u/Same-Pollution2542

Proton VPN is rebuilding its infrastructure to fight censorship

Saw this news about Proton VPN and thought it was pretty interesting, even if you're not super technical.

Basically, Proton is replacing wireguard-go, one of the components used to run WireGuard connections, with its own new VPN core written in Rust, internally called ProTUN.

The important part isn't really "Go vs Rust" though.

Instead of relying on a relatively simple WireGuard client, Proton is building its own framework around WireGuard. The idea is to have more control over how the VPN behaves across Windows, macOS, Linux, Android, etc., and make it easier to improve things like connection stability, performance and battery usage.

It could also become pretty interesting for censorship. Proton says this new architecture should make it easier to build stronger anti-censorship techniques directly into the VPN stack. They're also working on another component called Muon, designed to help Proton apps reach their VPN API even when the API itself is being censored or blocked.

Longer term, Proton says this architecture could also provide the foundation for things like post-quantum cryptography.

So for the average user, you're probably not going to open Proton VPN tomorrow and notice some massive difference.

But under the hood, this seems like a pretty significant change: rather than just implementing existing VPN protocols, Proton is building more of the networking stack itself so it can control how those protocols evolve.

reddit.com
u/Same-Pollution2542 — 7 days ago

Rare win for internet freedom: Iranian court pushes back on VPN criminalization

This is pretty wild considering how heavily Iran restricts the internet. A Tehran criminal court reportedly acquitted someone who was being prosecuted for advertising and selling VPN services. Prosecutors argued that VPNs basically provide “unauthorized access.”

The judge wasn't buying it.

The court's reasoning was pretty simple: if you're using a VPN to bypass filtering and access content that was already publicly available online, you're not “hacking” or gaining unauthorized access to some protected system. And unless the law specifically says VPN use/sales are a crime, courts shouldn't just stretch existing laws to make them one.

Honestly, that's a surprisingly sane take on VPNs. A VPN is a tool. Using one to access a blocked website doesn't magically turn someone into a cybercriminal.

Obviously, don't celebrate too quickly. The ruling is apparently isolated, can still be appealed, and even the organization reporting it warns that this doesn't mean Iran's broader approach to internet censorship has changed.

Still, it's kind of ironic when a court inside one of the world's most heavily filtered internet environments basically says: “Bypassing censorship ≠ unauthorized access.”

Small ruling, but potentially a pretty important precedent.

reddit.com
u/Same-Pollution2542 — 10 days ago

Russia just broke 20+ VPNs in one move... and it's getting worse

Looks like Russia is turning the screws even tighter on VPNs. Reports say 20+ VPN services went down after Roskomnadzor started blocking IP addresses used by major hosting providers. Instead of blocking individual VPNs, they're going after the infrastructure they rely on, which is way more disruptive.

What's even crazier is what's being proposed next. Hosting providers could be forced to constantly monitor their IPs for VPN activity, and if they can't prove it's being used for a legitimate business purpose within 24 hours, those IPs can lose protection from blocking. On top of that, users may have to verify their identity through the government portal, biometrics, or an in-person passport check. If you're only verified by a phone number or bank card, your service could reportedly be cut off in as little as 30 minutes.

This isn't really about "bad VPNs" anymore. It's about making privacy tools so difficult to operate that providers either comply or disappear.

Feels like another reminder that internet censorship isn't slowing down... it's just getting more sophisticated. How long before more countries start copying this playbook?

reddit.com
u/Same-Pollution2542 — 15 days ago

AI just made online scams ridiculously cheap... and it's only getting worse

Saw an interesting article today about how AI is basically turning cybercrime into a low-cost, high-scale business.

According to NordVPN's CTO, you can apparently buy a stolen digital identity (login credentials, email account, credit card, even ID documents) for around $19 on the dark web. Add AI to the mix, and now scammers can spin up convincing phishing sites, fake online stores, voice clones, and deepfakes in minutes instead of spending days or weeks.

That's the scary part. AI isn't necessarily making scams better, it's making them cheaper and easier to mass produce. If it costs almost nothing to launch thousands of phishing campaigns, attackers only need a tiny success rate to make serious money.

We've already seen deepfake scams where companies lost millions because employees believed they were on a video call with their CFO. Imagine what happens when those tools become even more accessible.

I also think this is why VPN companies are starting to bundle things like dark web monitoring, identity protection, breach alerts, and anti-phishing features instead of just offering encrypted tunnels. A VPN alone won't save you if someone tricks you into handing over your login or steals your session cookies.

