Skip to content
This repository was archived by the owner on Sep 7, 2026. It is now read-only.

Latest commit

 

History

96 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 

Repository files navigation

DO NOT USE

This project is unmaintained, so these rule-sets might have false positives or just not block some bots.

If you for some reason still want more info about this repository, here is the old README:

Cloudflare-WAF-Rule

A Powerful Cloudflare WAF Anti DDoS rule, which has been tested by a real DDoS service, and was made with abusive servers attacking my site.

Screenshot of the WAF rule blocking thousands of bots

WAF Rule Details

The stuff blacklisted by the Cloudflare WAF rule is following:

  • Any bot detected by Cloudflare
  • Chrome useragents with version 3-119
  • Many cloud ASNs
  • Many VPNs/proxies (including TOR)
  • Path scanners
  • Firefox useragents with versions 3-119

How to add the rule

  • Turn off bot fight mode.
  • Copy this ruleset or one of the mirrors and then paste it into the Cloudflare WAF rule.
  • Now set the action to block, then click deploy.

Mirrors

About

A Powerful Cloudflare WAF Anti DDoS rule I made for preventing bots, VPNs/Proxies, Old browsers, and Cloud IPs from accessing your website.

Topics

Resources

Stars

11 stars

Watchers

1 watching

Forks

Releases

Packages

Used by

Contributors