On December 8th 2020 FireEye shared details about a cyber attack it experienced to help to protect the community. These details include a prioritized list of CVEs that should be addressed to limit the effectiveness of Fireye’s Red Team tools. The threat research group examined the list and found that all of the web application CVEs are protected by Imperva WAF.
Imperva threat research group will continue to monitor any new development and update the WAF if necessary.
*On-premise WAF customers should reach out to Imperva support to manually activate a security policy