5x faster Edge Functions: V8 isolates to Firecracker MicroVMs
jbott
144 points
55 comments
September 30, 2026
Related Discussions
Found 5 related stories in 91.3ms across 8,145 title embeddings via pgvector HNSW
- We Rebuilt the Linux MicroVM Stack on Apple Silicon signa11 · 143 pts · August 21, 2026 · 58% similar
- How microVMs work, by building one in the browser nikhilunni · 15 pts · July 09, 2026 · 57% similar
- You can now run same OCI images as containers or Firecracker microVMs pullrun · 52 pts · July 23, 2026 · 53% similar
- JIT Compiling Code in 5μs zX41ZdbW · 123 pts · August 23, 2026 · 52% similar
- Show HN: InstinctFlash – High-Performance Serving Runtime for Robotics Models guanming0717 · 23 pts · September 22, 2026 · 49% similar
Discussion Highlights (11 comments)
aaronvg
Wish it explained where the v8 isolate latency is coming from compared to microvms
nchmy
I'm having trouble understanding/believing this, given that Cloudflare Workers are also v8 isolates and run vastly faster than the 25-40ms that netlify says their isolates took...
secondcoming
If you're counting milliseconds why use Javascript?
nderjung
Alex from Unikraft here! Happy to answer any questions about the microVM part of the story from our side. We also did a couple of technical write ups if you're interested: - https://unikraft.com/blog/netlify-edge-functions - https://unikraft.com/customer-stories/edge-functions-netlify
torginus
This is highly interesting considering AWS invented the MicroVMs for lambda, yet node on lambda is dog slow (both in latency and throughput). I can traumadump on request. I bet they could use some of this tech especially since their use cases are often not too dissimilar (auth validation, rule checking etc)
jedberg
The next time you want to curse AWS, remember they gave us Firecracker, one of the best microvm technologies out there, and the basis of at least a few non-AWS products out there (this one being the newest entry to the list).
Normal_gaussian
I've been using SlicerVM extensively - which is Firecracker MicroVMs for the regular person (and for the irregular with their platform offering) - to run local 'edge' style workloads locally and securly. Agents, local dev CI, etc. It slotted in and replaced my proxmox vm orchestrator, and now I have secure and and fast vms on my laptop wherever I go. It also supports dockerfile style builds if you're wanting a security upgrade from containers (which, you should if you're using agents). Honestly, while I see firecracker replacing docker on the horizon I don't see firecracker replacing v8 isolates for most edge function execution. Firstly, this article's scenario is a bit unusual in that they were using someone else's isolates - so adding on a few hops; secondly isolates running JS/TS can be statically analyzed quite well, and at scale looking historically for issues and exploits, in many edge compute scenarios this is quite desirable. MicroVMs can have an awful lot more flexibility so to get the same benefit you have to really lock down what is available - the trade-offs for mid-size companies seems to benefit isolates. Obviously netlify is more than big enough and relies heavily on this that it leans in their favour.
CodesInChaos
> When the MicroVM boots up and the JavaScript server begins to listen on a port, we take a snapshot of the MicroVM. [...] we start a new MicroVM from that snapshot. That sounds scary, since forked RNG states can lead to catastrophic failures in UUID generators or cryptography.
yencabulator
> In the past, requests went out to a hosted execution service. Today, they run on MicroVMs inside our own edge network — roughly 5x faster at the median. So, the execution itself might now be slower as far as we know, they just eliminated some networking from the mix? Misleading.
groundzeros2015
I don't think isolates are good idea. We need kernel level process isolation. Chrome itself doesn't trust isolates.
WatchDog
All else being equal, v8 isolates should be lower latency than firecracker. As they mention, the v8 latency was because the v8 runtime was hosted externally. Firecracker has better security model. This old thread[0] with kentonv author of Cloudflare's workers platform covers some of the differences. [0]: https://news.ycombinator.com/item?id=31740885