我们利用人工智能进行网站翻译,虽然我们力求准确,但不一定总是 100%精确。感谢您的理解。

MetaDefender® Platform Guardrails for LLMs

Secure files, content, and data before they reach your LLM. Stop file level threats, reduce RAG poisoning risk, enforce one-way transfer, and protect your AI investment.

  • Prevention First Security
  • 深度文件消毒
  • Hardware Enforced Isolation

OPSWAT 得到以下机构的信任

0
全球客户
0
Technology Partners
0
端点认证成员

The New AI Attack Surface

File-Borne Malware in AI Pipelines

Malicious payloads hide inside common business files like PDFs, Office documents, and archives. Typical AI guardrails focused on text do not neutralize embedded file-level risks.

Knowledge Manipulation Through Untrusted Documents

Malicious or deceptive documents can enter retrieval pipelines, get indexed, and silently influence model outputs over time, turning the knowledge base into an attack vector.

Sensitive Data Exposure to AI Systems

Users upload financial data, source code, credentials, and customer records into AI workflows. Once exposed to external models or poorly governed services, organizations face loss of data control and potential regulatory liability.

Embedded Prompt Injection Inside Files

Instructions hidden inside uploaded documents, rather than typed directly into chat, can manipulate model behavior and downstream tools when retrieved through RAG or agent workflows.

Unknown and Zero-Day File-Based Threats

AI workflows encourage massive content ingestion, increasing exposure to previously unseen threats. Detection alone is not enough. Prevention must occur before content enters the pipeline, or organizations risk regulatory penalties and reputational harm from undetected breaches.

  • File Threats

    File-Borne Malware in AI Pipelines

    Malicious payloads hide inside common business files like PDFs, Office documents, and archives. Typical AI guardrails focused on text do not neutralize embedded file-level risks.

  • RAG Poisoning

    Knowledge Manipulation Through Untrusted Documents

    Malicious or deceptive documents can enter retrieval pipelines, get indexed, and silently influence model outputs over time, turning the knowledge base into an attack vector.

  • 数据泄漏

    Sensitive Data Exposure to AI Systems

    Users upload financial data, source code, credentials, and customer records into AI workflows. Once exposed to external models or poorly governed services, organizations face loss of data control and potential regulatory liability.

  • Prompt Injection

    Embedded Prompt Injection Inside Files

    Instructions hidden inside uploaded documents, rather than typed directly into chat, can manipulate model behavior and downstream tools when retrieved through RAG or agent workflows.

  • Zero-Day Risks

    Unknown and Zero-Day File-Based Threats

    AI workflows encourage massive content ingestion, increasing exposure to previously unseen threats. Detection alone is not enough. Prevention must occur before content enters the pipeline, or organizations risk regulatory penalties and reputational harm from undetected breaches.

Prevention First Security for Enterprise AI

MetaDefender Core applies a prevention-first model to AI content flows and secures what enters the model, what gets indexed, and what crosses trust boundaries.

File Sanitization and Threat Removal

Strips embedded objects and out-of-policy content, and regenerates safe, usable files. Neutralizes both known and unknown malware without relying on signature-based detection.

Secure RAG and Knowledge Pipelines

Ensures only trusted, policy-approved content is indexed into retrieval systems and vector stores, reducing RAG poisoning risk and long-lived knowledge manipulation.

Sensitive Data Control

Enforces what content is allowed into public LLMs, internal copilots, and external AI APIs, scanning for PII, PHI, credentials, and financial data using OCR-powered hidden text detection.

Policy-Driven Enforcement and Quarantine

Organizations define what content is permitted, what must be sanitized, and what is blocked or quarantined, creating a true control layer for enterprise AI content handling.

Hardware-Enforced One-Way Transfer (Optical Diode)

For high-assurance environments, MetaDefender Optical Diode™ provides a hardware-enforced, unidirectional data path with no return channel, preventing data exfiltration even if downstream systems are compromised.

