Skip to main content

GlassWall

Glasswall is a cybersecurity company that protects government agencies and organizations from malicious files with its Content Disarm and Reconstruction (CDR) technology. Unlike traditional detection-based methods, Glasswall employs a zero-trust approach, which removes the ability for malware to exist in files altogether.

Share this page on your social profile!

What is a CDR?

Glasswall’s zero-trust file protection is different. Instead of looking for malicious content, our advanced CDR (Content Disarm and Reconstruction) process treats all files as untrusted, validating, rebuilding and cleaning each one against their manufacturer’s ‘known-good’ specification.
Only safe, clean, and fully functioning files enter and leave an organization, allowing users to access them with full confidence.

Zero Trust file security powered by CDR

Glasswall stops file-based threats before they execute. Their Content Disarm and Reconstruction (CDR) technology treats every file as untrusted, rebuilding each one into a safe, clean state without disrupting the way people work.

Rather than trying to detect what is malicious, Glasswall removes the risk altogether. That makes it effective against zero-day threats and attacks that slip past antivirus and sandboxing, and it works just as well in offline and air-gapped environments. Glasswall is trusted by government agencies and secure businesses worldwide, including NATO, the NSA, UK Government, Microsoft, Oracle and BAE Systems.


Halo
What is CDR?

Glasswall’s Zero Trust file protection works differently. Instead of looking for malicious content, its advanced CDR process treats all files as untrusted, then validates, rebuilds and cleans each one against the manufacturer’s “known-good” specification. Every file is taken apart, checked against its published specification and rebuilt into a known-good, policy-compliant version. Only safe files reach your organization, and they arrive fully functional with formatting, fonts and embedded data intact.

Glassswall Genesis

Assume nothing. Rebuild everything. Genesis is Glasswall’s memory-safe CDR engine, built for Zero Trust environments where files cross trust boundaries. It covers more than 45 file formats and 140 file extensions, including specialist types such as NITF geospatial imagery, CAD and DICOM medical imaging, and processes them up to twice as fast as previous generations. Genesis deploys across Windows, Linux and macOS, with offline licensing and support for FIPS-enabled and SELinux-enforcing environments.

Glasswall Halo (Server)

Halo is a scalable Zero Trust file protection solution, deployable on-premises, in the cloud or in air-gapped networks. It sanitizes files in real time and is accessible through a web UI, APIs and ICAP for web proxy servers. Across five Kubernetes nodes, Halo has processed 186,000 files per hour at a 99.999% API success rate, with a median processing speed of 815 milliseconds.

Glasswall Meteor (Desktop)

Meteor is an automated file cleaning application for local and cloud storage. Users drag and drop files or nominate folders for continuous protection, with connectivity across more than 200 storage platforms including Dropbox and Google Drive. It runs online, offline and in isolated environments, and adds AI-powered threat prediction alongside data loss prevention for Office documents.

Embedded Engine (SDK)

The Embedded Engine brings Glasswall CDR into your own applications and services. It delivers sub-second processing, supports Java, Python and C# wrappers on Windows and Linux, and gives developers granular control over how each file type is handled. It can also transform complex file types into simpler, verifiable formats for third-party validation in hardsec architectures.

Cross Domain Solutions (CDS)

Ensure every file crossing a network boundary is free from hidden threats, using a Zero Trust methodology aligned with NCSC, NSA and NIST guidance.

File upload portals

Protect customer facing portals from file-based attacks by removing known and unknown threats from every upload.

Browser isolation (ICAP)

Embed file sanitization into existing web security infrastructure for real time protection at the proxy.

M365 collaboration and Outlook Attachments

Enable safe file sharing, storage and email attachment handling across Microsoft 365.

Cloud migration

Clean files as they move, so legacy threats do not follow your data into the cloud.

Offline and DDIL Environments

Protect file transfers in disconnected, degraded, intermittent and low-bandwidth networks, including USB sanitization and sheep dipping.