<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Government Applications Are Under Attack. Check Point WAF Is About to Change That! in WAF</title>
    <link>https://community.checkpoint.com/t5/WAF/Government-Applications-Are-Under-Attack-Check-Point-WAF-Is/m-p/280973#M429</link>
    <description>&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Check Point Is Expanding Both FedRAMP and GovRAMP Packages Soon To Include WAF&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;The federal, state, local government, and education sectors are under growing cyber pressure, and the attack surface is shifting to where they now serve citizens most. According to &lt;SPAN&gt;&lt;A href="https://www.checkpoint.com/security-report/" target="_blank" rel="noopener"&gt;Check Point's 2026 Cyber Security Report&lt;/A&gt;&lt;/SPAN&gt;, government organizations faced an average of &lt;STRONG&gt;2,680 cyber-attacks per organization each week in 2025,&lt;/STRONG&gt; a 17% increase from 2024, making government the &lt;STRONG&gt;second most targeted&lt;/STRONG&gt; sector worldwide. &lt;SPAN&gt;As&lt;/SPAN&gt; government organizations move services online, deploy citizen self-service portals, connect APIs, and integrate AI into mission-critical workflows, every new capability creates a new entry point. A successful attack doesn't just disrupt IT-it can interrupt essential services, expose sensitive citizen records, compromise internal secrets, and undermine public trust.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;The data reflects that reality. &lt;SPAN&gt;&lt;A href="https://www.verizon.com/business/resources/reports/2026-dbir-public-sector-snapshot.pdf" target="_blank" rel="noopener"&gt;Verizon's 2026 Data Breach Investigations Report&lt;/A&gt;&lt;/SPAN&gt; recorded &lt;STRONG&gt;2,410 confirmed data disclosure breaches, &lt;/STRONG&gt;with exploitation of vulnerabilities accounting for 40% of initial access, and personal data, internal data, and secrets among the most compromised. That makes runtime web application and API protection especially critical for government organizations running legacy systems, third-party applications, and public-facing services that cannot always be patched immediately.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Check Point has been addressing this risk inside government trust and compliance requirements since achieving &lt;SPAN&gt;&lt;A href="https://www.fedramp.gov/marketplace/products/FR2511048038/" target="_blank" rel="noopener"&gt;FedRAMP Certification&lt;/A&gt;&lt;/SPAN&gt; for its Infinity Platform for Government in 2025, followed by &lt;SPAN&gt;&lt;A href="https://govramp.org/product-list/" target="_blank" rel="noopener"&gt;GovRAMP Authorization&lt;/A&gt;&lt;/SPAN&gt; in April 2026, extending that commitment to state, local, tribal, and education organizations.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Now Check Point is taking the &lt;U&gt;next step by expanding both FedRAMP and GovRAMP packages soon to include &lt;STRONG&gt;Check Point WAF&lt;/STRONG&gt;&lt;/U&gt;, bringing prevention-first web application security, API protection, bot mitigation, DDoS defence and CDN-integrated delivery into the same government-certified platform.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Security Built for Modern Government Applications&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Government organizations no longer operate static websites. Today's public sector runs digital citizen portals, API-driven benefit and payment systems, cloud-native applications, and AI-enabled interfaces that connect identity, records, contractors, and partner organizations across the public sector. That interconnection makes the application layer more dynamic and more exposed.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Modern Web Application and API Protection (WAAP) must protect more than a web page or a single API endpoint. Government organizations need prevention-first protection across the full application path, including:&lt;/FONT&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Pre-emptively prevent&lt;/STRONG&gt; known, unknown, and zero-day web and API attacks before they reach the application&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;End-to-end API security&lt;/STRONG&gt; with automated discovery, schema validation and authentication enforcement&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Availability of critical services&lt;/STRONG&gt; with strong bot mitigation and DDoS protection against automated abuse and disruption&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Block GenAI application attacks&lt;/STRONG&gt; including prompt injection, data leakage and harmful content&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Simplify operations &lt;/STRONG&gt;with centralized management that reduces tool sprawl and complexity across the full application stack&lt;/FONT&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3" color="#808080"&gt;Check Point WAF brings all these capabilities into a single consolidated platform, purpose-built for the modern application of reality that government organizations face today. By adding it to the FedRAMP and GovRAMP certified packages, federal, state, local, tribal, and education organizations can now secure public-facing applications and APIs through the same government-certified platform they already trust with the prevention, visibility, and control needed to protect modern application environments without adding complexity or managing separate tools for every risk.&lt;/FONT&gt;&lt;/H2&gt;
