Torna alle notizie
SicurezzaAI Understanding briefing

Fastly launches AI firewall and runtime control tools

Fastly has introduced AI Runtime Control, AI Firewall, and enhanced API security features to help organizations manage AI model access, costs, and security risks in production environments.

4 min readRead the linked source
Source-provided image accompanying Fastly launches AI firewall and runtime control tools
Riferimento alla fonteFonte registrata
Editore
securitybrief.co.nz
Collegamento alla fonte
securitybrief.co.nzhttps://securitybrief.co.nz/story/fastly-launches-ai-firewall-runtime-control-tools
Tipo di fonte
Fonte collegata: lo stato di fonte primaria non è stato stabilito.
Anche citato

Ultima revisione della storia

ContestoComprendilo in 60 secondi

Inizia qui

Termini chiave

API (interfaccia di programmazione dell'applicazione)
Un modo strutturato con cui un sistema software invia richieste e riceve risposte da un altro sistema.
Iniezione rapida
Un modello di attacco in cui istruzioni dannose vengono inserite negli input del modello o nel contenuto recuperato.
Richiedi
Le istruzioni di input e il contesto forniti a un modello generativo.
Mettiti alla provaQuiz sugli agenti IA

Cosa è cambiato dalla pubblicazione

  1. Pubblicato per la prima volta
  2. This source provides additional context regarding the motivation for the launch, specifically citing internal network data showing machine-generated traffic exceeding 50% in July and August, and references McKinsey research on AI budget overruns to justify the need for the new cost-management and security features.

Cosa è successo

Fastly has expanded its product portfolio with the launch of AI Runtime Control, AI Firewall, and new API security capabilities. These tools are designed to provide real-time visibility and governance for organizations transitioning AI deployments from experimental phases to production environments.

Fastly's new AI Runtime Control sits between applications and AI models, acting as a central routing endpoint for both public and self-hosted providers. It includes features for token spending visibility, rate limiting, and budget controls, while using virtual keys to protect provider credentials. This allows organizations to switch between different model providers while maintaining consistent policy enforcement.

The AI Firewall is specifically designed to protect AI applications by evaluating prompts in the request path before they reach the model, aiming to mitigate risks such as . Additionally, the new API Security features are intended to govern how AI agents interact with enterprise APIs, allowing organizations to enforce API contracts and block non-compliant requests from agentic or agent-assisted traffic.

The company stated that these tools are a response to the rapid growth of machine-generated traffic, which it claims rose above 50% on its network during July and August. Fastly cited McKinsey research indicating that 93% of organizations are currently exceeding their AI budgets, highlighting the need for the cost-management features included in the new release.

Dettagli della fonte: securitybrief.co.nz

Perché è importante

As organizations increasingly integrate AI models and autonomous agents into their infrastructure, they face significant challenges regarding cost management, security, and operational reliability. Fastly's new suite addresses these by centralizing policy enforcement and security controls directly in the request path. By providing a unified layer for model routing, token budget management, and mitigation, the company aims to help enterprises scale AI adoption without sacrificing security or exceeding operational budgets.

The shift toward multi-model architectures means enterprises are increasingly reliant on a complex web of external and internal services. Fastly's approach attempts to consolidate security and governance on the same edge platform used for content delivery and DDoS protection, potentially simplifying the security stack for IT teams.

By moving security and control to the edge, Fastly aims to provide the 'real-time' governance that Kelly Shortridge, Chief Product Officer, argues is necessary to maintain business resilience. The ability to observe or block traffic on a service-by-service basis provides a granular level of control that is critical as AI agents begin to automate more complex software development and operational tasks.

Interactive Mechanism

Meccanismo interattivo: come funziona realmente

Esplora la tecnologia alla base di questo sviluppo in modo interattivo.

Agent Lifecycle Stage:
1
User Intent & Planning: "Audit customer refund request #4092 and settle payment."
2
Tool Calling: Emits structured JSON call crm_get_transaction(id='4092').
3
Guardrail & Verification:🛡️ Paused: High-value action requires human operator sign-off.
4
Final Settlement: Refund recorded, email receipt dispatched, and audit log stored.
Core takeaway: An AI agent is not just a language model—it is a closed loop of planning, tool invocation, and environment feedback. Production systems require self-healing retries and strict human approval guardrails.
Verifica concettuale interattiva+10 Points
AI Agents Quiz

What is the most accurate way to describe what AI Agents can do today?

Cosa guardare dopo

The effectiveness of these tools in mitigating sophisticated attacks and their ability to handle diverse, multi-vendor AI architectures will be key indicators of their utility. Observers should monitor how well these edge-based controls integrate with existing enterprise workflows and whether they successfully reduce the operational friction associated with managing heterogeneous AI model deployments.

Pricing and specific availability details for these new features were not disclosed in the announcement. Potential users should verify whether these tools are currently generally available or if they are being rolled out in phases.

The long-term impact of these tools will depend on their compatibility with the rapidly evolving landscape of AI frameworks and the specific types of attacks they can effectively neutralize. As AI agents become more autonomous, the ability of these tools to enforce strict API contracts will be a critical test of their efficacy in preventing unauthorized or malformed operations.

Guide e quiz correlati

Agenti dell'intelligenza artificialeSpiegazione dei modelli di intelligenza artificialeEtica dell'IAMetti alla prova ciò che sai: prova un quiz gratuito sull'intelligenza artificialeCerca un termine AI nel nostro glossario

Aggiornamenti e correzioni

Questa storia canonica viene aggiornata quando l'evento in via di sviluppo cambia materialmente. Il suo URL e la data di pubblicazione originale non cambiano mai.

  • This source provides additional context regarding the motivation for the launch, specifically citing internal network data showing machine-generated traffic exceeding 50% in July and August, and references McKinsey research on AI budget overruns to justify the need for the new cost-management and security features.
Consulta il registro delle correzioni pubbliche
Lo hai trovato utile?