https://arstechnica.com/security/2024/05/novel-attack-against-virtually-all-vpn-apps-neuters-their-entire-purpose/

Reply to this note

Please Login to reply.

Discussion

"(...) there are no ways to prevent such attacks except when the user's VPN runs on Linux or Android"

windows bad ig

wow uh

Android for the win.

"Interestingly, Android is the only operating system that fully immunizes VPN apps from the attack because it doesn't implement option 121."

nostr:nevent1qqswvp2hrfglhn7r50pwqvzld9nz43djyga2yd9x5gn5xk2gnzkz6kgpz9mhxue69uhkummnw3ezuamfdejj7q3qqqqqqqyz0la2jjl752yv8h7wgs3v098mh9nztd4nr6gynaef6uqqxpqqqqqqzwqk25t

Linux in general. The downside is that end users have (for them) confusing high level options such as "Ignore routes obtained via DHCP". Or the even more mysterious low level kernel parameters.