我們利用人工智慧進行網站翻譯,雖然我們力求準確性,但它們可能並不總是 100% 精確。感謝您的理解。

MetaDefender® Platform Guardrails for LLMs

Secure files, content, and data before they reach your LLM. Stop file level threats, reduce RAG poisoning risk, enforce one-way transfer, and protect your AI investment.

  • Prevention First Security
  • 深層檔案淨化
  • Hardware Enforced Isolation

OPSWAT 獲得以下機構的信賴

0
全球客戶
0
技術合作夥伴
0
端點認證成員

The New AI Attack Surface

File-Borne Malware in AI Pipelines

Malicious payloads hide inside common business files like PDFs, Office documents, and archives. Typical AI guardrails focused on text do not neutralize embedded file-level risks.

Knowledge Manipulation Through Untrusted Documents

Malicious or deceptive documents can enter retrieval pipelines, get indexed, and silently influence model outputs over time, turning the knowledge base into an attack vector.

Sensitive Data Exposure to AI Systems

Users upload financial data, source code, credentials, and customer records into AI workflows. Once exposed to external models or poorly governed services, organizations face loss of data control and potential regulatory liability.

Embedded Prompt Injection Inside Files

Instructions hidden inside uploaded documents, rather than typed directly into chat, can manipulate model behavior and downstream tools when retrieved through RAG or agent workflows.

Unknown and Zero-Day File-Based Threats

AI workflows encourage massive content ingestion, increasing exposure to previously unseen threats. Detection alone is not enough. Prevention must occur before content enters the pipeline, or organizations risk regulatory penalties and reputational harm from undetected breaches.

  • File Threats

    File-Borne Malware in AI Pipelines

    Malicious payloads hide inside common business files like PDFs, Office documents, and archives. Typical AI guardrails focused on text do not neutralize embedded file-level risks.

  • RAG Poisoning

    Knowledge Manipulation Through Untrusted Documents

    Malicious or deceptive documents can enter retrieval pipelines, get indexed, and silently influence model outputs over time, turning the knowledge base into an attack vector.

  • 資料外洩

    Sensitive Data Exposure to AI Systems

    Users upload financial data, source code, credentials, and customer records into AI workflows. Once exposed to external models or poorly governed services, organizations face loss of data control and potential regulatory liability.

  • Prompt Injection

    Embedded Prompt Injection Inside Files

    Instructions hidden inside uploaded documents, rather than typed directly into chat, can manipulate model behavior and downstream tools when retrieved through RAG or agent workflows.

  • Zero-Day Risks

    Unknown and Zero-Day File-Based Threats

    AI workflows encourage massive content ingestion, increasing exposure to previously unseen threats. Detection alone is not enough. Prevention must occur before content enters the pipeline, or organizations risk regulatory penalties and reputational harm from undetected breaches.

Prevention First Security for Enterprise AI

MetaDefender Core applies a prevention-first model to AI content flows and secures what enters the model, what gets indexed, and what crosses trust boundaries.

File Sanitization and Threat Removal

Strips embedded objects and out-of-policy content, and regenerates safe, usable files. Neutralizes both known and unknown malware without relying on signature-based detection.

Secure RAG and Knowledge Pipelines

Ensures only trusted, policy-approved content is indexed into retrieval systems and vector stores, reducing RAG poisoning risk and long-lived knowledge manipulation.

Sensitive Data Control

Enforces what content is allowed into public LLMs, internal copilots, and external AI APIs, scanning for PII, PHI, credentials, and financial data using OCR-powered hidden text detection.

Policy-Driven Enforcement and Quarantine

Organizations define what content is permitted, what must be sanitized, and what is blocked or quarantined, creating a true control layer for enterprise AI content handling.

Hardware-Enforced One-Way Transfer (Optical Diode)

For high-assurance environments, MetaDefender Optical Diode™ provides a hardware-enforced, unidirectional data path with no return channel, preventing data exfiltration even if downstream systems are compromised.