特点

预测性艾琳人工智能

专为预测而生,
专为速度而设计

  • 深度文件结构分析
  • 基于零日威胁训练的机器学习模型
MetascanMultiscanning

多个引擎胜过一个引擎

  • 检测近 100% 的恶意软件
  • 使用 30 多种领先的防病毒引擎同时扫描
99.2% 检测
配备 Max Engines 套件
深度CDR™技术

阻止他人忽视的威胁

  • 支持 200 多种文件格式
  • 递归消毒多级嵌套档案
  • 重新生成安全可用的文件
100% 保护得分
来自 SE 实验室
文件类型检测

针对安全关键型工作流程的真正文件类型检测

  • 人工智能增强型
  • 几毫秒内即可检测到伪造的文件类型
  • 不影响性能的内联执行
99%+ 准确率
关于伪装的扩展
OPSWAT 技术形象
主动式 DLP(Proactive DLP)

防止敏感数据丢失

  • 利用人工智能驱动的模型将非结构化文本定位并分类到预定义的类别中
  • 自动对125多种文件类型中的已识别敏感信息(如个人身份信息、个人健康信息、支付卡信息)进行脱敏处理
  • 支持图像中的光学字符识别 (OCR)
125+
支持的文件类型
OCR
图像到文本识别
Adaptive Sandbox

利用基于仿真的高级沙箱技术检测规避性恶意软件

  • 高速分析文件
  • 反规避沙箱引擎提取 IOC
  • 识别零时差威胁
  • 通过API 或本地集成实现深度恶意软件分类
资源效率提高 100 倍
与其他沙盒相比
< 1 小时设置
我们正在努力帮助您免受恶意软件的侵害
威胁情报

利用实时Threat Intelligence加强检测

  • 在 50B 以上的人工制品中关联全球 IOC、IP、URL 和文件声誉
  • 更快地阻止新出现的威胁
  • 丰富下游分析
更快
缩短整体分诊时间
透明
以更清晰的视野守护关键环境
OPSWAT 技术形象
SBOM软件 物料清单)

Secure 软件 Supply ChainSecure

  • 管理与开放源码软件 (OSS)、第三方组件和依赖性相关的风险
  • 确保代码库的透明度、安全性和合规性
18,400
2021 年在生产代码中发现漏洞
13.62%
漏洞基于文件
File-Based Vulnerability Assessment

在安装之前检测应用程序漏洞

  • 安装前检查软件是否存在已知漏洞
  • 在设备静止时扫描系统,查找已知漏洞
  • 快速检查运行中的应用程序及其库是否存在漏洞
3M+
从有源设备收集的数据点
30K+
附带严重性信息的相关 CVE
原产国

即时检测文件的地理来源

  • 检测上传文件的地理来源,包括 PE、MSI 和 SFX(自解压压缩包)
  • 自动分析数字指纹和元数据,识别受限地点和供应商
避免合规罚款
追踪文件和可移动媒体的来源
档案提取

递归提取并分析深度嵌套的归档文件

  • 可配置深度的递归提取 
  • 所有引擎的单次提取
  • 归档文件炸弹的检测与遏制
  • 支持加密和密码保护的压缩包
160多种存档格式
支持
OPSWAT 技术形象
  • 预测性艾琳人工智能

    专为预测而生,
    专为速度而设计

    • 深度文件结构分析
    • 基于零日威胁训练的机器学习模型
  • MetascanMultiscanning

    多个引擎胜过一个引擎

    • 检测近 100% 的恶意软件
    • 使用 30 多种领先的防病毒引擎同时扫描
    99.2% 检测
    配备 Max Engines 套件
  • 深度CDR™技术

    阻止他人忽视的威胁

    • 支持 [supportedFileTypeCount] 文件格式
    • 递归消毒多级嵌套档案
    • 重新生成安全可用的文件
    100% 保护得分
    来自 SE 实验室
  • OPSWAT 技术形象
    文件类型检测

    针对安全关键型工作流程的真正文件类型检测

    • 人工智能增强型
    • 几毫秒内即可检测到伪造的文件类型
    • 不影响性能的内联执行
    99%+ 准确率
    关于伪装的扩展
  • 主动式 DLP(Proactive DLP)

