Is it to avoid your ISP collecting browsing data off you and selling it?
Perhaps using 8.8.8.8 or 1.1.1.1 as your DNS might be good enough.
Is it to watch geo region blocked videos?
Then pretty much any service will work for you. Except that video streaming sites have caught on and blocked hosting provider IP blocks. So that might require you to shop around.
Do you want the most privacy or want to get around blocking?
Then get a VM from a provider and configure a VPN to it. Wireguard works fine.
Want to do something illegal?
Don't expect a VPN to save you.
I'm not condoning piracy, but VPNs are generally a foolproof way to avoid DMCA letters from your ISP. Privacy means something different to every individual, everyone's threat model is different. And many models can benefit from a VPN; journalists, activists, and many others might find benefit from using a VPN.
It seems like Torrenting died out significantly over the last 5 years.
Obviously, I have no interest in testing this out myself, so I take their word for it.
Except for those Linux ISOs, of course.
Just don't bother with Big Media content and they won't need a VPN...
There's plenty to do in life other than torrenting the latest HBO series.
And, "Plenty to do in life" is a value judgment, and isn't relevant to this discussion.
i just never wanted my job to hire some dumb IT consulting firm to do some cross between IPs on a swam and IPs VPNing in as a "threat analysis" and my dumb name getting dragged into an office. I know it's far fetched, but $40 a year of PIA keeps my mind at ease.
Defiantly don't spin up these VPN/VPSs on an account you don't mind losing.
They got a $1bi shakedown in a local court because they successfully fought the RIA in 2015 and won (it was $25mi then).
This time, Cox legal team tried to simply stand behind the DMCA safe-harbor (just like google does) and somehow lost.
it will appeal and win (or likely settle out of court as RIAA already got what it wanted, a hole in safe-harbor)
Which is sad because their pricing model is less stupid than most of the competition.
Wouldn't your ISP still see what IP's you are visiting? Then, your ISP could just reverse DNS that IP to get the domain name, right?
8.8.8.8 is Google’s DNS so you’re really just trading being tracked by an ISP to a giant advertising company...
(Disclosure: I work for Google)
A lot of google engineers read hacker news comments, reddit threads, etc. all the time, and generally try and route good feedback where it belongs.
People arguing against DNS over HTTPS claim stuff the doesn't happen so it'd be good to have definite examples.
If you want privacy with your DNS, you should setup DoH using dnscrypt-proxy or perhaps DNS over TLS.
Personally, I think a better strategy with this whole vpn aspect is to just setup a vpn with pis in various countries + pihole. At least that way I know what the setup is happening in each locations and what expectations of privacy I can expect.
At a conference I was talking to one of the OpenDNS engineers on the DoH project and when I asked "so how does DoH help snooping if people can just look at IP headers?" they conceded that it really doesn't help if someone is determined to snoop.
Edit: it _is_ easy to read the destination address from TCP packets though.
Also, unless it’s behind Cloudflare. Most nontrivial sites today have a unique IP so even with DoH there’s a good probability any specific site will be identified.
If you want your ISP to stay ignorant of where you surf, you MUsT have a VPN.
For this reason I am highly suspicious of any VPN service that markets itself as some “magical privacy wormhole”, which is 99% of VPN providers.
Honest ones I know of are Encrypt.me and Mullvad, who both tell you they should be mainly used to secure yourself on open WiFi and to circumvent geo blocks.
If you want a private internet connection, use TOR.
I'm immediately reminded of some shady search engine CEO going on OAN and other fringe shows posing as a security researcher to spread FUD about DDG to drive traffic to his site (can't find the link for it now.) That OAN video even went around the security industry (among compliance and less technical folk) who were persuaded DDG was now worse than Google for consumer privacy.
* Some consumer VPN services have been found to be doing sketchy things. And you can imagine the business is attractive to people intending to do sketchy things, since it's a powerful/lucrative position to be in right now. (In addition to the business possibly being attractive to people just wanting to provide a useful and honest service for a fair price.)
* There seem to have long been referral kickbacks by some consumer VPN services, which I assume is the cause of some of the huge amounts of noise on the Web and such about them (e.g., search hits on some non-VPN topics, such as some home theatre search terms, overwhelmed by SEO articles, the purpose of which is to then herd the reader towards particular VPN services with a kickback). Even some endorsements by organizations might essentially be more about revenue than about merits.
* I speculate that it doesn't help if one of the main historical uses of consumer VPNs has been for activity that would be considered copyright-violating in the US (e.g., unauthorized trading of video files, or circumventing region restrictions). Without making any moral judgments, I think it's fair to say that constitutes "conscious rule-breaking" for some, so I wouldn't be surprised if there's an disproportionate culture of rule-breaking around the whole space.
I cannot find anything reliable that suggests this! Thanks.
In particular, the claim that tesonet controls protonvpn's release signing key.
https://news.ycombinator.com/item?id=18611863
It seems very likely now, that ProtonMail just decided to use NordVPN's white-label solution to bootstrap its ProtonVPN business:
What really? Some proof for that? ProtonVPN and ProtonMail is located in Switzerland Genève, i dont see any open positions for estonia
They also have regularly been audited by independent organizations that are openly available for the public to see their compliance [2][3][4][5][6].
Do you have any evidence to suggest that they are honeypots?
[1] https://github.com/ProtonVPN
[2] https://protonvpn.com/blog/wp-content/uploads/2020/01/Proton...
[3] https://protonvpn.com/blog/wp-content/uploads/2020/01/Proton...
[4] https://protonvpn.com/blog/wp-content/uploads/2020/01/Proton...
[5] https://protonvpn.com/blog/wp-content/uploads/2020/01/Proton...
You can download the entire repository, and self compile yourself after you inspect the code.
Everything is opensource, the data s are located in Switzerland on there own hardware. They have open communication and a yearly transparency report: