Best Software for 2025 is now live!
Oleksandra D.
OD
Application Security Data Analyst

How to evaluate WAF blocking capabilities?

Does anybody know if there is a standart or any other public requremenets on a WAF/NGWAF blocking capabilities? What should be blocked by default, which types of attacks, vulnerabilities, etc.
2 comments
Looks like you’re not logged in.
Users need to be logged in to answer questions
Log In
Ivan N.
IN
CEO at Wallarm, API security threat prevention solution. G2 API security leader. Secure REST, gRPC, GraphQL, WebSocket, SOAP and legacy APIs.
0
We introduced n Open Source project GoTestWAF, you can use it as a Docker image or as an online service (https://www.wallarm.com/gotestwaf/overview) Please check this page https://www.wallarm.com/resources/go-test-waf Source code: https://github.com/wallarm/gotestwaf
Looks like you’re not logged in.
Users need to be logged in to write comments
Log In
Reply
Anton K.
AK
0
Hello Oleksandra! Our WAF solution protects your applications and APIs from both behavior and input validation attacks. You can check the full list of attacks and vulnerability types we detect and block here (link https://docs.wallarm.com/attacks-vulns-list/).
Looks like you’re not logged in.
Users need to be logged in to write comments
Log In
Reply