The biggest takeaway for me is that the weakest link is becoming the human, not the technology. AI is lowering the barrier for scammers much faster than most people are improving their online security habits.

reddit.com
u/Same-Pollution2542 — 17 days ago

Proton VPN's anti-censorship Stealth protocol finally lands on Linux

Proton VPN has finally brought its Stealth protocol to Linux, marking a significant step toward feature parity across platforms. The feature is currently available in beta for users of the Linux GUI app on Debian, Ubuntu, and Fedora.

Stealth is Proton VPN's anti-censorship protocol. It disguises VPN traffic as regular internet traffic, making it much harder for governments, ISPs, or network administrators to detect and block VPN usage. This is particularly useful for users in countries with heavy internet censorship, such as China, Russia, and Iran.

Until now, Linux users were missing this capability despite it being available on Windows, macOS, Android, and iOS. TechRadar notes that the Linux community had been requesting the feature for a long time, and its arrival is an important milestone for users who rely on Linux as their primary operating system.

The release is part of Proton VPN's broader effort to improve its Linux experience, following recent updates such as a redesigned GTK4 interface, a revamped command-line app, and the official Snap package.

reddit.com
u/Same-Pollution2542 — 28 days ago

Hackers don't need your password if your VPN isn't patched

A ransomware group called Qilin is taking advantage of a recently discovered security flaw in Palo Alto's VPN software, which many businesses use to let employees securely access company systems from home or while traveling.
The flaw allows attackers to get into company networks without needing a valid username or password in certain cases. Once inside, they can steal sensitive files, spread through the company's systems, and eventually lock everything down with ransomware while demanding a payment.

Security experts have already seen several companies compromised this way, and both Palo Alto and CISA (the US cybersecurity agency) are urging organizations to install the latest security updates as soon as possible.

So if your company relies on a VPN to provide remote access, keeping it fully updated is critical. VPNs are often the first thing hackers target because they can provide a direct path into an organization's network if left vulnerable.

reddit.com
u/Same-Pollution2542 — 29 days ago

UK drops legal action against deadly forum because of geoblocking

The UK regulator Ofcom has ended its enforcement action against an online suicide forum that has reportedly been linked to 164 deaths in the UK.

Their reasoning is that the site now geoblocks UK IP addresses, meaning it's inaccessible to most users in the country. However, critics point out that the geoblock can still be bypassed with a VPN, so determined users can continue accessing it.

Earlier this year, Ofcom fined the site's operator £950,000 under the Online Safety Act, but the operator has refused to pay and disputes UK jurisdiction. Ofcom says it has now exhausted the legal powers available to it and will simply monitor whether the geoblock remains in place.

This raises an interesting question about online regulation.

If a website blocks users from a specific country but anyone can bypass it with a VPN, should regulators consider that "good enough"?

reddit.com
u/Same-Pollution2542 — 1 month ago

Russia backs off its plan to tax VPN traffic (for now)

Looks like Russia just hit the brakes on one of its most controversial internet proposals.
The government has now confirmed it won't introduce extra fees on VPN traffic, despite months of reports that users could be charged for using more than 15GB of international traffic per month. Since most Russian carriers classify VPN traffic as "international," this would've basically been a tax on using a VPN.

To me, this always felt like a terrible idea. When people are already using VPNs because YouTube, Facebook, Instagram, WhatsApp, Telegram, and countless other services are restricted, making them pay extra just to access the open internet was only going to push people toward more workarounds.

That said, I'd be careful about celebrating too early. The proposal has been delayed and revived more than once, and Russia has continued tightening restrictions on VPN use in other ways. This announcement only means the traffic fee isn't happening right now.

reddit.com
u/Same-Pollution2542 — 1 month ago

Big Tech accidentally turned VPNs into a normal thing

Honestly it’s kinda funny watching Big Tech complain about VPNs when they’re the ones who made them mainstream in the first place.

Back then VPNs were mostly for tech nerds, torrent users, or hardcore privacy people. Now even casual internet users run one because the modern web feels broken without it.

Google wants to track everything for ads. Meta follows you across apps and websites. Netflix, Disney+, and sports platforms keep region-locking content. TikTok and YouTube constantly change recommendations depending on your country and profile. Amazon has literally been accused multiple times of showing different prices depending on region and user behavior. Even AI tools now launch in the US first while the rest of the world gets “not available in your country.”

