Formerly Web Application Protector, now evolved into a one-stop WAAP solution combining WAF, API security, bot management, and L7 DDoS protection at the Akamai edge.
Visit site →Cloud & CDN-Native WAFs 6
Edge-delivered, fully managed WAF services built into major cloud and CDN platforms, with minimal deployment overhead and automatic rule updates.
AWS WAF
Managed cloud web application firewall protecting websites, APIs, and applications from bots, exploits, and Layer 7 events with preconfigured protection packs.
Visit site →Network security service providing DDoS and application-attack defenses with adaptive protection and a rich set of WAF rules at Google scale.
Visit site →Cloud-native WAF service that provides powerful, centrally managed protection for web apps deployed on Azure Front Door and Application Gateway.
Visit site →Edge-based WAF inspecting HTTP/S requests with managed and custom rules, zero-day protection, and low false positives — without sacrificing performance.
Visit site →Modern web app and API security deployable anywhere — on-premises, in containers, in the cloud, or at the edge — using contextual SmartParse detection.
Visit site →Enterprise Appliance & ADC-Integrated WAFs 6
WAF solutions delivered as hardware appliances, virtual editions, or ADC-integrated modules for on-premises, hybrid, and data-sovereignty-sensitive deployments.
Uses behavioral analytics, proactive bot defense, and application-layer encryption to identify and block zero-day vulnerabilities and app-layer DoS attacks.
Visit site →Formerly marketed as Citrix Web App and API Protection; now under the independent NetScaler brand, keeping known and zero-day application attacks at bay with WAF, bot management, and DDoS protection.
Visit site →Radware's WAF ensures fast, reliable, and secure delivery of mission-critical web applications and APIs, combining positive and negative security models.
Visit site →Protects business-critical web applications from attacks that target known and unknown vulnerabilities, with machine-learning-based threat detection.
Visit site →Secures web apps on-premises and in the cloud — physical, virtual, or cloud-hosted — protecting against application DDoS, SQL injection, and XSS.
Visit site →Stops application attacks with near-zero false positives, backed by a global SOC that writes and tests rules so customers can deploy confidently in blocking mode.
Visit site →