
Cisco and Anthropic have integrated Cisco AI Defense with Claude Enterprise's inference hooks, creating a security checkpoint that inspects every governed prompt for prompt injection attacks and jailbreaks before the model runs—blocking malicious prompts entirely while letting safe ones through.
This protects Claude Enterprise users whose agents now read documents, call tools, and run tasks on their behalf, addressing threats that traditional data loss prevention tools were never designed to catch.
What happened
Anthropic and Cisco integrated Cisco AI Defense with Claude Enterprise's inference hooks, a security layer that inspects every governed prompt for injection attacks and jailbreaks before the model executes it. When a malicious prompt is detected, it is blocked; safe prompts continue.
Why it matters
Claude Enterprise users (including Claude Code and Cowork agents) can now act on behalf of users by reading documents, calling tools, and running tasks—creating new attack surfaces that traditional data loss prevention tools cannot detect. Cisco AI Defense reads intent and catches prompt injection and jailbreaks targeting the model and its tools, protecting both sensitive data leaving the system and the model itself from being manipulated. Security leaders gain enforcement without requiring infrastructure changes to the user's workflow.
What to watch
The integration currently inspects prompts before inference through the inference hook (which is in beta); Anthropic plans to extend the hook to responses, enabling response-side enforcement through the same integration. Over time, the enforcement is expected to become a native part of the Cisco AI Defense Inspect API. A live playground is available in Cisco's developer portal to test the inspection and verdict.
Anthropic and Cisco have announced an integration that brings AI threat detection directly into Claude Enterprise. The partnership leverages Anthropic's inference hooks—a new capability that lets organizations send each governed prompt to a security service before the model runs—and routes those prompts to Cisco AI Defense, which inspects them for artificial intelligence threats and returns a verdict of allow or deny.
The core problem this solves is a gap in traditional security. As Claude Enterprise users increasingly deploy Claude, Claude Code, and Claude Cowork to act on their behalf—reading documents, calling tools, and running tasks—the prompt itself becomes an attack surface. A jailbreak can attempt to bypass the assistant's guardrails. A prompt injection hidden in a shared file can hijack an agent and turn its own tools against the organization. Traditional data loss prevention tools were built to watch for sensitive data leaving the building; they were never built to see the model being manipulated. That is the exposure Cisco AI Defense targets.
Cisco AI Defense reads intent, not just data. When a user submits a prompt to Claude Enterprise, it is passed to Cisco AI Defense through the inference hook, which inspects the full conversation—including tool calls and their results—against the organization's runtime policy for prompt injection, jailbreaks, tool exploitation, and sensitive data. Every call is cryptographically verified with a one-time signing secret, and Cisco AI Defense confirms authenticity before inspection. A verdict is returned before inference: safe prompts continue; a malicious prompt is blocked, and the model never runs.
The availability timeline shows the integration is live for Claude Enterprise today, with inference hooks currently in beta. The hook fires on each governed prompt before the model runs, which is where enforcement currently happens. As Anthropic extends the hook to responses, the same integration path will enable response-side enforcement. Over time, the enforcement is expected to become a native part of the Cisco AI Defense Inspect API, allowing users to enable it with a few steps in their Claude Enterprise settings. Cisco offers a live playground in its developer portal where users can enter a prompt and watch the real-time inspection and verdict in action.
Claude Enterprise has expanded beyond chat: Claude, Claude Code, and Claude Cowork now act on behalf of users, reading documents, calling tools, and running tasks. This power creates new security exposure—a jailbreak or prompt injection hidden in a shared file can hijack an agent and repurpose its own tools as weapons. Traditional data loss prevention tools were built to watch for sensitive data leaving an organization; they were not designed to detect model manipulation, which is the exposure that matters most in an agentic workflow.
Cisco AI Defense addresses this gap by reading intent rather than just data. The integration with Anthropic's inference hooks creates a runtime checkpoint: before Claude Enterprise executes any governed prompt, the hook sends it to Cisco AI Defense for inspection. Cisco evaluates the full conversation—including tool calls and their results—against policies for prompt injection, jailbreaks, tool exploitation, and sensitive data. A verdict (allow or deny) is returned before inference begins. This design keeps Claude Enterprise fast and native for end users while giving security leaders an enforcement point for AI policy. The system cryptographically verifies each call and confirms authenticity before inspection, ensuring the integrity of the security layer itself.
AI-summarized, only the topics you pick — one digest a day via Email, Slack, or Discord.
Free · takes 30 seconds · unsubscribe anytime
Ask AI anything about this article. Q&As are published on this page for other readers too.
Bank of America released a report concluding that artificial intelligence is unlikely to significantly displac…

IBM and Together AI have signed a $240 million agreement to build and operate an Nvidia-powered AI inference c…

Running a 122-billion-parameter model on three RTX 3090 GPUs with a 256K-token context, the author's AI agent…

Industry analysts and energy companies see artificial intelligence as a tool to increase oil extraction and re…

Healthcare investors are treating sector exposure as an indirect bet against artificial intelligence, with som…

NVIDIA and partners released multiple open-source AI models optimized for local execution throughout August, i…

The AI news that matters, in one minute each morning.
Sign up free