DeepSeek, the Chinese AI lab based in Hangzhou, published a research paper detailing the DSec (DeepSeek Elastic Compute) system, capable of generating over 5,000 isolated environments per second, or roughly 3 million per day per production unit. Each unit runs on approximately 160 nodes totaling 30,000 CPU cores and 250 terabytes of memory, with a peak concurrency of 380,000 simultaneous environments. The system offers four isolation tiers (FnCall, Docker, Firecracker, and QEMU) accessible through a single Python SDK, along with a custom distributed filesystem called 3FS. The 10,000-word paper, co-authored by roughly 130 contributors, acknowledges that no single mechanism can prevent all agent misbehavior, advocating for an approach combining containment, observability, and ongoing enhancement of safety measures.
Source: Read the original article

