AI News AI资讯 1d ago Updated 15h ago 更新于 15小时前 50

Anthropic Introduces Enterprise Frontier Safeguards (EFS): Zero-Data-Retention Privacy Plus Cross-Session Misuse Detection Anthropic推出企业前沿安全护栏(EFS):零数据保留隐私与跨会话滥用检测

Anthropic introduced Enterprise Frontier Safeguards (EFS), an architecture that decouples zero-data-retention (ZDR) privacy from cross-session misuse detection by storing monitoring data in customer-controlled cloud infrastructure rather than Anthropic's servers. The system addresses a core tension in enterprise AI: regulated teams need ZDR guarantees, while security teams need data retention windows to correlate sophisticated, multi-session attacks involving stolen credentials or misuse pattern Anthropic推出企业前沿安全保障(EFS),解决零数据保留(ZDR)与跨会话滥用检测之间的矛盾 监控数据存储于客户控制的云基础设施,密钥和人工审核由客户管理,检测能力仍由Anthropic提供 EFS基于100+企业客户及AWS、Google Cloud、Azure等云厂商协作设计,覆盖金融、医疗、制造等多个行业 预计今年秋季分阶段上线,目前符合条件的客户可运行Claude Fable 5和Fable 5.1实现ZDR EFS不向Anthropic收费,客户仅需支付云存储和出口费用

72
Hot 热度
68
Quality 质量
75
Impact 影响力

Analysis 深度分析

TL;DR

  • Anthropic introduced Enterprise Frontier Safeguards (EFS), an architecture that decouples zero-data-retention (ZDR) privacy from cross-session misuse detection by storing monitoring data in customer-controlled cloud infrastructure rather than Anthropic's servers.
  • The system addresses a core tension in enterprise AI: regulated teams need ZDR guarantees, while security teams need data retention windows to correlate sophisticated, multi-session attacks involving stolen credentials or misuse patterns.
  • EFS is built in collaboration with over 100 enterprise customers across financial services, healthcare, and the public sector, including CISOs from major banks like Goldman Sachs, Morgan Stanley, and Bank of America.
  • Three key design decisions: storage moves to the customer's own cloud account (S3, Azure Blob, or Google Cloud Storage) under their encryption keys and access policies; human review stays with the customer; automated detection remains with Anthropic.
  • EFS is not yet broadly available, rolling out in phases with a target of later fall, and is request-based; eligible customers can currently run Claude Fable 5 and Fable 5.1 under ZDR. Anthropic charges nothing for EFS, with customers only paying their cloud provider for storage and egress.

Why It Matters

This represents a significant architectural shift in how enterprise AI vendors can reconcile regulatory compliance with security monitoring — two requirements that have historically been in direct conflict. For AI practitioners and enterprise buyers, EFS offers a practical path to adopting frontier models in highly regulated environments without sacrificing either data privacy or threat detection capabilities. The collaborative design process involving a quarter of the Fortune 100 and every US global systemically important bank signals that this is not a theoretical exercise but a market-driven solution to real procurement blockers.

Technical Details

  • Architecture: EFS stores activity data used for monitoring in the customer's own cloud infrastructure (AWS S3, Azure Blob Storage, or Google Cloud Storage), under the customer's encryption keys, access policies, and audit logging. Anthropic retains only the automated detection layer, which analyzes a rolling window of traffic for serious misuse patterns.
  • Detection scope: Automated systems scan for attempts to build offensive cyber or biological capabilities and signs of stolen or leaked enterprise credentials — patterns that Anthropic has documented in its own espionage disruption work. These attacks span multiple tasks, sessions, and accounts, requiring a correlation window that instant discard cannot support.
  • Review pipeline: When monitoring detects a suspicious pattern, the flag routes directly to the customer. No Anthropic human review is required. Anthropic positions automated systems as handling the initial scan, while a cleared human reviewer at the customer side confirms real misuse and clears false positives — critical for environments handling privileged legal material, non-public information, or drug-safety reports.
  • Model ecosystem: EFS ships alongside Claude Fable 5.1 and Mythos 5.1. Fable 5.1 reduces cache read costs by 75% (to $0.25 per million tokens), delivering roughly 25% lower cost on typical workloads and up to ~45% on highly agentic ones. Cybersecurity safeguards produce ~60% fewer interventions per Claude Code session, as Fable 5.1 is permitted to identify vulnerabilities without developing exploits.
  • Availability and pricing: EFS is request-based with phased rollout targeting broad availability later in fall. Anthropic charges no fee for EFS itself; customers pay only their cloud provider for storage and egress. All three components — customer-owned storage, customer-managed keys, and automated review — are opt-in.

