News
- Press Release
Cyber Security Cloud's WAF automation service "WafCharm" now offers "WAF log storage function" and "Log Intelligence option"
Cyber Security Cloud, Inc., Inc. (Headquarters: Shinagawa-ku, Tokyo; Representative Director, President and CEO: Toshihiro Koike; hereinafter referred to as "the Company"), a global security manufacturer, has begun offering a "WAF Log Storage Feature" for its WAF automation service "WafCharm," which allows for flexible configuration of WAF log retention periods, and a "Log Intelligence Option" that classifies and identifies access based on use cases, making it easy to identify suspicious access.
■ Development background
In recent years, access to web applications has become more diverse, making it increasingly difficult to distinguish between attacks and legitimate access.While defending against attacks with a Web Application Firewall (WAF), it is important to investigate and analyze WAF logs in order to check for unauthorized access that has slipped through the WAF and for legitimate access that has been over-detected or falsely detected.
The WAF automation service "WafCharm" is equipped with a dashboard analysis function that makes it easy to dig deep into and analyze WAF logs, but there was a limit to the number of logs that could be stored, which made it difficult to analyze long-term trends or track intermittent attacks.
Furthermore, when it comes to identifying malicious machine-generated access that places a load on web applications, there remain issues such as "it is difficult to see trends in suspicious access" and "it is difficult to distinguish between normal bot access and malicious bot access."
Against this background, we have come to offer the "WAF Log Storage Function," which allows you to flexibly set the storage period for WAF logs, and the "Log Intelligence Option," which classifies and distinguishes access according to use cases, making it easy to identify suspicious access.
■About the "WAF log storage function" (※)
The "WAF log storage function" allows you to flexibly set the storage period for WAF logs.
Previously, WafCharm could only store a maximum of 1 million logs. As a result, there was a concern that during periods of concentrated access, past WAF logs would be overwritten without the user realizing it, making them impossible to view.
In response to such requests from customers, we have now added a new "WAF log storage function" as a standard feature.
The "WAF log storage function" allows users to preset the number of days for which WAF logs are to be saved from the management screen according to their company's security policies and operational needs, and allows users to continuously view and check logs for the set number of days on the management screen.In addition, by extending the period for which past logs can be reviewed when an incident occurs, it becomes easier to secure the data necessary to investigate the cause and consider measures to prevent recurrence.
With this release, a WAF log storage fee has been added to the monthly fee for WafCharm. The plan fee includes 1 million WAF log storage entries, and if you exceed that number, you will be charged as you go.

"WafCharm" service site: https://www.wafcharm.com/jp/
■About the "Log Intelligence Option" (※)
The "Log Intelligence Option" is a new option for WafCharm that classifies and distinguishes access according to use cases, making it easy to identify suspicious access.
In the past, identifying malicious mechanical access required advanced expertise and knowledge in security, but by utilizing the "Log Intelligence Option," it becomes possible to easily identify malicious bots that are difficult to distinguish from legitimate users or benign bots, as well as mechanical access used in DDoS attacks.
By simply selecting a predefined use case, you can classify access by characteristics, allowing you to identify suspicious mechanical access with just a few clicks, even without specialized knowledge of security or AWS analysis services such as Amazon Athena. In addition, WafCharm support will create and customize the rules required to block identified mechanical access, reducing the burden of dealing with the issue.
Furthermore, by using it in combination with the "WAF log storage function," it becomes possible to analyze WAF logs over a longer period of time, making it easier to identify the causes of intermittent attacks or sudden increases in access and take measures to address them.

For more information about the "Log Intelligence Option," please see here:https://www.wafcharm.com/jp/functions/#dashboard-3
*The "WAF Log Storage Function" and "Log Intelligence Option" are compatible with the AWS Business and Enterprise plans. As of December 10, 2025, the "WAF Log Storage Function" and "Log Intelligence Option" will only be available through direct sales.
■About the WAF automated operation service "WafCharm "
The WAF automation service "WafCharm" is a service that can automatically operate WAFs provided on public clouds. It is compatible with AWS, Azure, and Google Cloud.
The greatest benefit of WafCharm is that it automates the complicated yet important work of WAF operation. With a wide range of functions, including automatic rule application and automatic IP block list addition, there is no need to manually create and update WAF rules or add IP block lists; WafCharm can handle the work for you. This significantly reduces the time and cost required for WAF operation.
In addition, the dashboard analysis function allows anyone to intuitively understand the threat situation and the defensive effectiveness of the WAF, making it possible to visualize and improve the security level of the entire organization, even without security expertise or advanced log analysis skills.
Furthermore, Japanese technical support is included, so you can use it with confidence even in the event of false positives or any other problems that may occur.
By utilizing WafCharm, you can strengthen the security of your cloud environment while minimizing the workload involved in operating a public cloud WAF with limited resources, without the need for a dedicated security engineer.
■About Cyber Security Cloud, Inc.
Address: 13th Floor, JR Tokyu Meguro Building, 3-1-1 Kami-Osaki, Shinagawa-ku, Tokyo
Representative: Representative Director, President and CEO Toshihiro Koike
Established: August 2010
URL: https://www.cscloud.co.jp/
With the mission of "creating a safe and secure cyberspace for people all over the world," we are a Japanese security manufacturer that provides web application security services utilizing world-leading cyber threat intelligence, as well as vulnerability information collection and management tools and fully managed security services for cloud environments. As one of the global companies in cybersecurity, we will contribute to solving social issues related to cybersecurity and providing added value to society.