Introducing on-demand CPU and memory profiling with flamegraphs for Workers and Durable Objects

Understanding why an application is using more resources than expected, whether that is CPU or memory, can be challenging. Logs and aggregate metrics can only get you so far. Thankfully there is a better way: CPU or memory profiling can show you the exact function where your application is using CPU or allocating memory.

Today we are happy to announce support for CPU and memory profiling of Workers and Durable Objects. From the Workers Observability page, you can now request an on-demand CPU or memory profile of an active Worker, inspect it as an interactive flamegraph, and download the profile file for further analysis.

This method of profiling gives you a useful perspective into what your code is doing and how you can improve it in a real-world setting. That’s because the best way to understand your application is to profile it in production.

To try this on one of your Workers, you have a choice of using the CLI or the Cloudflare Dashboard. 

To use the CLI, make sure you have the cf package installed, then simply run:

To use the dashboard, head to the Cloudflare dashboard and then access the list of Workers on your account Continue reading

Deno is joining Cloudflare

The Deno team is joining Cloudflare to radically simplify self-hosting Workers and Durable Objects so developers can use the same primitives in more places.

For what this means and how it came about, here’s the story from Ryan Dahl, Senior Principal Engineer, and Kenton Varda, Distinguished Engineer.

NFS Underground 2: Cara Modifikasi Mobil dan Kuasai Balapan Jalanan

Dalam dunia game balap jalanan, NFS Underground 2 tetap menjadi salah satu judul paling ikonik yang mampu memikat pemain di seluruh dunia. Hingga saat ini, game ini masih populer di kalangan penggemar balap dan modifikasi mobil, terutama karena fitur kustomisasi yang mendalam dan gameplay yang seru. Artikel ini hadir untuk membahas secara lengkap cara memodifikasi mobil dan tips menguasai balapan jalanan di NFS Underground 2, sehingga Anda bisa mendapatkan pengalaman bermain yang maksimal di periode terbaru.

Mengenal Kelebihan NFS Underground 2 Dalam Dunia Balap Jalanan

NFS Underground 2 menawarkan kebebasan luar biasa dalam memilih dan memodifikasi jenis mobil favorit, yang menjadi daya tarik utama game ini. Dengan lingkungan kota yang luas dan variasi tantangan balapan yang beragam, Anda bisa menikmati berbagai mode yang menuntut kemampuan manuver, kecepatan, dan strategi dalam memodifikasi kendaraan.

Fitur modifikasi yang komprehensif memungkinkan pemain menyesuaikan aspek visual dan performa mobil, mulai dari cat body, decal, hingga tuning mesin dan suspensi. Hal ini memberikan peluang unik untuk mengoptimalkan mobil sesuai gaya balapan Anda, entah itu mengutamakan kecepatan puncak, akselerasi, atau handling di tikungan.

Cara Memodifikasi Mobil di NFS Underground 2

Modifikasi mobil dalam NFS Underground 2 tidak hanya sekadar mempercantik tampilan, namun juga meningkatkan performa guna Continue reading

WWE 2K26: Cara Efektif Mengatur Serangan dan Counter Gulat

Dalam dunia gim gulat yang terus berkembang, WWE 2K26 menawarkan pengalaman bermain yang semakin realistis dan dinamis. Bagi para penggemar game ini, menguasai teknik serangan dan counter dalam pertandingan gulat merupakan kunci untuk memenangkan pertarungan di dalam ring. Artikel ini akan membahas secara lengkap cara mengatur serangan dan counter di WWE 2K26, sehingga kamu dapat memaksimalkan performa dan strategi bermain pada periode terbaru ini.

Pendahuluan

WWE 2K26 hadir dengan berbagai peningkatan dari versi-versi sebelumnya, khususnya dalam hal mekanisme pertarungan dan interaksi antara pemain dengan AI maupun pemain lain secara online. Kemampuan untuk mengatur serangan dan counter kini jauh lebih kompleks dan menantang. Fokus utama dalam artikel ini adalah bagaimana kamu dapat mengoptimalkan penggunaan sistem serangan dan counter untuk mendominasi pertandingan, baik dalam mode single player maupun multiplayer online.

Mekanisme Serangan Dasar di WWE 2K26

Salah satu aspek terpenting saat bermain WWE 2K26 adalah memahami dasar-dasar serangan. Serangan dasar dapat dibagi menjadi dua jenis utama: serangan ringan dan serangan berat. Serangan ringan (light attack) biasanya cepat dan memiliki risiko lebih kecil untuk di-counter, sementara serangan berat (heavy attack) memberikan damage besar tapi lebih mudah diprediksi dan di-counter oleh lawan.

Pengaturan serangan di WWE 2K26 menuntut pemain untuk mengkombinasikan kedua jenis serangan Continue reading

Bridging technical depth and usability: The story behind Radar’s redesign

Radar provides a real-time view into global Internet trends, powered by Cloudflare’s global network. We support Cloudflare’s mission to help build a better Internet by making web data visible, clear, and actionable for everyone. Since launching in 2020, Radar has found a natural audience amongst expert users with technical backgrounds, such as network operators and academic researchers who rely on Radar data to observe industry trends and global events.

But Radar also has the potential to be a more regular, self-serve resource for journalists, human rights advocates and policymakers, and everyday users. Making Radar accessible to a wider audience is a core part of our vision, so we knew it was time to reevaluate the user experience: How could we make Radar more approachable to broader audiences, while preserving the depth and rigor that we currently have?

In this blog post, we’ll introduce the redesigned Radar, share our design process, and outline our broader vision for the platform’s future.

