惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

aimingoo的专栏
aimingoo的专栏
博客园 - 三生石上(FineUI控件)
GbyAI
GbyAI
大猫的无限游戏
大猫的无限游戏
M
MIT News - Artificial intelligence
Microsoft Azure Blog
Microsoft Azure Blog
月光博客
月光博客
Engineering at Meta
Engineering at Meta
I
InfoQ
T
Tailwind CSS Blog
N
Netflix TechBlog - Medium
S
SegmentFault 最新的问题
H
Help Net Security
博客园 - 【当耐特】
WordPress大学
WordPress大学
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
美团技术团队
博客园 - 叶小钗
T
The Blog of Author Tim Ferriss
腾讯CDC
雷峰网
雷峰网
Martin Fowler
Martin Fowler
The GitHub Blog
The GitHub Blog
D
Docker

AI demand is so high, AWS customers are trying to buy out its entire capacity | Network World

Cisco: Latest news and insights 2026 network outage report and internet health check Selector targets the network visibility gap in multi-cloud infrastructure Top network and data center events of 2026 How AI is transforming network incident response (and where it still falls short) Google opens TPUs to enterprises beyond its own cloud via Blackstone JV AI, cybersecurity skills top IT pay premiums Startup Bolt Graphics promises 5x performance over Nvidia’s best GPU Wireless security is a battle of AI vs. AI NetOps teams look to AI to automate Day 2 operations Digital twins reshape network and data center management Network outages, power failures strain data center resiliency Five takeaways from Cisco's blowout quarter and what it means to customers Cisco to cut nearly 4,000 jobs despite strong growth in AI, enterprise networking Startup SPAN teams with Nvidia to put data center nodes in your backyard Hard drive shortage affecting enterprise storage needs Wi-Fi 8 is closer than you think. Here’s what you need to know Cisco open-sources agentic AI security spec HPE revamps private cloud stack for enterprises rethinking VMware Versa takes aim at fragmented enterprise security with CSPM, orchestration update, and AI agent controls Red Hat opens Ansible to AI agents, within limits Red Hat offers endless Linux support — for a fee Red Hat: Sovereignty is more than just compliance Tech job postings hit three-year high as AI demand fuels hiring rebound HPE memory server targets compute-heavy and agentic AI workloads PCI group begins work on new spec to support bandwidth-hungry apps like AI, HPC Q&A: Quantum physicist Sonia Fernández-Vidal on why classical computing isn't going anywhere OpenAI-led consortium seeks to address AI processing bottlenecks AWS hit by US-East-1 outage after data center thermal event Gluware's Titan rises to meet Mythos network vulnerability challenge
AI-powered WAF, virtual patching: How F5 is hardening net...
by Sean Michael Kerner Contributing Writer · 2026-06-10 · via AI demand is so high, AWS customers are trying to buy out its entire capacity | Network World

F5 adds AI-powered web application firewall (WAF) to guard networks against pre-exploit attacks.

The window between vulnerability discovery and active exploitation has been shrinking for years, and frontier AI models have accelerated that compression. To address that shift, F5 this week announced an expansion of its web application and API protection (WAAP) capabilities for its Application Delivery and Security Platform. The new features span three areas:

  • AI-powered web application firewall (WAF): Conducts enhanced behavioral detection in F5 Distributed Cloud Services, using a neural network model to score every request in real time rather than relying on signature matching.
  • API Security Local Edition: Delivers on-premises API discovery, visibility and security for air-gapped and regulated environments with no cloud dependency.
  • Virtual patching: Enhanced capability combines BIG-IP Advanced WAF and F5 Distributed Cloud Web App Scanning to apply runtime protection at the application delivery layer while remediation proceeds.

The AI-powered WAF is currently delivered through Distributed Cloud. F5 said it is in active engineering work to bring the same capability to BIG-IP, Nginx Plus, and Nginx Open Source for customers running on-premises or in restricted network environments.

“If the attacker is a machine and can devise new attack sequences in seconds, then your response to that cannot be signature-based. It has to be based around the behaviors that you detect and analyze,” Joel Moses, vice president of strategic engineering at F5, told Network World.

Inside the AI-powered WAF

The AI-powered WAF in F5 Distributed Cloud combines the company’s existing WAF with a neural network model for behavioral characterization. 

Rather than comparing traffic against a library of known attack signatures, the system assigns a numerical risk score to every request based on multiple signals. That score gives security teams specific, actionable context rather than a binary block-or-allow decision.

The concept of not relying on signatures has been a mainstay of security best practices for well over a decade, with vendors often promoting the use of heuristics-based technology. Moses said the F5 approach differs from earlier heuristics-based detection in both scale and capability. Earlier heuristics operated with a much smaller sampling window. The neural network model processes traffic across larger sampling windows and follows more paths through distance anomaly detection, making it more effective against attack patterns that have no existing signature.

The model is custom-built within F5’s AI center of excellence, not a fine-tuned version of a commercial foundation model. “It’s our own property developed inside of our AI center of excellence, and it is custom tuned for the purpose that it’s delivering,” Moses said.

The model trains continuously on real-world telemetry. F5 said this allows the system to identify novel exploit patterns and stop CVE chaining at Layer 7 before formal signatures exist.

In testing by SecureIQLab, F5 WAAP and F5 AI Guardrails achieved a combined 97.09% total security score, including 100% accuracy against key risks listed in the OWASP WAF Top 10 and API Top 10, along with perfect scores for bot attack mitigation and Layer 7 DoS protection.

For customers already on the Distributed Cloud platform, enabling the AI-powered WAF produces measurable operational changes. Moses said customers who activate the feature typically reach blocking mode faster than those relying on hand-configured signature rules. He noted that F5’s false positive rate dropped from approximately 18% to approximately 1%.

Virtual patching against AI-accelerated exploitation

The promise of the AI-powered WAF is dramatically more powerful virtual patching against emerging threats.

Virtual patching has long been part of WAF deployments, but the threat dynamics around it have shifted. Frontier AI models can find and exploit vulnerabilities faster than most organizations can move a fix through development and testing. The combination of BIG-IP Advanced WAF and F5 Distributed Cloud Web App Scanning applies a virtual patch at the application delivery layer from the moment a vulnerability is identified. The patch operates at runtime while a software fix works through development and testing cycles.

Moses positioned virtual patching as a tool for the remediation window, not a substitute for fixing the underlying code. “It’s a tool in your arsenal, and it can be a powerful one, depending on how quick or how slow, relatively, your organization operates its fixes,” Moses said.

SUBSCRIBE TO OUR NEWSLETTER

From our editors straight to your inbox

Get started by entering your email address below.