Bunkerity – BunkerWeb
BunkerWeb is an open-source, next-generation Web Application Firewall (WAF) designed to protect web applications and APIs from a broad range of attacks. Operating typically as a reverse proxy, it inspects…
Compare WAF tools
The same fields, shown the same way, for every WAF listing — so you can compare across vendors at a glance.
| Pricing | Not provided |
| Deployment | Not specified |
| Support | Not specified |
| Compliance | GDPR |
| DDoS protection & mitigation | Yes |
| Bot management/mitigation | Yes |
| OWASP Top 10 / SQLi & XSS protection | Yes |
| Rate limiting | Yes |
| Zero-day protection & virtual patching | Not stated |
| AI/ML-driven attack detection | Not stated |
| API security & schema validation | Not stated |
| 24/7 support | Not stated |
BunkerWeb is an open-source, next-generation Web Application Firewall (WAF) designed to protect web applications and APIs from a broad range of attacks. Operating typically as a reverse proxy, it inspects HTTP/HTTPS traffic in real time and applies customizable, rule-based filtering to block malicious requests. BunkerWeb defends against common threats such as SQLi, XSS, CSRF, file inclusion, malicious bots and DDoS-style abuse while helping prevent data leaks. Key capabilities described by the project include real-time threat intelligence updates, intrusion detection, rate limiting, and a flexible rule engine that can be tailored to specific application needs. The solution emphasizes transparency and sovereignty through its open-source model, and benefits from community-driven development and support. BunkerWeb aims to be easy to integrate within existing infrastructures and offers documentation and a GitHub repository for implementation guidance. Suitable for teams that want full control over their security stack, the product is presented as a cost-effective option with both a freely available core and cloud/managed offerings referenced on the project site.
Capabilities
| Open-source WAF | |
| Reverse proxy deployment | |
| Customizable rule engine | |
| Real-time threat intelligence | |
| Intrusion Detection (IDS) | |
| Rate limiting | |
| Rule-based filtering | |
| Protection against SQLi | |
| Protection against XSS | |
| Protection against CSRF | |
| DDoS and malicious bot mitigation | |
| Easy integration and documentation | |
| Community support |
Integrations
BunkerWeb is designed to be deployed as a reverse proxy in front of web applications and APIs, integrating with existing infrastructure. The project documentation and GitHub repository provide guidance and community-contributed connectors to help integrate BunkerWeb into typical web stacks and deployment pipelines.
Reviews
No reviews yet.
Similar WAF tools
See allCheck Point WAF is a cloud-native Web, GenAI and API security solution that delivers AI-driven, preemptive protection against known and unknown threats without relying on signature updates. The platform combines…
Cloudbric WAF+ is a cloud-based, fully managed WAAP (Web Application and API Protection) service that combines logic-based detection with deep-learning AI to protect web applications and APIs. The service offers…
Link11’s Web Application Firewall (WAF) provides intelligent, real‑time protection for web applications by combining precise signature detection with heuristic analysis. Rather than relying solely on static IP blocking or signatures,…
Myra WAF is a cloud-based web application firewall that blocks malicious requests at the application layer before they reach your servers. Designed and operated in Germany, it protects web applications…