Challenges with the previous design

While the previous landing page was successful at showing the breadth of Radar’s data, the way that information was presented made it difficult to parse. The bento box layout gave everything similar visual weight, the Continue reading

Rolling the Root Key – Update

This is an update to an article I posted in May of this year. As I write this, it's now the 8th October, and the Root Key of the DNS is scheduled to roll on the 11th October. The major addition to this update is a list of vulnerable ISP networks which are showing a KSK Sentinel signal that they have not added to their DNS resolver's trusted key set at the end of this article.

SDR stream I/Q protocol

While writing some software defined radio applications, I have found myself wanting to run them headless on some raspberry pi or similar, but then occasionally connect to it and inspect it live.

I want to stream sample data, and tags data, and drop data on overflow. The main use case is for a UI, so it should not block the rest of the processing if the network or UI is slow, or disconnected.

I also want the protocol to support lossless sources, for example a stream coming from a SigMF file.

I’ve been dragging my heels on this, because surely this protocol already exists. And if I make a new one then nobody else is compatible with it.

Requirements

  • Support drop-on-overflow, and lossless.
  • Support regular TCP, and connections from JS/WASM websockets.
  • Work with GNU Radio, and with RustRadio.
  • Because websocket messages are delivered via callback, and thus the TCP flow control does not propagate back to the sending application, the protocol needs its own flow control.
  • One port per application, but a client can request uploading or downloading different streams, by name.

Existing protocols

GNU Radio ZeroMQ

ZeroMQ example in GNU Radio

GNU Radio has ZeroMQ sink and source blocks, but a UI running Continue reading

Gemini Never Left the Sandbox. The Sandbox Had a Door.

In short, in May 2026 a Gemini model under evaluation by the AI security firm Irregular reached the systems of three real companies, and the incident has been reported as a breakout. By Google’s own account it was nothing of the kind. The test environment had internet access it was not meant to have, the fictional target shared its name with a real company, and the model found public information online, guessed one password and found two more in public code repositories. No kernel exploit, container escape or hypervisor bug has been reported. The process stayed inside its box; its traffic walked out through a door the infrastructure left open. This post takes the incident apart boundary by boundary, maps what was open in May onto what agent infrastructure has to provide, then says what a governance layer like Tigera Lynx can and cannot do about it. It is written for the platform and security leaders who run agents with a shell, credentials and a network, which is most of them.

On 18th September 2026, The Wall Street Journal reported that a Gemini model had accessed three real companies during a cybersecurity evaluation run by Irregular, and Google confirmed Continue reading

Building an evidence-grounded agentic security operations harness on Cloudflare

Security alerts rarely arrive one at a time. A single alert can cause a spike across the environment, requiring a human analyst to decide which alerts are related and what they mean. When multiple arrive at the same time, it can quickly overwhelm even a seasoned security analyst. Enter the alert paradox. Now, our built-in, multi-AI-agent security operations harness can handle more of this work at Cloudflare scale.

Our Cloudflare Managed Defense AI agent harness speeds up the process of gathering data, connecting and aggregating detections, and accounting for missing sources while new alerts continue to arrive. To further analyze context, we make use of the OpenAI Daybreak Defense Network and our partnership with Anthropic. Cloudflare uses approved OpenAI Daybreak and Anthropic models, including GPT-5.6 Cyber and Mythos, for deeper model-backed analysis. Initial analysis and scoring is done with Clef, Cloudflare’s open-source decision model.

Collecting evidence to understand what each alert means requires a lot of time. Even in a highly sophisticated Security Information and Event Management (SIEM), too much is still left for a human to review. Human analysts must gather data, connect and aggregate detections, and account for missing sources while new alerts continue to arrive.

Think about every Continue reading

Multi-Agent Design Patterns: When Do They Actually Help?

Objective The goal of this post is to show, with real numbers from a working system, how to decide whether an agentic system should be a single agent or multiple agents working together. I’ve read about cases where multi-agent systems helped, for example: Anthropic’s research system: a lead agent sends several research agents to investigate … Continue reading Multi-Agent Design Patterns: When Do They Actually Help? →

BGP-Free Network Core with SRv6

The concept of a BGP-free core is decades old:

  • The network core routers (P routers in MPLS terminology) do not carry BGP routes; BGP routes are exchanged solely between network edge routers.
  • The core routers thus cannot use the customer IP addresses in the packet forwarding process.
  • The edge routers (PE routers in MPLS terminology) know how to reach BGP next hops using an encapsulation mechanism that makes IP packets opaque to the network core.
Interestingly, the concept predates Cisco’s Tag Switching (later MPLS) by at least a decade; that’s how all ATM and Frame Relay networks worked (with ATM VPI/VCI or Frame Relay DLCI used as the in-network addresses).

The keys to the Internet change on October 11. Are you ready?

On October 11, 2026, the DNS root is scheduled to change its key-signing key (KSK) for only the second time ever. This key anchors DNSSEC’s chain of trust, which lets DNS resolvers authenticate answers using cryptographic signatures. The change is called a KSK rollover. Validating resolvers need to trust the new key before the switch, as otherwise healthy websites could become unreachable.

When we wrote about the first root KSK rollover in 2018, we had seen resolvers lose their learned trust in the new key during software upgrades or moves between machines. Publishing the key well in advance was only part of the job. We also needed to know whether resolvers had retained it, and we couldn’t give users a practical way to check.

Most website operators do not need to make any changes for this rollover. If you run a DNSSEC-validating resolver, check that it trusts the new root key, KSK-2024, and follow your software vendor’s instructions to update its trust anchors if the key is missing. If you use Cloudflare for your domain's DNS or rely on 1.1.1.1 and Gateway DNS, you do not need to take any action — our systems already trust Continue reading

1 2 3 … 3,910