Business
F5 Expands AI-powered WAAP Solutions to Arm Enterprises Against Frontier AI Threats and Stop Attacks Before Exploitation
F5 Expands AI-powered WAAP Solutions to Arm Enterprises Against Frontier AI Threats and Stop Attacks Before

About this update from F5, Inc.
F5 (NASDAQ: FFIV), the global leader in delivering and securing every app and API, today announced new web application and API protection (WAAP) capabilities for its Application Delivery and Security Platform designed to keep enterprises ahead of a rapidly shifting threat landscape. Frontier AI models have collapsed the window between vulnerability discovery and active exploitation, giving threat actors faster, cheaper, and more available means of attack. F5 has expanded its industry-leading WAAP solutions, expanding its AI-powered WAF functionality in F5 Distributed Cloud Services to directly address that reality. “Frontier AI has collapsed the window between discovery and exploitation. Attackers no longer need a CVE. They need a model and a target. We built a risk engine that learns continuously and scores every request dynamically, catching attack patterns before a signature exists to stop them. As APIs become the connective tissue for AI inference, we’ve extended that same security posture to air-gapped and on-prem environments, because the most sensitive workloads can’t phone home to the cloud,” said Kunal Anand, Chief Product Officer at F5. Enhanced AI-powered WAF: Stop attacks before they can be exploited Enterprise AI security challenges are systemic. According to F5’s 2026 State of Application Strategy Report, 88% of organizations report at least one AI-related operational or security challenge. To overcome such issues, enhanced AI-powered capabilities in F5 Distributed Cloud WAF move beyond signature matching by combining attack indicators with a neural network that is continuously trained on broad, real-world telemetry. Every request receives a numerical risk score built from multiple signals, surfacing novel exploit patterns with the ability to kill CVE chaining at Layer 7, before signatures exist to catch them. In addition to finding new attacks, the solution helps SecOps teams reduce operational complexity, resulting in fewer false positives, less manual tuning, and faster response. F5’s approach is validated by recent SecureIQLab testing, where F5 WAAP and F5 AI Guardrails achieved a 97.09% total security score, including 100% accuracy against key risks listed in the OWASP WAF Top 10 and API Top 10, as well as perfect scores for bot attack mitigation and Layer 7 DoS protection. F5’s AI-powered WAF is used by the world’s largest enterprises,...