What's new at AWS 📢
❇ #AWS_WAF Bot Control Managed Rule expands bot detection capabilities to enhance web application security.
❇This is new version of Bot Control Managed Rule Group with enhanced features to help customers better manage and protect their web applications from bot activity.
❇Managed Rule Group includes:
1️⃣ Token reuse detection:
☑ Identifies the reuse of WAF tokens across autonomous system numbers and geographic locations, in addition to existing IP-based detection.
☑ Customizable sensitivity levels – High, Medium, and Low which enable customers to take mitigation actions.
2️⃣ Expanded Bot categories (19 new bots) some of them are following,
☑ CategoryEmailClient - Inspects links in emails and flag suspicious emails.
☑ CategoryMonitoring - Monitoring of performance and uptime
☑ CategorySearchEngine - vulnerabilities or security audits
☑ CategorySeo - Inspects for search engine optimization
☑ CategoryAI - Inspects for artificial intelligence (AI) bots
3️⃣ Cloud Service Provider Labels:
☑ New labels that allow customers to selectively allow or block traffic from specific cloud service providers.
4️⃣ Automated Browser Extension Labels:
☑ Labels to detect the presence of browser extensions that assist in web automation, such as Selenium IDE and automated browser signals.
5️⃣ Improved CloudWatch Visibility:
☑ Enhancing visibility of bot activity across your resources
❇To leverage this latest version you need to manually change the version number of Bot Control Managed Rule group.
📌 Explore more about WAF Bot control: https://aws.amazon.com/waf/features/bot-control/