Powering the agents: Workers AI now runs large models, starting with Kimi K2.5
Introducing Custom Regions for precision data control
Standing up for the open Internet: why we appealed Italy’s "Piracy Shield" fine
From legacy architecture to Cloudflare One
Announcing Cloudflare Account Abuse Protection: prevent fraudulent attacks from bots and humans
AI Security for Apps is now generally available
Slashing agent token costs by 98% with RFC 9457-compliant error responses
Investigating multi-vector attacks in Log Explorer
Building a security overview dashboard for actionable insights
Translating risk insights into actionable protection: leveling up security posture with Cloudflare and Mastercard
Fixing request smuggling vulnerabilities in Pingora OSS deployments
Active defense: introducing a stateful vulnerability scanner for APIs
Complexity is a choice. SASE migrations shouldn’t take years.
From the endpoint to the prompt: a unified data security vision in Cloudflare One
Ending the "silent drop": how Dynamic Path MTU Discovery makes the Cloudflare One Client more resilient
A QUICker SASE client: re-building Proxy Mode
How Automatic Return Routing solves IP overlap
Always-on detections: eliminating the WAF “log versus block” trade-off
Mind the gap: new tools for continuous enforcement from boot to login
Stop reacting to breaches and start preventing them with User Risk Scoring
Defeating the deepfake: stopping laptop farms and insider threats
Moving from license plates to badges: the Gateway Authorization Proxy
Evolving Cloudflare’s Threat Intelligence Platform: actionable, scalable, and ETL-less
Introducing the 2026 Cloudflare Threat Report
How Cloudy translates complex security into human action
From reactive to proactive: closing the phishing gap with LLMs
See risk, fix risk: introducing Remediation in Cloudflare CASB
Beyond the blank slate: how Cloudflare accelerates your Zero Trust journey
The truly programmable SASE platform
Modernizing with agile SASE: a Cloudflare One blog takeover
Toxic combinations: when small signals add up to a security incident
ASPA: making Internet routing more secure
Bringing more transparency to post-quantum usage, encrypted messaging, and routing security
The most-seen UI on the Internet? Redesigning Turnstile and Challenge Pages
We deserve a better streams API for JavaScript
How we rebuilt Next.js with AI in one week
Cloudflare One is the first SASE offering modern post-quantum encryption across the full platform
Cloudflare outage on February 20, 2026
Code Mode: give agents an entire API in 1,000 tokens
Shedding old code with ecdysis: graceful restarts for Rust services at Cloudflare