特點

預測性 Alin AI

專為預測而生,
專為速度而設計

  • 深入的檔案結構分析
  • 針對零日威脅訓練的機器學習模型
MetascanMultiscanning

多引擎比一個引擎好

  • 檢測近 100% 的惡意軟體
  • 與 30+ 知名的 AV 引擎同時掃描
99.2% 檢測率
配備 Max Engines 套件
深度CDR™技術

阻止其他人錯過的威脅

  • 支援 200+ 種檔案格式
  • 遞迴地清理多層存檔嵌套
  • 重新生成安全且可用的檔案
100% 保護評分
來自SE Labs
檔案類型偵測

適用於安全關鍵工作流程的真正檔案類型偵測

  • AI 增強型
  • 能在數毫秒內偵測到偽造的檔案類型
  • 不影響效能的內嵌執行
99%+ 準確度
關於偽裝擴展
OPSWAT Technologies 圖像
主動式 DLP(Proactive DLP)

防止敏感資料丟失

  • 利用 AI 驅動的模型將非結構化文本定位並分類為預定義的類別
  • 自動對 125 種以上的檔案類型中已識別的敏感資訊(如個人身份資訊、個人健康資訊、支付卡資訊)進行遮蔽處理
  • 支援影像中的光學字元識別 (OCR)
125+
支援的檔案類型
OCR
圖像到文字識別
Adaptive Sandbox 自適應性沙箱

利用先進的模擬沙箱偵測惡意軟體

  • 高速分析檔案
  • 反避難沙箱引擎擷取 IOC
  • 識別零時差威脅
  • 透過API 或本機整合啟用深度惡意軟體分類
資源效率提高 100 倍
比其他沙箱
< 1hr setup
我們正在努力幫助保護您免受惡意軟體的侵害
威脅情資
蒐集威脅情資

利用即時Threat Intelligence增強偵測能力

  • 關聯全球 50B+ 工件的 IOC、IP、URL 和檔案信譽
  • 更快阻止新興威脅
  • 豐富下游分析
更快
縮短整體分流時間
透明
以更清晰的視野守護關鍵環境
OPSWAT Technologies 圖像
SBOM軟體物料清單)

保護 您的Software Supply Chain

  • 管理與開源軟體 (OSS)、第三方元件和依賴項相關的風險
  • 確保代碼庫的透明度、安全性和合規性
18,400
2021 年在生產代碼中發現的漏洞
13.62%
漏洞是檔案型案的
檔案型的漏洞評估 (File-Based Vulnerability Assessment)

在安裝應用程式漏洞之前檢測它們

  • 安裝前檢查軟體是否存在已知漏洞
  • 在設備處於靜止狀態時掃描系統以查找已知漏洞
  • 快速檢查正在運行的應用程式及其庫是否存在漏洞
3M+
從活動設備蒐集的資料點
30K+
具有嚴重性訊息的關聯 CVE
原產地

啟用對檔案原產地來源的即時檢測

  • 檢測上傳檔案的地理來源,包括PE、MSI和 SFX(自解壓存檔)
  • 自動分析數位指紋和元資料,以識別受限制的位置和供應商
避免合規罰款
追蹤檔案和可攜式多媒體的來源
檔案解壓縮

遞迴提取並分析深度嵌套的壓縮檔

  • 可設定深度的遞迴提取 
  • 所有引擎皆採用單次提取
  • 檔案炸彈的偵測與遏制
  • 支援加密及密碼保護的壓縮檔
160 多種檔案格式
支援
OPSWAT Technologies 圖像
  • 預測性 Alin AI

    專為預測而生,
    專為速度而設計

    • 深入的檔案結構分析
    • 針對零日威脅訓練的機器學習模型
  • MetascanMultiscanning

    多引擎比一個引擎好

    • 檢測近 100% 的惡意軟體
    • 與 30+ 知名的 AV 引擎同時掃描
    99.2% 檢測率
    配備 Max Engines 套件
  • 深度CDR™技術

    阻止其他人錯過的威脅

    • 支援 [supportedFileTypeCount] 檔案格式
    • 遞迴地清理多層存檔嵌套
    • 重新生成安全且可用的檔案
    100% 保護評分
    來自SE Labs
  • OPSWAT Technologies 圖像
    檔案類型偵測

    適用於安全關鍵工作流程的真正檔案類型偵測

    • AI 增強型
    • 能在數毫秒內偵測到偽造的檔案類型
    • 不影響效能的內嵌執行
    99%+ 準確度
    關於偽裝擴展
  • 主動式 DLP(Proactive DLP)

