How Attackers Can Decloak Routing-Based VPNs For a Total VPN Leak

May 6th, 2024

I’ve been advising Cryptogon readers not to trust VPNs for a couple of decades, but not for this reason.

My guess is that a lot of VPN admins are checking their configurations right now.

Even if this DHCP exploit is mitigated, it doesn’t change the fact that the VPN provider can see every site you visit* and it’s an act of faith on your part that the provider is not storing your activity.

*Unless you’re running Tor over it as well.

Via: Leviathan Security Group:

…there are ways an attacker who is on the same network as a targeted user might be able to become their DHCP server…

Leave a Reply

You must be logged in to post a comment.