&lt;H2&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Why This Matters Now&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H2&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;The public-sector application attack surface is expanding quickly as agencies modernize services, expose more APIs, and begin adopting AI-enabled workflows. At the same time, attackers are increasingly exploiting application weaknesses. Verizon’s 2026 Public Sector Snapshot found that vulnerability exploitation accounted for &lt;STRONG&gt;40% of initial access&lt;/STRONG&gt; in public-sector breaches, making runtime application protection especially important for systems that cannot always be patched immediately.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;This is why expanding Check Point’s FedRAMP and GovRAMP certification packages to include Check Point WAF matters. It is not just another security product. It is a way to help public-sector organizations protect the applications, APIs, and digital services that citizens, employees, contractors, and partner agencies depend on every day.&lt;/FONT&gt;&lt;/P&gt;
&lt;H2&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Ready to see it in action?&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H2&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Join our upcoming webinar on &lt;STRONG&gt;Securing Government Applications in the AI Era&lt;/STRONG&gt; to see the Check Point Infinity Platform for Government in action including email security, ThreatCloud AI, centralized management, and the expansion to include Check Point WAF for web applications, API, bot, DDoS, and GenAI application security.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;A href="https://carahevents.carahsoft.com/Event/Register/795654-checkpoint" target="_blank" rel="noopener"&gt;Register for Live Webinar&lt;/A&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Check Point WAF Webinar_27_Banner-Neutral.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/35030i3F6A88A954BAE7FA/image-size/large?v=v2&amp;amp;px=999" role="button" title="Check Point WAF Webinar_27_Banner-Neutral.jpg" alt="Check Point WAF Webinar_27_Banner-Neutral.jpg" /&gt;&lt;/span&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 11 Aug 2026 16:02:34 GMT</pubDate>
    <dc:creator>Vani</dc:creator>
    <dc:date>2026-08-11T16:02:34Z</dc:date>
    <item>
      <title>Government Applications Are Under Attack. Check Point WAF Is About to Change That!</title>
      <link>https://community.checkpoint.com/t5/WAF/Government-Applications-Are-Under-Attack-Check-Point-WAF-Is/m-p/280973#M429</link>
      <description>&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Check Point Is Expanding Both FedRAMP and GovRAMP Packages Soon To Include WAF&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;The federal, state, local government, and education sectors are under growing cyber pressure, and the attack surface is shifting to where they now serve citizens most. According to &lt;SPAN&gt;&lt;A href="https://www.checkpoint.com/security-report/" target="_blank" rel="noopener"&gt;Check Point's 2026 Cyber Security Report&lt;/A&gt;&lt;/SPAN&gt;, government organizations faced an average of &lt;STRONG&gt;2,680 cyber-attacks per organization each week in 2025,&lt;/STRONG&gt; a 17% increase from 2024, making government the &lt;STRONG&gt;second most targeted&lt;/STRONG&gt; sector worldwide. &lt;SPAN&gt;As&lt;/SPAN&gt; government organizations move services online, deploy citizen self-service portals, connect APIs, and integrate AI into mission-critical workflows, every new capability creates a new entry point. A successful attack doesn't just disrupt IT-it can interrupt essential services, expose sensitive citizen records, compromise internal secrets, and undermine public trust.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;The data reflects that reality. &lt;SPAN&gt;&lt;A href="https://www.verizon.com/business/resources/reports/2026-dbir-public-sector-snapshot.pdf" target="_blank" rel="noopener"&gt;Verizon's 2026 Data Breach Investigations Report&lt;/A&gt;&lt;/SPAN&gt; recorded &lt;STRONG&gt;2,410 confirmed data disclosure breaches, &lt;/STRONG&gt;with exploitation of vulnerabilities accounting for 40% of initial access, and personal data, internal data, and secrets among the most compromised. That makes runtime web application and API protection especially critical for government organizations running legacy systems, third-party applications, and public-facing services that cannot always be patched immediately.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Check Point has been addressing this risk inside government trust and compliance requirements since achieving &lt;SPAN&gt;&lt;A href="https://www.fedramp.gov/marketplace/products/FR2511048038/" target="_blank" rel="noopener"&gt;FedRAMP Certification&lt;/A&gt;&lt;/SPAN&gt; for its Infinity Platform for Government in 2025, followed by &lt;SPAN&gt;&lt;A href="https://govramp.org/product-list/" target="_blank" rel="noopener"&gt;GovRAMP Authorization&lt;/A&gt;&lt;/SPAN&gt; in April 2026, extending that commitment to state, local, tribal, and education organizations.