yeah, it makes me think i'll prefer to use my mobile data if i'm in a sketchy or unfamiliar place... i don't really go out much and i pay almost nothing for my mobile service and almost don't use it at all... it's not a big threat for me but i'm gonna probably think about removing all but my home wifi and that's that... i can even replace my router, and route all my home network traffic through the mini pc i run my bitcoin node on
Discussion
also, just to point out, this is all moot with IPv6 or static IP addresses
they didn't mention that, but thinking it through, if the device has a network address assigned in another way than DHCP then it's irrelevant also
i set up, briefly, my SSH access to a VPS that went only over wireguard... an OS level feature that makes this namespace configuration simpler would completely obviate the problem... i mean, even windows machines could run this service in WSL2 and only give access to the outside to WSL, or similar with macos...
i love my wireguard VPN... but not for the sense of security against snooping or locating me so much as the way it lets me create my own virtual ... ahem... private networks... which you can't do with most VPN services, only the ones you run yourself, and wireguard is built into linux kernel now too