Cloudflare Agents Week
Cloudflare’s completed 2026 Agents Week points to a larger strategy: secure the agentic enterprise network while becoming the platform startups choose to build and operate AI-native products.
Welcome. I’m Joakim Berg, and this site brings together my writing, commentary, and the latest articles across edge, CDN, security, streaming, and AI infrastructure.
Original analysis
Independent perspectives on infrastructure, security, streaming, and the systems behind them.
Cloudflare’s completed 2026 Agents Week points to a larger strategy: secure the agentic enterprise network while becoming the platform startups choose to build and operate AI-native products.
Wi-Fi has spent years chasing throughput and device density, but live streaming fails on tail latency. A few bad milliseconds at home can do more damage than a mediocre average connection.
Varnish Software's sovereign European CDN, Ora Streaming and Kubernetes Gateway work point to a broader shift from licensed software and premium support toward managed services and SaaS.
A premium look at why AI security belongs at the API layer, not inside large language models.
The WAF category has gone stale. Its value now depends on the hardening, contextual intelligence, and pre-disclosure virtual patching built around it—not the generic rules engine carrying the WAF label.
Curated updates
A compact briefing on notable announcements from across the industry.
Fastly published an edge MCP reference that uses Compute, caching, and default-deny authorization to reduce latency for agent tool calls.
F5 introduced a next-generation AI Gateway that combines model routing, MCP governance, guardrails, budgets, observability, and audit controls.
Google Cloud's August update highlights AI infrastructure items including G-series Flex CUDs, Rapid Bucket with GCSFS, and agentic platform resources.
F5 described how application-adjacent WAF inspection can complement edge security by enforcing workload-specific controls close to Google Cloud applications.
Vercel CDN now supports Encrypted Client Hello for domains managed by Vercel DNS, initially in selected regions and TLDs.
Fastly described how predictive capacity planning, autonomous routing, security controls, and live engineering support handled World Cup-scale traffic.
AWS explained how to run WebSocket-style real-time applications through VPC Lattice using TLS listeners or resource configurations.
Google Cloud described how TelevisaUnivision used Media CDN, regional edge capacity, direct peering, and operational war rooms for World Cup streaming.
Fastly connected World Cup piracy, bot traffic, and automated abuse into a broader view of the traffic that follows major sports events.
Fastly joined Experian's Agent Trust ecosystem to help distinguish authorized AI agents from unwanted automated traffic at the edge.
Fastly Image Optimizer now supports C2PA pass-through for the latest spec across supported image formats except JPEG XL.
An arbitrary file read vulnerability that can potentially enable remote code execution (RCE) has been found in Ruby on Rails Active Storage and has been assigned CVE-2026-66066. Fastly has created a virtual patch for it that is now available within your account. To activate it and add protection to your services, follow the steps for your control panel below. Next-Gen WAF control panel From the Rules menu, select Templated Rules. In the search bar, enter CVE-2026-66066 and then click View for the CVE-2026-66066 templated rule. Click Configure and then Add trigger. Select the Block requests from an IP immediately if the CVE-2026-66066 signal is observed checkbox. Click Update rule. Click the Signals tab. In the search bar, enter CVE-2026-66066 and then click View for the CVE-2026-66066 tag. Click the Detections tab and then Add detection. Verify the switch is set to Enabled. Click Create detection. Click the Alerts tab and then Add alert. In the Status area, set the switch to Enabled. Click Save alert. Fastly control panel Click Virtual Patches. In the search bar, enter CVE-2026-66066 and then click the pencil to the right of the CVE-2026-66066 virtual patch. From the Status menu, select Enabled. (Optional) If your workspace is in blocking mode, choose whether to Block requests or Log requests if the CVE-2026-66066 signal is observed. Click Update virtual patch.
Cloudflare now supports post-quantum authentication for origin-facing traffic through Authenticated Origin Pulls and Custom Origin Trust Store.
Fastly analyzed the infrastructure demands behind streaming the 2026 World Cup final, including traffic surges, resilience, piracy, and security.
Fastly used platform data to show how specific World Cup matches drove major localized streaming traffic spikes across the United States.
Zixi and Comcast Technology Solutions have partnered to modernize linear broadcaster distribution by combining Comcast Media360 with the Zixi Software Platform.
SIMBA has selected Broadpeak Advanced CDN to launch a new high-performance streaming delivery network in Brazil for live and on-demand video.
Cloudflare has introduced Workers Cache, a tiered cache that sits directly in front of Worker entrypoints to reduce CPU usage and improve latency.
Cloudflare has rolled out more granular AI traffic controls along with BotBase, a new visibility layer for known bots and agents.
Cloudflare, Mozilla, Google, Microsoft, and Shopify have introduced PACT, a privacy-preserving protocol for proving traffic is legitimate.
Akamai has launched a unified agentic security framework that ties together identity, observability, trust, and edge decisioning.
Google Cloud highlighted media and entertainment partners applying AI across production, archive search, streaming, monetization, and broadcast reliability.
Akamai has launched AI Grid intelligent orchestration for its Inference Cloud, spanning edge, regional, and core environments.
No news items match this category.