What's New in 2025
Focus
Focus
AI Runtime Security

What's New in 2025

Table of Contents

What's New in 2025

Learn what's new on AI Runtime Security in 2025.
Feature
Description
AI Runtime Security: API Intercept: Malicious Code Detection
Released in March
AI Security Profile Customization
  • AI Application Protection
    Added Malicious Code Detection to analyze code snippets generated by Large Language Models (LLMs) and identify potential security threats.
    The feature supports malicious code scanning for the following supported languages: Javascript, Python, VBScript, Powershell, Batch, Shell, and Perl.
    Enable this detection by updating the API security profile.
    For details on using the scan APIs refer to the API reference documentation.
AI Runtime Security: API Intercept: Toxic Content Detection
Released in March
AI Security Profile Customization
  • AI Model Protection:
    Added Toxic Content Detection in LLM model requests and responses to protect the models from generating or responding to inappropriate content. Toxic content includes references to hateful, sexual, violent, or profane themes. Malicious threat actors can easily bypass the LLM guardrails against toxic content through direct or indirect prompt injection.
    Enable this detection by updating the API security profile. For details on using the scan APIs refer to the API reference documentation.
AI Runtime Security: Network Intercept Managed by Panorama
Released in February
  • You can now manage and monitor your AI Runtime Security: Network intercept (AI firewall) with Panorama.
  • AI security policy and logs can now be defined and observed on Panorama.
  • To get started:
    1. Select “Panorama for Management (with Log Collector)” when creating a deployment profile for Panorama in the Customer Support Portal.
    2. Generate the VM Auth Key on Panorama for AI network intercept.
    3. Deploy AI Runtime Security: Network intercept to be managed by Panorama.
    4. Export your AI network intercept logs to Panorama.
AI Runtime Security: API Intercept
Released in January
  1. Multiple API Keys, Apps, and Security Profiles
    • Create and manage multiple API keys.
    • Define and manage multiple applications.
    • Create and manage multiple AI security profiles and their revisions.
  2. AI Security Profile Customization
    • AI Application Protection: Enhanced the application security with advanced options for URL filtering with custom allow and block lists for the predefined URL security categories.
    • AI Data Protection: Expanded data loss prevention (DLP) profile selection - You can now define your custom DLP profiles for AI security.
    • Database Security Detection: Enable database security detection to regulate database security threats in the prompt or response. This feature allows you to allow or block malicious SQL queries, preventing unauthorized actions on your database. (For detailed instructions on implementing this feature and using the scan APIs, refer to the creating a security profile section).