    防止敏感資料丟失

    • 利用 AI 驅動的模型將非結構化文本定位並分類為預定義的類別
    • 自動對 125 種以上的檔案類型中已識別的敏感資訊(如個人身份資訊、個人健康資訊、支付卡資訊)進行遮蔽處理
    • 支援影像中的光學字元識別 (OCR)
    125+
    支援的檔案類型
    OCR
    圖像到文字識別
  • Adaptive Sandbox 自適應性沙箱

    利用先進的模擬沙箱偵測惡意軟體

    • 高速分析檔案
    • 反避難沙箱引擎擷取 IOC
    • 識別零時差威脅
    • 透過API 或本機整合啟用深度惡意軟體分類
    資源效率提高 100 倍
    比其他沙箱
    < 1hr setup
    我們正在努力幫助保護您免受惡意軟體的侵害
  • OPSWAT Technologies 圖像
    威脅情資
    蒐集威脅情資

    利用即時Threat Intelligence增強偵測能力

    • 關聯全球 50B+ 工件的 IOC、IP、URL 和檔案信譽
    • 更快阻止新興威脅
    • 豐富下游分析
    更快
    縮短整體分流時間
    透明
    以更清晰的視野守護關鍵環境
  • SBOM軟體物料清單)

    保護 您的Software Supply Chain

    • 管理與開源軟體 (OSS)、第三方元件和依賴項相關的風險
    • 確保代碼庫的透明度、安全性和合規性
    18,400
    2021 年在生產代碼中發現的漏洞
    13.62%
    漏洞是檔案型案的
  • 檔案型的漏洞評估 (File-Based Vulnerability Assessment)

    在安裝應用程式漏洞之前檢測它們

    • 安裝前檢查軟體是否存在已知漏洞
    • 在設備處於靜止狀態時掃描系統以查找已知漏洞
    • 快速檢查正在運行的應用程式及其庫是否存在漏洞
    3M+
    從活動設備蒐集的資料點
    30K+
    具有嚴重性訊息的關聯 CVE
  • 原產地

    啟用對檔案原產地來源的即時檢測

    • 檢測上傳檔案的地理來源,包括PE、MSI和 SFX(自解壓存檔)
    • 自動分析數位指紋和元資料,以識別受限制的位置和供應商
    避免合規罰款
    追蹤檔案和可攜式多媒體的來源
  • OPSWAT Technologies 圖像
    檔案解壓縮

    遞迴提取並分析深度嵌套的壓縮檔

    • 可設定深度的遞迴提取 
    • 所有引擎皆採用單次提取
    • 檔案炸彈的偵測與遏制
    • 支援加密及密碼保護的壓縮檔
    160 多種檔案格式
    支援

部署選項

Cloud Native

Deploy MetaDefender Core in your cloud environment for scalable, on-demand AI pipeline protection.
Integrates with cloud-based AI workflows via REST API, supporting elastic scaling for variable file ingestion volumes across LLM applications and RAG pipelines.

本地

Full on-premises deployment for organizations requiring complete control over data and infrastructure.

Air-Gapped / High-Assurance

Air-gapped deployment with MetaDefender Optical Diode for hardware-enforced unidirectional data transfer.

整合

MetaDefender Core integrates with AI data ingestion flows via REST API or ICAP-based connections.

It scans at every stage, from file upload portals and RAG ingestion pipelines to CI/CD workflows used in AI model and chatbot development. The platform connects to existing enterprise AI environments, including cloud platforms such as AWS and Azure, without requiring changes to application logic or model infrastructure.

Where MetaDefender Core
Fits in the AI Stack

MetaDefender Core acts as the AI security gateway, inspecting and sanitizing content before file upload, before RAG ingestion, before tool execution, and before data crosses a trust boundary.

金融服務

Protect AI Copilots Handling Sensitive Financial Data

Financial institutions using LLM-powered copilots for research, compliance, and customer service need to prevent sensitive data leakage and ensure that uploaded documents are free of embedded threats. Proactive DLP and Deep CDR™ Technology enforce content-level controls before files reach the model.

