April 05, 2022

Ruleset

Policy

Description of Update

Previous Action

New Action

Behavioral WAF

Anti-Spam

This policy has been updated to reduce false positives with the Microsoft Auto Discover Office service

Composite

Composite

Protocol Validation

HTTP Method Validation

Introducing a new policy to block non-standard HTTP methods

NA

Block

WAF & OWASP Top Threats

Code Injection

The policy is now covering the Spring4shell vulnerability

Block

Block