    防止敏感数据丢失

    • 利用人工智能驱动的模型将非结构化文本定位并分类到预定义的类别中
    • 自动对125多种文件类型中的已识别敏感信息(如个人身份信息、个人健康信息、支付卡信息)进行脱敏处理
    • 支持图像中的光学字符识别 (OCR)
    125+
    支持的文件类型
    OCR
    图像到文本识别
  • Adaptive Sandbox

    利用基于仿真的高级沙箱技术检测规避性恶意软件

    • 高速分析文件
    • 反规避沙箱引擎提取 IOC
    • 识别零时差威胁
    • 通过API 或本地集成实现深度恶意软件分类
    资源效率提高 100 倍
    与其他沙盒相比
    < 1 小时设置
    我们正在努力帮助您免受恶意软件的侵害
  • OPSWAT 技术形象
    威胁情报

    利用实时Threat Intelligence加强检测

    • 在 50B 以上的人工制品中关联全球 IOC、IP、URL 和文件声誉
    • 更快地阻止新出现的威胁
    • 丰富下游分析
    更快
    缩短整体分诊时间
    透明
    以更清晰的视野守护关键环境
  • SBOM软件 物料清单)

    Secure 软件 Supply ChainSecure

    • 管理与开放源码软件 (OSS)、第三方组件和依赖性相关的风险
    • 确保代码库的透明度、安全性和合规性
    18,400
    2021 年在生产代码中发现漏洞
    13.62%
    漏洞基于文件
  • File-Based Vulnerability Assessment

    在安装之前检测应用程序漏洞

    • 安装前检查软件是否存在已知漏洞
    • 在设备静止时扫描系统,查找已知漏洞
    • 快速检查运行中的应用程序及其库是否存在漏洞
    3M+
    从有源设备收集的数据点
    30K+
    附带严重性信息的相关 CVE
  • 原产国

    即时检测文件的地理来源

    • 检测上传文件的地理来源,包括 PE、MSI 和 SFX(自解压压缩包)
    • 自动分析数字指纹和元数据,识别受限地点和供应商
    避免合规罚款
    追踪文件和可移动媒体的来源
  • OPSWAT 技术形象
    档案提取

    递归提取并分析深度嵌套的归档文件

    • 可配置深度的递归提取 
    • 所有引擎的单次提取
    • 归档文件炸弹的检测与遏制
    • 支持加密和密码保护的压缩包
    160多种存档格式
    支持

部署选项

Cloud Native

Deploy MetaDefender Core in your cloud environment for scalable, on-demand AI pipeline protection.
Integrates with cloud-based AI workflows via REST API, supporting elastic scaling for variable file ingestion volumes across LLM applications and RAG pipelines.

企业内部

Full on-premises deployment for organizations requiring complete control over data and infrastructure.

Air-Gapped / High-Assurance

Air-gapped deployment with MetaDefender Optical Diode for hardware-enforced unidirectional data transfer.

集成

MetaDefender Core integrates with AI data ingestion flows via REST API or ICAP-based connections.

It scans at every stage, from file upload portals and RAG ingestion pipelines to CI/CD workflows used in AI model and chatbot development. The platform connects to existing enterprise AI environments, including cloud platforms such as AWS and Azure, without requiring changes to application logic or model infrastructure.

Where MetaDefender Core
Fits in the AI Stack

MetaDefender Core acts as the AI security gateway, inspecting and sanitizing content before file upload, before RAG ingestion, before tool execution, and before data crosses a trust boundary.

金融服务

Protect AI Copilots Handling Sensitive Financial Data

Financial institutions using LLM-powered copilots for research, compliance, and customer service need to prevent sensitive data leakage and ensure that uploaded documents are free of embedded threats. Proactive DLP and Deep CDR™ Technology enforce content-level controls before files reach the model.

政府

High-Assurance AI with Hardware-Enforced Isolation

Government and defense agencies require the highest levels of data assurance. MetaDefender Core sanitizes all content entering classified or sensitive AI environments, and MetaDefender Optical Diode ensures no data can flow back through the ingestion path — meeting strict cross-domain transfer requirements.

