Android bug can leak DNS traffic with VPN kill switch enabled
ID: 1a0b565c-7b7d-5162-ab41-3fa075bae24c
STIX ID: report--1a0b565c-7b7d-5162-ab41-3fa075bae24c
Feed Name: Bleeping Computer
Threat Score
Mullvad discovered that an Android bug (reported on April 22, observed on Android 14) can leak DNS queries outside active VPN tunnels—bypassing 'Always-on VPN' and the 'Block connections without VPN' kill switch—when apps use getaddrinfo or when VPNs reconfigure, crash, or are stopped; Mullvad described temporary workarounds for some cases, warned of privacy risks, and said the underlying fix should come from the OS while Google investigates.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
