Description
Web application firewall rules can be added through the OWASP ModSecurity Core Rule Set. Security teams use it to detect and block common web attack patterns.
Rule sets can create false positives or miss custom attacks. Test with application traffic before enforcing in production.