FINDING · EVALUATION

VPNalyzer is the first study to measure DNS leaks during tunnel failure, discovering that 8 VPN providers — including TunnelBear and Private Internet Access — allow DNS queries to bypass their kill switch or firewall rules, exposing users' ISP IP addresses and queried domain names to their ISP and DNS resolvers outside the tunnel.

From 2022-ramesh-vpnalyzerVPNalyzer: Systematic Investigation of the VPN Ecosystem · §VI-B · 2022 · Network and Distributed System Security Symposium

Implications

Tags

censors
generic
techniques
measurement-platform
defenses
tunneling

Extracted by claude-sonnet-4-6 — review before relying.