政府

High-Assurance AI with Hardware-Enforced Isolation

Government and defense agencies require the highest levels of data assurance. MetaDefender Core sanitizes all content entering classified or sensitive AI environments, and MetaDefender Optical Diode ensures no data can flow back through the ingestion path — meeting strict cross-domain transfer requirements.

製造業

Secure AI-driven Analytics in Operational Environments

Manufacturers using AI for predictive maintenance, quality control, and supply chain optimization must protect against file-borne threats entering through data ingestion. MetaDefender Core provides policy-driven enforcement at every ingestion point, with air-gapped deployment options for isolated OT networks.

能源與公用事業

Secure AI Deployments Across OT and IT Environments

Energy and utilities organizations deploying AI for operational intelligence need to ensure that untrusted files and data feeds cannot introduce malware or manipulate models connected to operational technology networks. MetaDefender Optical Diode enforces one-way data transfer between IT and OT zones.

  • 金融服務

    金融服務

    Protect AI Copilots Handling Sensitive Financial Data

    Financial institutions using LLM-powered copilots for research, compliance, and customer service need to prevent sensitive data leakage and ensure that uploaded documents are free of embedded threats. Proactive DLP and Deep CDR™ Technology enforce content-level controls before files reach the model.

  • 政府

    政府

    High-Assurance AI with Hardware-Enforced Isolation

    Government and defense agencies require the highest levels of data assurance. MetaDefender Core sanitizes all content entering classified or sensitive AI environments, and MetaDefender Optical Diode ensures no data can flow back through the ingestion path — meeting strict cross-domain transfer requirements.

  • 製造業

    製造業

    Secure AI-driven Analytics in Operational Environments

    Manufacturers using AI for predictive maintenance, quality control, and supply chain optimization must protect against file-borne threats entering through data ingestion. MetaDefender Core provides policy-driven enforcement at every ingestion point, with air-gapped deployment options for isolated OT networks.

  • 能源與公用事業

    能源與公用事業

    Secure AI Deployments Across OT and IT Environments

    Energy and utilities organizations deploying AI for operational intelligence need to ensure that untrusted files and data feeds cannot introduce malware or manipulate models connected to operational technology networks. MetaDefender Optical Diode enforces one-way data transfer between IT and OT zones.

Built for Global AI and
Data Protection Mandates

MetaDefender Core helps organizations align with the EU AI Act, Cyber Resilience Act, GDPR, HIPAA, and emerging AI regulatory frameworks across Asia-Pacific and North America. It enables secure input validation, full data processing traceability, and proactive risk mitigation — supporting requirements for audit trails, data provenance, and governance by design.

常見問題

MetaDefender Core supports over 200 file types including PDFs, Office documents, archives, images, media files, source code, and executables, covering the full range of content commonly ingested by enterprise AI systems.

Deep CDR™ Technology does not rely on detecting known threats. It strips all active content from files and reconstructs clean, usable versions, neutralizing both known and unknown malware, including zero-day threats.

Yes. MetaDefender Core inspects and sanitizes files before they are indexed into vector stores or retrieval systems, reducing the risk of RAG poisoning and long-term knowledge manipulation.

The MetaDefender Optical Diode is a hardware-enforced, one-way data transfer device. It physically prevents data from flowing back into a protected environment — required for defense, critical infrastructure, and any deployment where software-only controls are insufficient.

MetaDefender Core integrates via REST API or ICAP at any data ingestion point, including file upload portals, RAG pipelines, CI/CD workflows, and AI training data feeds. No changes to application logic or model infrastructure are required.

Yes. MetaDefender Core provides secure input validation, complete audit trails, file hashing, and logging that support compliance with the EU AI Act, Cyber Resilience Act, GDPR, HIPAA, and other emerging AI regulatory frameworks.

Yes. Proactive DLP scans for PII, PHI, financial data, and credentials. It also uses OCR to detect and redact hidden text within images and visual content that could bypass human review.

MetaDefender Core deploys cloud-native, on-premises, or in air-gapped architectures. For high-assurance environments, it pairs with the Optical Diode for hardware-enforced unidirectional transfer.

Secure Your AI Workflows
Before Risk Reaches the Model

填寫表格,我們會在 1 個工作天內與您聯絡。
全球超過2,000家企業信賴。