Articles

Cloud technology articles, tutorials and best practices

Showing 1-18 of 369 articles
Information Security

AI Agent Long-Term Memory Is the New Attack Surface: What MemGhost and GhostWriter Mean for Enterprises

Two independent research efforts show AI Agent long-term memory can be poisoned: MemGhost plants false information via a single email with up to 87.5% end-to-end success, while GhostWriter reports roughly 98% memory injection success. This article breaks down how memory poisoning differs from ordinary prompt injection, how connectors expand the risk radius, and what enterprises should evaluate before deployment.

#AI Agent#cybersecurity#memory poisoning
18 min min read
Information Security

EU AI Act Article 50 Transparency Obligations: Applicable August 2, 2026 — Provider vs. Deployer Duties Explained

The transparency obligations under Article 50 of the EU AI Act apply from August 2, 2026: Articles 50(1) and 50(2) govern providers (informing users they are interacting with AI, machine-readable marking of synthetic content), while 50(3) and 50(4) govern deployers (informing people subject to emotion recognition, disclosing deepfakes). This article separates the two roles, walks through the exemptions and disclosure timing, and explains how Taiwanese companies should approach the question of where they sit.

#AI Act#EU AI Act#EU Regulations
17 min min read
LLM

Alibaba Qwen3.8 Explained: A 2.4-Trillion-Parameter Open-Weight Model — Should Enterprises Wait for It?

On July 19, 2026, Alibaba teased Qwen3.8 — 2.4 trillion parameters, open weights planned — claiming overall performance second only to Claude Fable 5. But that is Alibaba's own claim, with no benchmarks, model card, or independent evaluation to verify it. This guide separates what is known from what is not, and walks through the open-weight vs. commercial-API procurement decision: self-hosting cost, data residency, and license risk.

#Qwen3.8#Qwen#Alibaba
14 min min read
Information Security

What Is MCP (Model Context Protocol)? Security Lessons From the NadMesh Botnet

MCP is an open protocol that lets AI models connect to external tools and data sources — and it is becoming an attacker's favorite target. The NadMesh botnet, disclosed by Qianxin X-Lab, is built in Go, integrates 20+ RCE vectors, and scans and compromises AI infrastructure and MCP services at scale. This article explains what MCP is, why it is a high-value target, and what enterprises should do.

#MCP#Model Context Protocol#AI Agent
15 min min read
AI API

Claude Fable 5 Complete Guide 2026: The First Mythos-Tier Model — Features, Benchmarks & Enterprise Procurement

In June 2026 Anthropic released Claude Fable 5, the first publicly available Mythos-tier model. It tops SWE-Bench Pro at 80.3%, costs exactly double Opus 4.8 ($10/$50 per million tokens), and landed on AWS Bedrock and Google Cloud on launch day. This guide covers features, benchmarks, pricing, and procurement paths for Taiwanese enterprises.

#Claude Fable 5#Mythos#Anthropic
17 min min read
Information Security

What Is a Software Supply Chain Attack? Full Analysis of the 2026 Miasma Worm Incident and an Enterprise Protection Guide

Software supply chain attacks are escalating: in June 2026, the Miasma worm infected 32 Red Hat npm packages in 72 seconds and hijacked the configuration files of 13 AI development tools, including Claude Code. This article lays out the full incident timeline, why traditional defenses failed, and an immediately actionable self-audit and credential protection checklist for enterprises.

#Supply Chain Attack#Miasma#Security
20 min min read
Information Security

What Is the EU CRA (Cyber Resilience Act)? 2026 Vulnerability Reporting Obligations, SBOM, and Compliance Timeline Explained

Article 14 vulnerability reporting obligations under the EU Cyber Resilience Act (CRA) become mandatory on September 11, 2026: an early warning within 24 hours of discovering active exploitation, followed by a detailed impact assessment within 72 hours. This article breaks down the SBOM requirements, fines of up to EUR 15 million, the three exposure scenarios for Taiwanese companies exporting to the EU, and a 7-step compliance readiness checklist.

#CRA#Cyber Resilience Act#EU Regulations
18 min min read
AI API

What Is TaaS? 2026 Guide to Token Billing in the AI Era: You're Not Paying a Monthly Fee Anymore

In 2026 software billing is shifting from SaaS monthly fees to TaaS metered token billing. Based on TechNews and official Anthropic data, this article explains what AI tokens are, why thinking tokens make bills explode, how Claude and Gemini quota plans differ, and gives Taiwanese enterprises a four-step playbook for estimating and controlling token costs — plus procurement advice.

#TaaS#Token Billing#AI API
19 min min read
...