And governments aren’t helping either with age verification laws, ISP filtering, DNS blocking, mandatory ID checks, and pressure on platforms to monitor users more aggressively.

Then these same companies act surprised that people use VPNs.

Of course they hate VPNs. VPNs reduce tracking quality, mess with ad profiling, bypass geo-restrictions, weaken location-based monetization, and make it harder to build detailed behavioral data on users. A user behind a VPN is simply less predictable and less profitable.

Personally I think VPNs are becoming less about “privacy paranoia” and more about keeping a normal open internet experience. People are just tired of being tracked, segmented, profiled, and blocked depending on where they live or what network they use.

Big Tech basically created an internet where using a VPN started feeling normal.

reddit.com
u/Same-Pollution2542 — 1 month ago

Gabon blocks social media, VPN demand instantly explodes

Gabon has officially suspended major social media platforms “until further notice,” claiming it’s to fight misinformation and protect national stability. Almost immediately, reports showed a massive spike in VPN usage as people looked for ways around the restrictions.

Every time a government blocks access to platforms, the same thing happens:
People don’t stop using the internet, they just start using VPNs.

This is another reminder that online privacy and unrestricted access to information matter more than ever.

reddit.com
u/Same-Pollution2542 — 2 months ago

UK digital rights groups launch "Stop Killing the Internet" campaign in response to proposed under-16 social media ban

Just a day after the UK government announced its proposed social media ban for under-16s, several digital rights organizations have launched a new campaign called Stop Killing the Internet.

The campaign is backed by groups including Open Rights Group, Big Brother Watch, and Index on Censorship. They argue that policies like mandatory age verification and expanded online restrictions risk increasing surveillance, reducing privacy, and creating broader controls over internet access in the name of protecting children.

According to the organizers, the campaign isn't against child safety, it argues that there are better ways to protect young people without requiring invasive identity checks or undermining digital rights for everyone.

The movement is also calling for public support and has launched a petition urging the UK government to reconsider the proposed legislation

reddit.com
u/Same-Pollution2542 — 2 months ago

Mullvad CEO reportedly donated millions to controversial Swedish political party

A Swedish media outlet just reported that a prominent tech figure connected to Mullvad allegedly donated millions of SEK to Örebropartiet, a controversial local political movement in Sweden associated with Markus Allard.
The story is now creating debate in privacy and tech circles, especially because Mullvad has long been viewed as one of the most trusted privacy-focused VPN companies.

Some people argue personal political donations should remain separate from the company itself, while others believe users have the right to know where influential tech leaders financially support political movements.

The article also raises broader questions around transparency, tech money in politics, and whether privacy-focused companies are held to a different ethical standard by their communities.

What do you think guys, should personal donations matter if the product itself remains solid?

reddit.com
u/Same-Pollution2542 — 2 months ago

The VPN boom shows why cybersecurity isn’t slowing down

Everyone keeps talking about AI stocks, but honestly cybersecurity might be one of the safest long-term bets out there right now.

This article from Insider Monkey says the VPN market alone could hit $182B by 2030, with over 1.75 billion people already using VPNs globally. That’s basically 1 out of 3 internet users.

And it’s not just “privacy nerds” anymore. Governments are pushing more surveillance, companies keep getting breached, public Wi-Fi is still a disaster, and ransomware groups are actively targeting VPN infrastructure itself. Just this month, CISA warned US agencies to urgently patch exploited VPN vulnerabilities tied to ransomware attacks.

What’s interesting is that cybersecurity demand is now coming from BOTH enterprises and normal consumers at the same time. Companies are spending billions because breaches are insanely expensive, while regular people are downloading VPNs because they don’t trust networks, ISPs, governments, or random apps anymore.

Feels like we’ve crossed the point where online privacy tools are “optional.” They’re slowly becoming basic internet hygiene, like antivirus used to be.

The surprising part imo is that people still only start caring after they get hacked, leaked, or locked out of an account.

Do you think VPNs and cybersecurity tools are becoming mainstream utilities now, or is this still a niche market inflated by fear?

reddit.com
u/Same-Pollution2542 — 2 months ago

China may have accidentally admitted VPNs still work

A Chinese defense-linked company reportedly published, and then quickly deleted, a paper describing a system designed to detect and monitor VPN use on university campuses.

What stands out isn't that China wants to stop VPNs. Everyone already knew that. What stands out is that after years of censorship, blocking, and anti-circumvention efforts, they're apparently still developing new tools specifically to identify VPN traffic.

