WAF by Defended.io

AI-powered web application firewall. Real-time threat detection, zero-config deployment, and cloud-managed rules for complete web protection.

99.9%

Threat Detection Rate

<3ms

Request Overhead

60+

Web Shell Signatures

24/7

Rule Updates

Enterprise-Grade Protection

Real-Time Threat Blocking

SQL injection, XSS, command injection, path traversal, and 60+ web shell signatures blocked instantly with sub-millisecond matching.

Fail-Open Architecture

Never blocks legitimate traffic. If the WAF encounters an error, requests pass through transparently. Zero downtime risk.

24h

Traffic Analytics

24-hour traffic graphs, event distribution charts, and per-domain telemetry with ASN/country enrichment built into every dashboard.

ASN

IP Intelligence

Automatic ASN and country lookup for every request. Detect and block traffic from specific countries, ASNs, or IP ranges with CIDR support.

.htaccess

Seamless Integration

Deploy via .htaccess auto_prepend, PHP include, or via our scrubbing centers. No code changes, no framework modifications. Works with any PHP application.

WPHP

WordPress Module

One-click WordPress plugin. Activates via .htaccess auto_prepend with zero configuration. Bundled agent auto-updates. Admin dashboard integration.

Comprehensive Capabilities

Advanced Rules Engine

Regex patterns, multi-condition AND/OR/NOT logic, priority ordering. OWASP Top 10, MITRE ATT&CK, and custom presets.

Fail2ban Integration

Automatic IP banning on attack detection. Tenant-wide bans pushed to all domains. AbuseIPDB and BGP.tools lookup links.

Rate Limiting & Anti-Scrape

Per-IP rate tracking, scraper UA detection, rapid request detection. Blocks bots and scrapers before they reach your app.

Multi-Tenant & Cluster

Serve unlimited domains across tenants. Deploy cluster collectors with Redis for distributed telemetry aggregation and bulk push.

Adaptive Learning

Learning, monitoring, and blocking modes. Rules auto-advance from log-only to full enforcement after confidence period.

200 OK403 Denied

Response Body Scanning

Detect web shells in backend output. Scans response bodies for known malicious patterns before they reach the client.

Powerful Dashboard

Telemetry & Event Monitoring

Telemetry Blocked Allowed 10:30ALLOWED/api/users192.168.1.5 10:30BLOCKED/wp-admin/admin.php?id=1 UNION SELECT10.0.0.99 10:29LOGGED/config/.env45.33.32.156 24h traffic

Rule Configuration

Rules + New D3FEND: SQL Injection Detection REQUEST_URI deny MITRE T1190: Exploit Public-Facing REQUEST_URI log D3FEND: Web Shell Detection RESP_BODY deny

Reports & Analytics

Traffic (Last 24h) 00:00 — 24:00 Blocked Allowed Top IPs 45.33.32.156 10.0.0.99 192.168.1.5

Domain Configuration

Domains — 12 active example.comv1.2.0 — 25 rules myapp.iov1.2.0 — 18 rules shop.site.comOffline — needs check api.internalpending

Flexible Pricing

Starter

from$29/mo
  • Up to 5 domains
  • 100K requests/day
  • OWASP Top 10 rules
  • Basic telemetry
  • Community support
Get Started

Enterprise

from$299/mo
  • Unlimited domains
  • Unlimited requests
  • All rule presets
  • Adaptive AI Learning
  • Sync rules across domains
  • Custom rule development
  • 24/7 dedicated support
  • SLA guarantee
Contact Sales

Ready to Protect Your Applications?

Deploy in minutes. Zero code changes required. Free trial for 14 days — no credit card needed.

Start Free Trial