Remix.run Logo
nottorp 7 hours ago

> Because system_server operates with elevated networking privileges and is exempt from VPN routing restrictions

So a VPN isn't a VPN on Android? Regardless of this bug. Do other locked down operating systems act the same?

Paradigm2020 6 hours ago | parent | next [-]

Ios does the same, only way around it is if you have an ?enterprise? licence (250+ devices)

Mullvad and others reported on that one ages ago

pyaamb 11 minutes ago | parent | next [-]

a VPN enabled wifi router would suffice as a fallback tho right?

kqp 5 hours ago | parent | prev [-]

Is this really true? The Mullvad report a year or so ago was that they didn’t want to turn on no exceptions mode because it breaks network connectivity until reboot if you don’t pause it when updating the app, not that the feature doesn’t exist. They also recently shipped it anyway, opt in and behind a warning.

ncr100 6 hours ago | parent | prev | next [-]

Terminology like "private" and "trust" differ in meaning from computer land to human convention.

It's a concern to me, because humans often extend their trust to computer trust based upon misunderstanding of the identically spelled words and lack of recognition of differing context.

unethical_ban 6 hours ago | parent | prev | next [-]

MacOS has had instances where their own apps could bypass always-on VPN. I'm not sure if there have been exploits or gaps where traffic could go to arbitrary destinations directly.

spr-alex 6 hours ago | parent [-]

this is not an ocassional bug this is still the system design today. privacy gateways upstream of big tech are the way to go on this because privacy isn't their profit center

mmooss 6 hours ago | parent | prev [-]

How hard would it be to fix the system_server (and any other) bypass?