FINDING · EVALUATION

29 of 80 VPN providers — including paid services — configure clients to resolve DNS through third-party public resolvers (Google Public DNS, Cloudflare, OpenDNS, Quad9) rather than provider-operated infrastructure. Three self-hosted solutions (Algo, Streisand, Outline) hardcode public DNS with no easy override, causing connection failures in regions where those services are blocked.

From 2022-ramesh-vpnalyzerVPNalyzer: Systematic Investigation of the VPN Ecosystem · §VI (Fig. 5) · 2022 · Network and Distributed System Security Symposium

Implications

Tags

censors
generic
techniques
ip-blockingmeasurement-platform
defenses
tunneling

Extracted by claude-sonnet-4-6 — review before relying.