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Now Check Point is taking the &lt;U&gt;next step by expanding both FedRAMP and GovRAMP packages soon to include &lt;STRONG&gt;Check Point WAF&lt;/STRONG&gt;&lt;/U&gt;, bringing prevention-first web application security, API protection, bot mitigation, DDoS defence and CDN-integrated delivery into the same government-certified platform.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Security Built for Modern Government Applications&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Government organizations no longer operate static websites. Today's public sector runs digital citizen portals, API-driven benefit and payment systems, cloud-native applications, and AI-enabled interfaces that connect identity, records, contractors, and partner organizations across the public sector. That interconnection makes the application layer more dynamic and more exposed.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Modern Web Application and API Protection (WAAP) must protect more than a web page or a single API endpoint. Government organizations need prevention-first protection across the full application path, including:&lt;/FONT&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Pre-emptively prevent&lt;/STRONG&gt; known, unknown, and zero-day web and API attacks before they reach the application&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;End-to-end API security&lt;/STRONG&gt; with automated discovery, schema validation and authentication enforcement&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Availability of critical services&lt;/STRONG&gt; with strong bot mitigation and DDoS protection against automated abuse and disruption&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Block GenAI application attacks&lt;/STRONG&gt; including prompt injection, data leakage and harmful content&lt;/FONT&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;STRONG&gt;Simplify operations &lt;/STRONG&gt;with centralized management that reduces tool sprawl and complexity across the full application stack&lt;/FONT&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3" color="#808080"&gt;Check Point WAF brings all these capabilities into a single consolidated platform, purpose-built for the modern application of reality that government organizations face today. By adding it to the FedRAMP and GovRAMP certified packages, federal, state, local, tribal, and education organizations can now secure public-facing applications and APIs through the same government-certified platform they already trust with the prevention, visibility, and control needed to protect modern application environments without adding complexity or managing separate tools for every risk.&lt;/FONT&gt;&lt;/H2&gt;
&lt;H2&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Why This Matters Now&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H2&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;The public-sector application attack surface is expanding quickly as agencies modernize services, expose more APIs, and begin adopting AI-enabled workflows. At the same time, attackers are increasingly exploiting application weaknesses. Verizon’s 2026 Public Sector Snapshot found that vulnerability exploitation accounted for &lt;STRONG&gt;40% of initial access&lt;/STRONG&gt; in public-sector breaches, making runtime application protection especially important for systems that cannot always be patched immediately.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;This is why expanding Check Point’s FedRAMP and GovRAMP certification packages to include Check Point WAF matters. It is not just another security product. It is a way to help public-sector organizations protect the applications, APIs, and digital services that citizens, employees, contractors, and partner agencies depend on every day.&lt;/FONT&gt;&lt;/P&gt;
&lt;H2&gt;&lt;FONT face="arial,helvetica,sans-serif" size="4" color="#808080"&gt;&lt;STRONG&gt;Ready to see it in action?&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H2&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;Join our upcoming webinar on &lt;STRONG&gt;Securing Government Applications in the AI Era&lt;/STRONG&gt; to see the Check Point Infinity Platform for Government in action including email security, ThreatCloud AI, centralized management, and the expansion to include Check Point WAF for web applications, API, bot, DDoS, and GenAI application security.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;A href="https://carahevents.carahsoft.com/Event/Register/795654-checkpoint" target="_blank" rel="noopener"&gt;Register for Live Webinar&lt;/A&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Check Point WAF Webinar_27_Banner-Neutral.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/35030i3F6A88A954BAE7FA/image-size/large?v=v2&amp;amp;px=999" role="button" title="Check Point WAF Webinar_27_Banner-Neutral.jpg" alt="Check Point WAF Webinar_27_Banner-Neutral.jpg" /&gt;&lt;/span&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Aug 2026 16:02:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/WAF/Government-Applications-Are-Under-Attack-Check-Point-WAF-Is/m-p/280973#M429</guid>
      <dc:creator>Vani</dc:creator>
      <dc:date>2026-08-11T16:02:34Z</dc:date>
    </item>
  </channel>
</rss>

