New Mullvad VPN iOS feature it seems. Update your apps now!

The app walks you through what it is and the risks involved with the “Force all apps” feature. I’ve enabled mine anyway.

6 Likes
4 Likes

See that Proton, it is possible!

1 Like

iOS only.

iOS app that will contain a feature called Force all apps

Its great to see Mullvad doing this, although just like with Proton there will always be issues until Apples decides to fix them.

In both cases, your traffic will leak during the update process - we do not believe there is a workaround for this.

We do however expect a minority of our users using this feature will end up with a broken networking stack, and unfortunately there is not much we can do.

I did write an update about this under another thread (which, in hindsight, was rather silly as it fits here far more than it does there…)

So far, so good. Well, until 0556 this morning when I was still sleeping…

I check my DNS logs frequently and I was pleased to see a marked improvement on stability and no leaks of my true IP since Mullvad included the ‘force all’. Often, prior to this, I would see Apple’s sneakiness creep in at various points throughout the day and peek at my true IP. This was eradicated since turning this on in Mullvad.

To my horror, today, I can see that whilst sleeping my true IP was exposed to Apple (gateway, news-app-events, iosapps.iTunes) and attempts made with Amazon (the very common prod.service.minerva.devices.a2z [.com] which is blocked in any case).

There were no updates to Mullvad overnight that would involve the update loop, and I had no interaction with the device at that time, so I’m a little lost…

Have you reported your findings to Mullvad?

Yes :+1:t2:

2 Likes

Further -

Today at 0608 hours my true IP was exposed to gateway.iCloud[.com]

And then at 0943 the following:

gateway.icloud. [.com]

app-analytics-services. [.com]

mobilemaps.googleapis. [.com]

gateway.icloud. [.com]

Interestingly, re-reading the description in the Mullvad app it states:

So “Apple system apps and services” are “not affected”. I’m not sure if I read this correctly and has another meaning. I read this as ‘Apple can still do what they like’ (?). I thought the ‘includeAllNetworks’ was forcing this, too. Perhaps I was wrong.

As for the other leaks, I’m not sure. This may be caused by losing VPN connection and, as we know, Apple doesn’t have a killswitch…?