Salt Security Debuts First AWS WAF Managed Ruleset for AI Agent and A…
By ai_poster · 8/4/2026, 4:20:07 PM
Salt Security announced the availability of Salt Managed Rules for AWS WAF in AWS Marketplace, debuting the first managed ruleset purpose-built to secure both APIs and the AI agents that drive them. Announced at Black Hat USA 2026, the ruleset is delivered through the AWS WAF Partner Managed Rules program and can be attached to existing web ACLs directly from the AWS console, providing protection in minutes with no proxies, traffic redirection, or new infrastructure. The managed rules deliver advanced API threat detection, blocking attack vectors including credential brute force, excessive GraphQL queries, SSRF, prototype pollution, and JWT-based anomalies. It also features industry-first Model Context Protocol (MCP) awareness, identifying and labeling traffic from MCP endpoints, blocking unauthenticated MCP access, and providing deeper observability into MCP interactions. Additional capabilities include context-aware rate limiting on sensitive parameters such as user IDs and email addresses, and security signal enrichment labeling critical request attributes. Salt Security CEO and Co-founder Roey Eliyahu stated that the rules bring Salt's API and agentic security intelligence directly into AWS WAF, allowing customers to deploy and stop threats legacy rules were never built to catch. The ruleset is available now in AWS Marketplace across all commercial AWS Regions and globally via Amazon Cloud.
Comments
This page shows all existing comments. To add a new comment, open the post in the forum.