FuseGuard
<p>Web Application Firewall for ColdFusion</p>
<p><a class="btn btn-info btn-large" href="">Learn more</a></p>
<p>The XSS Filter blocks several cross site scripting attack vectors. This filter returns multiple threat levels based on the possible presence of a cross site scripting request.</p>
<p><a class="btn btn-info" href="XSS.cfm">View examples</a></p>
<h2>SQL Injection</h2>
<p>The SQL Injection Filter blocks against several SQL injection attack vectors.</p>
<p><a class="btn btn-info" href="SQLInjection.cfm">View examples</a></p>
<h2>Session Hijacking</h2>
<p>This filter is used when session variables are turned on in your application. It can detect if a session suddenly changes user agents, and will block the request.</p>
<p><a class="btn btn-info" href="SessionHijacking.cfm">View examples</a></p>
<h2>URL Session ID</h2>
<p>This filter blocks requests that pass session id in the URL (such as cfid, cftoken, or jsessionid) as this may allow for session hijacking.</p>
<p><a class="btn btn-info" href="URLSessionID.cfm">View examples</a></p>
<h2>ID Validation Filter</h2>
<p>The ID Validation Filter has a simple concept but can be very effective in blocking many attacks. This filter inspects the value of variables whose name ends with id and ensures that they are a valid id. By default it allows any string containing alphanumeric characters, underscore, and dash. You can configure this filter to only allow integer id values, or UUID values created with CreateUUID. Consult the CFC reference for details.</p>
<p><a class="btn btn-info" href="ForeignPost.cfm">View examples</a></p>
<h2>Malicious File Uploads</h2>
<p>This filter allows you to block or log requests in which a file upload takes place based on the file extension passed by the client. </p>
<p><a class="btn btn-info" href="MaliciousFileUploads.cfm">View examples</a></p>