If VPNs weren't a problem, why keep investing in ways to detect them?

To me, this looks like another reminder that the battle between censorship and privacy tools is far from over. Every new detection method creates demand for better obfuscation and stealth technologies.

Ironically, a report about monitoring VPN users may be one of the strongest arguments for why VPNs remain important in the first place.

reddit.com
u/Same-Pollution2542 — 2 months ago

Nothing sells VPNs better than censorship

Telegram gets restricted and suddenly India sees 919k VPN downloads in a single day, ALMOST a million, that’s insane!!

Every time governments try to put walls around the internet, people just find another door.
Honestly, this feels like a reminder that users value privacy and open access way more than policymakers think.
VPNs aren't the problem, they're the workaround people choose when restrictions get in the way.

The internet routes around censorship, and VPNs are proof of it

reddit.com
u/Same-Pollution2542 — 2 months ago

“FortiBleed” leak may have exposed credentials for 70,000+ Fortinet devices worldwide

A pretty alarming cybersecurity story is blowing up right now around something researchers are calling “FortiBleed.”

Apparently a leaked dataset may contain credentials and configs linked to more than 70,000 Fortinet / FortiGate devices across nearly 200 countries. Researchers claim the data includes VPN logins, admin credentials, internal configuration files, and in some cases even plaintext passwords.

What’s wild is that a lot of these devices are reportedly still exposed online. The leak is supposedly tied to a huge credential stuffing and brute-force operation targeting FortiGate infrastructure over a long period of time. Some reports mention over a billion login attempts against internet-facing systems before attackers started collecting configs and credentials from compromised devices.

HKCERT already published a warning saying organizations in Hong Kong could be affected, but honestly this looks global. Telecom companies, manufacturers, infrastructure providers, and government-related organizations are all being mentioned.

The whole thing is giving serious flashbacks to the old Fortinet SSL-VPN leaks from a few years ago, except this dataset sounds way bigger and more recent.

If your company still has internet-facing FortiGate appliances, now is probably a good time to rotate credentials, check logs, review admin accounts, and make sure nothing weird has been sitting inside the network unnoticed.

2026 really feels like the year perimeter devices became public enemy #1 again.

reddit.com
u/Same-Pollution2542 — 2 months ago

Free VPNs are getting sketchier every year…

Just saw a new report from Darktrace about Hola VPN allegedly being abused for malware delivery and even cryptomining activity. Apparently some infected systems were downloading suspicious .exe files through Hola-related infrastructure, and in some cases devices ended up mining Monero in the background.

What’s wild is that Hola has been controversial for YEARS because of its peer-to-peer model where users basically become exit nodes for other people’s traffic. So your device can literally be used as part of someone else’s network.

And now security researchers are seeing traffic patterns linked to malware delivery, suspicious downloads, Tor activity, and crypto miners. That’s a pretty insane combo for something marketed as a “VPN.”

This is exactly why “free VPN” should instantly raise red flags. If you’re not paying for the product, there’s a decent chance YOU are the product.

People on Reddit have already been complaining about hidden miners and weird CPU spikes linked to Hola for months too.

reddit.com
u/Same-Pollution2542 — 2 months ago

Hackers claim they breached the Council of Europe and stole HR + payroll data

Hackers from the ShinyHunters group are claiming they breached the Council of Europe and stole hundreds of gigabytes of sensitive employee data. According to reports, the leak allegedly includes HR files, payroll data, home addresses, salaries, tax info, bank details, and even medical records.
This is literally one of Europe’s biggest human rights organizations, and now employees could potentially face phishing attacks, fraud, identity theft, or blackmail if the leak is real. The Council of Europe hasn’t officially confirmed the breach yet.
Feels like every month there’s another “secure” European institution getting exposed while governments keep asking citizens for more personal data and stricter digital ID systems.

reddit.com
u/Same-Pollution2542 — 2 months ago

Utah is blaming VPNs because their law makes no sense

Instead of admitting age verification laws are easy to bypass and create huge privacy risks, they’re now talking about holding websites responsible if users access them through a VPN.

That logic is insane to me. Millions of normal people use VPNs every day for privacy, work, public Wi-Fi security, avoiding tracking, or just because they don’t want every company and ISP spying on them 24/7.

But governments keep pushing this narrative that if you use a VPN, you must be doing something shady. Feels like we’re slowly normalizing the idea that online privacy itself is suspicious behavior.

Total nonsense…

reddit.com
u/Same-Pollution2542 — 2 months ago