Android bug leaks DNS queries even when VPN kill switch is enabled
ID: 924fe5f3-9637-59a2-b21b-4ad085d494aa
STIX ID: report--924fe5f3-9637-59a2-b21b-4ad085d494aa
Feed Name: Bleeping Computer
Threat Score
Mullvad discovered an Android bug (observed on Android 14) that can leak DNS queries outside an active VPN/kill-switch when apps use getaddrinfo directly or when the VPN tunnel is reconfigured or interrupted; this behavior undermines VPN privacy guarantees, Mullvad provides temporary mitigations (e.g., setting a bogus DNS server) but urges an OS-level fix, and Google says it is investigating.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
