This page was machine-translated and may differ from the original. View original
Aims to Reverse Automated Attack Cost Structure Through Real-Time Traffic Learning and Automatic Detection Rule Generation
With the proliferation of AI tools lowering the barrier to entry for automated cyberattacks, Cloudflare has unveiled a continuous detection engine that transforms attackers' evasion attempts themselves into a high-cost structure. While conventional security solutions are bound by periodic update cycles, the new engine adopts a method of self-reconfiguring the defense system based on real-time data.
Cloudflare announced on the 2nd that it has implemented the continuous detection engine 'Adaptive Intelligence' in its bot security platform 'Cloudflare Bot Management'.
Adaptive Intelligence analyzes trillions of requests processed across Cloudflare's global network to learn real-time traffic signals and immediately generate detection rules in response to new threats.
Dane Knecht, Chief Technology Officer (CTO) at Cloudflare, stated, "If the cost of scaling up attacks is virtually zero, simply raising defensive walls has its limits. Adaptive Intelligence continuously transforms the defense system to quickly invalidate information attackers have identified and blocks attacks before they scale up significantly."
The company explained that Adaptive Intelligence analyzes over one trillion web visits daily and immediately detects new threats when they emerge.
Key functions consist of △establishing continuous defense systems △blocking repeated attacker intrusions △detecting low-intensity and prolonged sustained attacks △distinguishing legitimate users from malicious activity △automatic deployment of security updates and so forth.
Unlike conventional bot mitigation solutions that rely on periodic updates, Adaptive Intelligence continuously updates detection rules based on real-time data.
Cloudflare stated that by combining behavioral signals from browser sessions collected by its behavioral-based bot defense solution 'Cloudflare Precursor' with global edge telemetry data, it can identify even low-intensity attacks sustained over long periods, such as credential stuffing or scraping.
Security updates undergo automatic validation in the background based on actual traffic and are deployed without service interruption.
To request a correction, reply or follow-up report on this article, see how to file a request. Previously published statements are collected in corrections & replies.












