Conversion Hackers
Fealse: Tech News
It's possible Apple's Private Relay VPN isn't so private after all
  • How To

It’s possible Apple’s Private Relay VPN isn’t so private after all

  • April 27, 2022
  • admin
Total
0
Shares
0
0
0


A potential security flaw in iCloud Private Relay can lead Apple’s VPN to ignore firewall rules and send some data back to the iPhone maker’s servers.

This leak itself was first discovered by the VPN company Mullvad which was monitoring network connections while working on its own app.

For those unfamiliar, Private Relay functions in a similar way to a VPN tunnel or how Tor works by routing a user’s encrypted network through relay servers before it reaches the internet. The service is currently still in beta and is only available in certain regions though it also requires a paid iCloud+ subscription.

TechRadar Pro reached out to Apple regarding this potential leak in iCloud Private Relay but we’ve yet to hear back at the time of writing. However, since the service is still in beta, this issue could be rectified before it becomes generally available. Since iCloud Private Relay’s beta release coincided with the launch of iOS 15, Apple could make the service available in full with the release of iOS 16 in September of this year.

Ignoring firewall rules

According to a new blog post from Mullvad, the VPN company was monitoring network connections when it noticed that QUIC traffic was leaving one of its computers outside of a VPN tunnel.

Disabling Apple’s Private Relay feature made the leaks stop and the company has even provided instructions so that other users can reproduce the leak on their own. Mullvad also  pointed out in its blog post that Private Relay (mostly) disables itself as soon as any firewall rule is added to the Packet Filter (PF) system firewall on macOS devices. 

As such, the company believes that the leak itself is just some kind of heartbeat signal calling home to Apple. Although it’s impossible to know what information is transmitted to Apple’s servers, the leak does send a clear message to both your local network and ISP that you might be a macOS user.

At this time, Mullvad is unaware of any way to prevent Private Relay from leaking user traffic back to Apple but the company recommends that users disable the feature altogether for the time being if their threat model forbids their local network or ISP from knowing what kinds of devices they’re currently using.

Via AppleInsider

Total
0
Shares
Share 0
Tweet 0
Pin it 0
admin

Previous Article
Log4j Attack Surface Remains Massive
  • Security

Log4j Attack Surface Remains Massive

  • April 26, 2022
  • admin
View Post
Next Article
Xbox Series X/S brings in more money than every other console in Q1 2022
  • Apps

Xbox Series X/S brings in more money than every other console in Q1 2022

  • April 27, 2022
  • admin
View Post
You May Also Like
Google Search is actually getting better at giving you what you need
View Post
  • How To

An underrated Google Search feature is getting a major upgrade

  • admin
  • May 20, 2022
This Netgear Orbi firmware update actually locked out users
View Post
  • How To

This Netgear Orbi firmware update actually locked out users

  • admin
  • May 20, 2022
Ethical hackers no longer face prosecution in the US
View Post
  • How To

Ethical hackers no longer face prosecution in the US

  • admin
  • May 20, 2022
New US bill could deliver a gut-punch to Google and Facebook
View Post
  • How To

New US bill could deliver a gut-punch to Google and Facebook

  • admin
  • May 20, 2022
IT workers believe ransomware is as serious as terrorism
View Post
  • How To

Conti ransomware group officially shuts down – but probably not for long

  • admin
  • May 20, 2022
Steam Deck gets a fix for one of its biggest problems with Windows 11
View Post
  • How To

The new Steam Deck update makes the console cooler and louder

  • admin
  • May 20, 2022
HBO Max piles pressure on Netflix and Disney Plus with latest streaming milestone
View Post
  • How To

HBO Max piles pressure on Netflix and Disney Plus with latest streaming milestone

  • admin
  • May 20, 2022
Sony has made its PS Plus classics much more appealing
View Post
  • How To

Sony has made its PS Plus classics much more appealing

  • admin
  • May 20, 2022

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Categories
  • Apps
  • Games
  • How To
  • News
  • Photography
  • Reviews
  • Security

Input your search keywords and press Enter.