Cloudflare Security

Learn AWS hacking from zero to hero with htARTE (HackTricks AWS Red Team Expert)!

Other ways to support HackTricks:

In a Cloudflare account there are some general settings and services that can be configured. In this page we are going to analyze the security related settings of each section:

Websites

Review each with:

pageCloudflare Domains

Domain Registration

Review each with:

pageCloudflare Domains

Analytics

I couldn't find anything to check for a config security review.

Pages

On each Cloudflare's page:

Workers

On each Cloudflare's worker check:

Note that by default a Worker is given a URL such as <worker-name>.<account>.workers.dev. The user can set it to a subdomain but you can always access it with that original URL if you know it.

R2

TODO

Stream

TODO

Images

TODO

Security Center

Turnstile

TODO

Zero Trust

pageCloudflare Zero Trust Network

Bulk Redirects

Unlike Dynamic Redirects, Bulk Redirects are essentially static — they do not support any string replacement operations or regular expressions. However, you can configure URL redirect parameters that affect their URL matching behavior and their runtime behavior.

Notifications

Manage Account

Note that fortunately the role Administrator doesn't give permissions to manage memberships (cannot escalate privs or invite new members)

DDoS Investigation

Check this part.

Learn AWS hacking from zero to hero with htARTE (HackTricks AWS Red Team Expert)!

Other ways to support HackTricks:

Last updated