制造业

Secure AI-driven Analytics in Operational Environments

Manufacturers using AI for predictive maintenance, quality control, and supply chain optimization must protect against file-borne threats entering through data ingestion. MetaDefender Core provides policy-driven enforcement at every ingestion point, with air-gapped deployment options for isolated OT networks.

能源与公用事业

Secure AI Deployments Across OT and IT Environments

Energy and utilities organizations deploying AI for operational intelligence need to ensure that untrusted files and data feeds cannot introduce malware or manipulate models connected to operational technology networks. MetaDefender Optical Diode enforces one-way data transfer between IT and OT zones.

  • 金融服务

    金融服务

    Protect AI Copilots Handling Sensitive Financial Data

    Financial institutions using LLM-powered copilots for research, compliance, and customer service need to prevent sensitive data leakage and ensure that uploaded documents are free of embedded threats. Proactive DLP and Deep CDR™ Technology enforce content-level controls before files reach the model.

  • 政府

    政府

    High-Assurance AI with Hardware-Enforced Isolation

    Government and defense agencies require the highest levels of data assurance. MetaDefender Core sanitizes all content entering classified or sensitive AI environments, and MetaDefender Optical Diode ensures no data can flow back through the ingestion path — meeting strict cross-domain transfer requirements.

  • 制造业

    制造业

    Secure AI-driven Analytics in Operational Environments

    Manufacturers using AI for predictive maintenance, quality control, and supply chain optimization must protect against file-borne threats entering through data ingestion. MetaDefender Core provides policy-driven enforcement at every ingestion point, with air-gapped deployment options for isolated OT networks.

  • 能源与公用事业

    能源与公用事业

    Secure AI Deployments Across OT and IT Environments

    Energy and utilities organizations deploying AI for operational intelligence need to ensure that untrusted files and data feeds cannot introduce malware or manipulate models connected to operational technology networks. MetaDefender Optical Diode enforces one-way data transfer between IT and OT zones.

Built for Global AI and
Data Protection Mandates

MetaDefender Core helps organizations align with the EU AI Act, Cyber Resilience Act, GDPR, HIPAA, and emerging AI regulatory frameworks across Asia-Pacific and North America. It enables secure input validation, full data processing traceability, and proactive risk mitigation — supporting requirements for audit trails, data provenance, and governance by design.

常见问题解答

MetaDefender Core supports over 200 file types including PDFs, Office documents, archives, images, media files, source code, and executables, covering the full range of content commonly ingested by enterprise AI systems.

Deep CDR™ Technology does not rely on detecting known threats. It strips all active content from files and reconstructs clean, usable versions, neutralizing both known and unknown malware, including zero-day threats.

Yes. MetaDefender Core inspects and sanitizes files before they are indexed into vector stores or retrieval systems, reducing the risk of RAG poisoning and long-term knowledge manipulation.

The MetaDefender Optical Diode is a hardware-enforced, one-way data transfer device. It physically prevents data from flowing back into a protected environment — required for defense, critical infrastructure, and any deployment where software-only controls are insufficient.

MetaDefender Core integrates via REST API or ICAP at any data ingestion point, including file upload portals, RAG pipelines, CI/CD workflows, and AI training data feeds. No changes to application logic or model infrastructure are required.

Yes. MetaDefender Core provides secure input validation, complete audit trails, file hashing, and logging that support compliance with the EU AI Act, Cyber Resilience Act, GDPR, HIPAA, and other emerging AI regulatory frameworks.

Yes. Proactive DLP scans for PII, PHI, financial data, and credentials. It also uses OCR to detect and redact hidden text within images and visual content that could bypass human review.

MetaDefender Core deploys cloud-native, on-premises, or in air-gapped architectures. For high-assurance environments, it pairs with the Optical Diode for hardware-enforced unidirectional transfer.

Secure Your AI Workflows
Before Risk Reaches the Model

请填写表格,我们将在 1 个工作日内与您联系。
全球2,000+企业信赖之选。