Protect Websites from Hacks & Attacks
Our Website Application Firewall (WAF) stops bad actors, speeds up load times, and increases your website availability.
How to Activate Sucuri Website Firewall
Follow these steps to activate your firewall or reach out:
Add Site to the Sucuri WAF
If your site is under a DDoS attack, select “I am currently under attack”. Next, restrict Admin access to whitelisted IP addresses.
Protect Data in Transit
Sucuri automatically creates SSL certificates for your firewall server. Professional or Business plans can upload custom SSL certificates.
Activate Website Protection
Enable the firewall by changing your DNS records. When activated, the firewall intercepts and inspects all incoming packets to ensure that only safe requests arrive.
Choose Caching Option
Now that your website is protected, power up your speed. Choose between our high-performance caching options for maximum site optimization.
Built for all platforms and custom sites
Reliable Website Security Solutions
24/7 website security with zero hidden costs – built for small businesses, web professionals and enterprise organizations.
Website Security Platform Plans
30-Day Guarantee
Platform Agnostic
24/7 Security Team
Each plan applies for 1 site. If you need multiple sites, speak to our chat agents or give us a call for discount pricing.
Unlimited manual cleanups included on every plan with no hidden fees.
Ticket response time is an estimate and resolution time may vary based on complexity and volume of tickets in our queue.
Get a basic summary of the files that were cleaned and what next steps are to ensure ongoing protection
Monitor things that matter: Malware, Blocklist, DNS, Uptime, malicious redirects and SEO spam.
Cloud-based WAF that actively blocks malicious traffic.
Protect your brand’s reputation by knowing when your site is blocklisted and remove the headache of getting it removed
All platforms Support SSL but only the pro and business plans can be preloaded with your existing purchased SSL.
Stop layer 3, 4, 7 DDoS attacks and with virtual patching to protect outdated software.
SSL is automatically enabled on our firewall to make sure the information flow is encrypted.
Our global Anycast network is capable of mitigating large DDoS attacks.
Our content delivery network (Anycast) improves page speed and reduces server load by 80% on average.
Get support with load balancing and server failover configurations
We support all CMS’s and hosting solutions. Our firewall also adapts to whatever CMS you are using with custom rules
Secure ticketing system with 24/7/365 support
*All hack and malware plans have a minimum duration of 12 months.
Firewall & CDN Only Plans
30-Day Guarantee
Platform Agnostic
24/7 Security Team
Each plan applies for 1 site. If you need multiple sites, speak to our chat agents or give us a call for volume discounts.
Unlimited manual cleanups included on every plan with no hidden fees.
Ticket response time is an estimate and resolution time may vary based on complexity and volume of tickets in our queue.
Get a basic summary of the files that were cleaned and what next steps are to ensure ongoing protection
Monitor things that matter: Malware, Blocklist, DNS, Uptime, malicious redirects and SEO spam.
Cloud-based WAF that actively blocks malicious traffic.
Protect your brand’s reputation by knowing when your site is blocklisted and remove the headache of getting it removed
All platforms Support SSL but only the pro and business plans can be preloaded with your existing purchased SSL.
Stop layer 3, 4, 7 DDoS attacks and with virtual patching to protect outdated software.
SSL is automatically enabled on our firewall to make sure the information flow is encrypted.
Our global Anycast network is capable of mitigating large DDoS attacks.
Our content delivery network (Anycast) improves page speed and reduces server load by 80% on average.
Get support with load balancing and server failover configurations
We support all CMS’s and hosting solutions. Our firewall also adapts to whatever CMS you are using with custom rules
Secure ticketing system with 24/7/365 support
*All Platform Plans have a minimum duration of 12 months.
Virtual Patching & Hardening
If a security patch is released, but you can’t update your site, it becomes an easy target for hackers. We constantly update patches and server rules to protect your site.
Block DDoS Attacks
Avoid downtime with our global Anycast network and web application firewall (WAF). Patch vulnerabilities and block threats with our WAF’s intrusion prevention system.
Protected Pages
Add another layer of protection to sensitive pages by enabling the Protected Page feature. Add passwords, CAPTCHA, 2FA (via Google Authenticator), or IP allowlisting.
IP Allowlisting
Allowlisted IP addresses ensure that only your team can access website administrative areas. Restrict your admin panels so malicious users don’t gain access.
Application Profiling
Each site has its own CMS, server software and other unique technolgies in its stack. We analyze all traffic requests to block those that don’t fit your web application’s profile.
Signature Detection
All HTTP/HTTPS web traffic is inspected before reaching your server. With heuristic and signature-based techniques, we block malicious requests and attack patterns.
Malware & Hack Protection
We protect your website against malicious code and prevent website hacking with our Web Application Firewall (WAF).
- Intrusion Prevention System (IPS)
- Preserve your website traffic and rankings
- Increase your website performance
- Blocking bad bots and automated attacks
DDoS Attack Mitigation
Distributed Denial of Service (DDoS) attacks can cause downtime. We block layer 3, 4, and 7 DDoS attacks.
- Deflect DDoS traffic in the outer layers
- Secure bandwidth during attacks
- Stop Volume Based & Protocol Attacks
- Stop Application Attacks (layer 7)
Zero-Day Exploit Prevention
Hackers discover new vulnerabilities every day. We protect sites and stop suspicious behavior. Mitigating new threats rarely requires a patch.
- Vulnerability Scanning
- Patch Management
- Input & Data Validation
- Application Profiling
Brute Force Attack Protection
Automated hacker tools target all sites. We stop brute force attacks and password cracking to prevent site abuse.
- Prevent Bot attacks
- Limit logins to a specific IP address or range
- Add two factor authentication
- Unique login URLs