Industry Insight

  • Procurement barrier removal: EFS directly addresses one of the most common blockers to enterprise AI adoption — the inability of regulated organizations to sign contracts with vendors that retain their data. This architecture could accelerate adoption across financial services, healthcare, and government sectors where ZDR is a hard requirement.
  • Shift in vendor-customer data dynamics: By moving storage and review to the customer while retaining detection, Anthropic is redefining the trust model for enterprise AI. This approach may become a competitive differentiator as other frontier model providers face similar pressure from regulated buyers.
  • Cost optimization as a companion strategy: The simultaneous pricing reductions in Fable 5.1 (75% cache read cut, up to 45% workload savings) signal that Anthropic is not only solving compliance problems but also making agentic AI economically viable at scale — a dual move that strengthens enterprise adoption incentives.

TL;DR

  • Anthropic推出企业前沿安全保障(EFS),解决零数据保留(ZDR)与跨会话滥用检测之间的矛盾
  • 监控数据存储于客户控制的云基础设施,密钥和人工审核由客户管理,检测能力仍由Anthropic提供
  • EFS基于100+企业客户及AWS、Google Cloud、Azure等云厂商协作设计,覆盖金融、医疗、制造等多个行业
  • 预计今年秋季分阶段上线,目前符合条件的客户可运行Claude Fable 5和Fable 5.1实现ZDR
  • EFS不向Anthropic收费,客户仅需支付云存储和出口费用

为什么值得看

这篇文章揭示了企业AI部署中隐私与安全的根本性矛盾,并提供了创新的架构解决方案。对于AI从业者和企业决策者而言,理解如何在零数据保留承诺下实现有效安全监控,是推进企业级AI采纳的关键。

技术解析

  • 架构设计:EFS将监控数据存储移至客户控制的云账户(S3、Azure Blob或Google Cloud Storage),客户持有加密密钥并管理访问策略,Anthropic仅保留检测能力
  • 检测机制:Anthropic的自动化系统分析滚动时间窗口的流量,专门检测构建进攻性网络或生物能力的尝试,以及被盗或泄露凭证的迹象
  • 审核流程:检测信号直接路由给客户,Anthropic不进行人工审核;客户需在受监管环境中由具备特权材料审查资格的人员确认误用
  • 合作生态:设计过程涉及Analysis and Resilience Center for Systemic Risk成员(包括高盛、摩根士丹利、花旗等CISO),覆盖四分之一的财富100企业和所有美国系统重要性银行
  • 配套优化:Claude Fable 5.1同时优化了缓存读取成本(降低75%至每百万token 0.25美元)和网络安全干预频率(减少约60%)

行业启示

  • 企业AI合规新范式:EFS证明了零数据保留与高级安全监控可以共存,为金融、医疗等强监管行业的企业AI采用扫清了关键障碍
  • 云原生安全架构趋势:将监控数据存储于客户云账户而非供应商基础设施,代表了企业AI安全架构从"信任供应商"向"验证控制"的转变
  • 成本优化与功能增强并行:Anthropic在推出安全功能的同时降低缓存成本并减少误报干预,表明企业级AI产品正从单纯的功能堆砌转向价值平衡

Disclaimer: The above content is generated by AI and is for reference only. 免责声明:以上内容由 AI 生成,仅供参考。

Claude Claude Closed Source 闭源 Security 安全 Agent Agent Deployment 部署