Skip to content

Releases: AikidoSec/firewall-php

v1.4.11

12 Dec 16:15
55a9866

Choose a tag to compare

  • Added support for blocking outbound domains

v1.4.10

05 Dec 12:06
515c5f5

Choose a tag to compare

  • Increased gRPC max message size from 4MB to 10MB to allow propagation of bigger cloud configs

v1.4.9

04 Dec 15:46
695e2c3

Choose a tag to compare

  • Added attack wave samples
  • Added support for custom route parameters

v1.4.8

25 Nov 11:21
eb180b5

Choose a tag to compare

  • Added support for PHP 8.5
  • Reloading config until a valid token is obtained
    • Fixes cases when .env is updated via zero downtime deployments: Envoyer/Forge
  • Fix the limit number of reported attack wave detections

v1.4.7

19 Nov 12:21
d5902ec

Choose a tag to compare

  • Upgrade to latest golang toolchain
  • Optimized timestamps storage
  • Fixed rate limiting disabled logic

v1.4.6

11 Nov 08:35
5a7240e

Choose a tag to compare

  • Agent with full support for Apache (mod-php) multi-site configurations
  • Added the attack wave detection feature
  • Added depth parameter to ExtractStringsFromUserInput
  • Add support for method overrides (_method query param or X-HTTP-Method-Override header)

v1.4.5

06 Nov 15:27
a394081

Choose a tag to compare

  • Fix false positive SSRF for server self-requests with HTTP/HTTPS support
  • Added route parameters as additional source for detections

v1.4.4

03 Nov 14:51
285e723

Choose a tag to compare

  • Added support for RPM-compression to be backwards-compatible

v1.4.3

30 Oct 15:12
5dea88f

Choose a tag to compare

v1.4.3 Pre-release
Pre-release
  • Fixed request processing bottleneck by updating config faster and only when needed

v1.4.1

28 Oct 12:33
858e57f

Choose a tag to compare

v1.4.1 Pre-release
Pre-release
  • Fixed Agent Init race conditions when requests are hitting the server at initialization