificate alerts?
Separate renewal jobs, deployment results and external TLS checks in certificate monitoring.
Read moreReviewing 2024 Q4 DDoS: interpreting a 5.6 Tbps peak
Cloudflare's January 2025 report highlights why attack peaks must be read alongside duration and protection scope.
Read more2024
2024 Internet review: turning traffic trends into capacity planning
Use global trends as context, then plan capacity around your own regions, protocols and origins.
Read moreOWASP's 2025 LLM risks: security beyond the prompt
Released in November 2024, the updated list covers system prompt leakage, vector and embedding weaknesses, and resource consumption.
Read moreQ3 2024 DDoS review: preparing for short bursts
A brief attack can interrupt sign-in and transactions. Review detection speed, measurement intervals and recovery.
Read moreENISA Threat Landscape 2024: availability as an operational concern
Map availability risks across sign-in, transactions and external dependencies.
Read moreNIST finalizes its first PQC standards: start with a cryptographic inventory
FIPS 203, 204 and 205 provide finalized standards for post-quantum key establishment and digital signatures.
Read more2024 Q2 DDoS report: growth and ransom pressure
Cloudflare reported year-over-year attack growth across its network. Interpret the sample separately from your own service risk.
Read moreSecure by Design in 2024: prepare security before launch
Review defaults, access rights and exposed services before a website goes live.
Read moreMay 2024: bringing application and API risk into one view
A look at how Cloudflare's unified risk posture announcement connects application entry points, identities and API assets.
Read more