The HackWednesday archive

Understand the threat.
Find your next move.

Security analysis, incident lessons, and practical guides for teams working with AI. Search the archive or choose a topic.

49-60 of 106 articlesNewest first

Articles

Cloud

wolfSSL, SSF, and the Security Risk Hidden Inside Secure Tunnels

wolfSSL support for Secure Socket Funneling shows why defenders need to track the cryptographic libraries beneath tunneling tools. Recent wolfSSL findings are a reminder that a tunnel is only as trustworthy as its certificate validation, build options, and patch path.

4 min read

AI-assisted Awaiting editor review

Incident Response

MiniPlasma Shows Why Security Teams Cannot Treat Old Windows Fixes as Closed Forever

MiniPlasma is a newly published Windows privilege-escalation proof of concept that reportedly revives the old CVE-2020-17103 path and turns a standard user foothold into SYSTEM access. The bigger lesson is about patch confidence, regression risk, and why defenders need validation beyond release notes.

4 min read

AI-assisted Awaiting editor review

AI in Security

OpenAI Daybreak Treats Cyber Defense as a Software Design Problem

OpenAI's new Daybreak initiative reframes cyber defense around resilient-by-design software, Codex-powered remediation workflows, and a tiered trusted-access model for increasingly cyber-capable AI.

4 min read

AI-assisted Awaiting editor review

AI in Security

OpenAI's Cyber Action Plan Treats AI Defense as Shared Infrastructure

OpenAI's April 29 cyber action plan argues that AI-powered defense should be distributed broadly, and recent Microsoft and Google moves suggest the industry is starting to build the operational infrastructure to do it.

2 min read

AI-assisted Awaiting editor review