<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Releases on VPNW.com</title>
    <link>https://vpnw.com/tags/releases/</link>
    <description>Recent content in Releases on VPNW.com</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Fri, 09 Oct 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://vpnw.com/tags/releases/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>VPN Works 0.4.0: WireGuard Tunnels for One Program at a Time, Without Root</title>
      <link>https://vpnw.com/vpn-works-0.4.0-wireguard-tunnels-for-one-program-at-a-time-without-root/</link>
      <pubDate>Fri, 09 Oct 2026 00:00:00 +0000</pubDate>
      <guid>https://vpnw.com/vpn-works-0.4.0-wireguard-tunnels-for-one-program-at-a-time-without-root/</guid>
      <description>&lt;p&gt;&lt;strong&gt;VPN Works 0.4.0 sends one program through a WireGuard tunnel and leaves the rest of the machine alone. vpnw runs the tunnel itself, inside its own process, so it needs no root, no kernel module and no network interface.&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Give vpnw the WireGuard config your VPN provider or your own server hands out, and the program you name goes through it:&lt;/p&gt;&#xA;&lt;pre tabindex=&#34;0&#34;&gt;&lt;code&gt;vpnw guard --wireguard office.conf --policy agent.toml -- ./my-agent&#xA;&lt;/code&gt;&lt;/pre&gt;&lt;p&gt;Everything else on the machine keeps its usual network. The program is sealed in, so it can&amp;rsquo;t go around the tunnel, and every connection it makes is still checked against the policy and written down.&lt;/p&gt;</description>
    </item>
    <item>
      <title>VPN Works 0.4.1: All 17 Ways Out of the Sealed Sandbox Blocked, IPv6 Included</title>
      <link>https://vpnw.com/vpn-works-0.4.1-all-17-ways-out-of-the-sealed-sandbox-blocked-ipv6-included/</link>
      <pubDate>Fri, 09 Oct 2026 00:00:00 +0000</pubDate>
      <guid>https://vpnw.com/vpn-works-0.4.1-all-17-ways-out-of-the-sealed-sandbox-blocked-ipv6-included/</guid>
      <description>&lt;p&gt;&lt;strong&gt;VPN Works 0.4.1 adds no features. It closes the one gap the 0.4.0 tests left open, and it fixes a bug those same tests turned up along the way.&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;The gap was IPv6. A sealed program tries every known way around vpnw, and two of those ways go over IPv6. The machine that records the project&amp;rsquo;s figures has no IPv6 in its kernel at all, so those two tests never ran. 0.4.0 said so: 14 of 14 blocked, 2 not run.&lt;/p&gt;</description>
    </item>
    <item>
      <title>VPN Works Rebuilt as One Core With Plugins: What Moved Where in 0.3.0</title>
      <link>https://vpnw.com/vpn-works-rebuilt-as-one-core-with-plugins-what-moved-where-in-0.3.0/</link>
      <pubDate>Fri, 09 Oct 2026 00:00:00 +0000</pubDate>
      <guid>https://vpnw.com/vpn-works-rebuilt-as-one-core-with-plugins-what-moved-where-in-0.3.0/</guid>
      <description>&lt;p&gt;&lt;strong&gt;VPN Works started as five separate engines that each worked and didn&amp;rsquo;t add up to one thing. Version 0.3.0 rebuilt it from scratch as one small core, vpnw, with plugins for everything else.&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;The five engines of September were the Agent, Scope, Lab, Ledger and Exit. Each had its own binary, its own command line and its own browser demo. Underneath, the Agent&amp;rsquo;s code was already shaped like a core: a broker that takes every connection, a policy, paths, and one event model that everything spoke. What was missing was a way for everything else to plug into it.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
