I think the only reason now to use a vpn, is to login to a site as if from a different location, if the site blocks your region, or sensor some of its content
Any other good reason to use a vpn
I think the only reason now to use a vpn, is to login to a site as if from a different location, if the site blocks your region, or sensor some of its content
Any other good reason to use a vpn
I've recently been describing what a commercial VPN provides to non-technical friends and family as a type of "global virtual Internet cafe" subscription - the pros and cons of using a physical Internet cafe mostly apply. An Internet cafe isn't inherently (i.e. due to technical benefits of underlying technology) any more or less secure than connecting to your home or work wifi/network, and the Internet cafe knows who you are and what websites you're visiting, but your ISP/employer doesn't (since you're "at" the Internet cafe, not on your home/work network).
Of course, your ISP/employer does know that you're visiting the Internet cafe, and in the case of work (and some ISPs) can stop you from doing so.
If you visit a website from an Internet cafe, the website may still be able to figure out who you are, just like they can when you bounce between different networks normally. And of course, if you login to your account on a website or put your shipping address or something in when buying something, you're self identifying (unless you have throwaway accounts or forwarding addresses or whatever).
And finally, if someone really wants to figure out who you are to a high degree of confidence, they will.
I find this lands pretty well and is close enough to being technically correct without getting into the details that non-technical people would start glazing over if I got into.
- untrusted networks (public wifi)
- normalize usage of privacy preserving practices
HTTPS covers the content, but for most people the DNS lookup would still be in plaintext.
Let's say every website is still on HTTP (not S). How does a VPN for daily use help you at all?
Your traffic traverses the Internet unencrypted anyway: either from your ISP to target server, or from the VPN's ISP to target server.
It shifts the responsibility from one party to another, but it doesn't reduce the unencrypted path. Instead of trusting your ISP, you now have to trust a shady operator that often promises not to comply with local laws when the police comes with a warrant. They often also don't have assets to seize, so little reason to be legit. And it's not like you can stop paying the ISP that you are so distrustful of. It only costs you more money.
It's good for hiding metadata like sites you access. In my country there's a recent law demanding ISP to record metadata and allowing many agencies to access it without warrant.
[0]: https://www.cloudflare.com/learning/ssl/what-is-encrypted-sn...
All HTTPS does is make sure they can’t see what you are transferring. There is still meta data to whom.
Why do you think google runs 8.8.8.8? It’s not out of kindness.
Only in some countries ;)