TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

NordVPN confirms it was hacked

1368 pointsby afshinmehover 5 years ago

68 comments

LennyWhiteJrover 5 years ago
&gt; <i>The attacker gained access to the server — which had been active for about a month — by exploiting an insecure remote management system left by the datacenter provider, which NordVPN said it was unaware that such a system existed.</i><p>This screams for clarification and I&#x27;d love for someone more knowledgeable in the area to elaborate on it. Is this common practice for data-center providers? Do I now not only have to worry about my own infrastructure security but also worry that my IaaS provider hasn&#x27;t installed some backdoor to my servers?
评论 #21313476 未加载
评论 #21312986 未加载
评论 #21313097 未加载
评论 #21330550 未加载
评论 #21313010 未加载
评论 #21313541 未加载
评论 #21313002 未加载
评论 #21313024 未加载
评论 #21313370 未加载
评论 #21344990 未加载
评论 #21318369 未加载
评论 #21313103 未加载
评论 #21312992 未加载
评论 #21320072 未加载
评论 #21313003 未加载
justiczover 5 years ago
If you care less about the pseudo-anonymous-but-not-really shared-IP aspect of using a VPN, and care more about the this-lan-is-sketchy use case, I have had good experiences with Algo [0]. You can just paste in an API key and spin up your own VPN on something like DigitalOcean. And it uses WireGuard!<p>[0] <a href="https:&#x2F;&#x2F;github.com&#x2F;trailofbits&#x2F;algo" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;trailofbits&#x2F;algo</a>
评论 #21312350 未加载
评论 #21312509 未加载
评论 #21320855 未加载
评论 #21312306 未加载
评论 #21318642 未加载
评论 #21320462 未加载
评论 #21323961 未加载
评论 #21320430 未加载
评论 #21312289 未加载
评论 #21321685 未加载
safeplanet-fesaover 5 years ago
What about the data-mining and selling infrastructure of NordVPN, known as Tesonet? Are those intact? Also interesting to know how their legal departments are doing, such as the Panamanian shell and the Lithuanian headquarters.<p><a href="http:&#x2F;&#x2F;vpnscam.com&#x2F;wp-content&#x2F;uploads&#x2F;2018&#x2F;08&#x2F;2018-08-24-09_09_14-Window.png" rel="nofollow">http:&#x2F;&#x2F;vpnscam.com&#x2F;wp-content&#x2F;uploads&#x2F;2018&#x2F;08&#x2F;2018-08-24-09_...</a><p><a href="http:&#x2F;&#x2F;vpnscam.com&#x2F;hola-vpn-and-nordvpn-partners-in-data-mining-bot-network&#x2F;" rel="nofollow">http:&#x2F;&#x2F;vpnscam.com&#x2F;hola-vpn-and-nordvpn-partners-in-data-min...</a><p><a href="http:&#x2F;&#x2F;vpnscam.com&#x2F;nordvpn-protonvpn-proton-mail-owned-by-tesonet-ceo-darius-bereika&#x2F;" rel="nofollow">http:&#x2F;&#x2F;vpnscam.com&#x2F;nordvpn-protonvpn-proton-mail-owned-by-te...</a>
评论 #21319946 未加载
rikkipittover 5 years ago
NordVPN just posted this a few minutes ago: <a href="https:&#x2F;&#x2F;nordvpn.com&#x2F;blog&#x2F;official-response-datacenter-breach&#x2F;" rel="nofollow">https:&#x2F;&#x2F;nordvpn.com&#x2F;blog&#x2F;official-response-datacenter-breach...</a>
评论 #21318126 未加载
评论 #21313033 未加载
评论 #21312811 未加载
eyegorover 5 years ago
What this article is missing is that the hackers had root access and had NordVPNs private key for their HTTPS cert for several months in 2018. This went undetected for months and they&#x27;re only now publically admitting what happened due to press attention. Their public response seems to be &quot;it&#x27;s not a big deal guys, mitm is hard&quot;.<p><i>&gt; The key wasn&#x27;t set to expire until October 2018, some seven months after the March 2018 breach</i><p><a href="https:&#x2F;&#x2F;crt.sh&#x2F;?id=10031443" rel="nofollow">https:&#x2F;&#x2F;crt.sh&#x2F;?id=10031443</a><p>And here&#x27;s a dump of their logs: <a href="https:&#x2F;&#x2F;share.dmca.gripe&#x2F;hZYMaB8oF96FvArZ.txt" rel="nofollow">https:&#x2F;&#x2F;share.dmca.gripe&#x2F;hZYMaB8oF96FvArZ.txt</a>
评论 #21349813 未加载
mdorazioover 5 years ago
Someone is probably going to ask what other HN users recommend as an alternative. Personally, I use Private Internet Access because they&#x27;re the only provider I&#x27;ve found with a track record of demonstrably not being able to turn your records over to someone asking for them [1].<p>[1] <a href="https:&#x2F;&#x2F;torrentfreak.com&#x2F;private-internet-access-no-logging-claims-proven-true-again-in-court-180606&#x2F;" rel="nofollow">https:&#x2F;&#x2F;torrentfreak.com&#x2F;private-internet-access-no-logging-...</a>
评论 #21312576 未加载
评论 #21312940 未加载
评论 #21312810 未加载
评论 #21317686 未加载
评论 #21312556 未加载
评论 #21312401 未加载
评论 #21319961 未加载
评论 #21312486 未加载
评论 #21313054 未加载
评论 #21312535 未加载
评论 #21312066 未加载
评论 #21316619 未加载
评论 #21321025 未加载
评论 #21323266 未加载
评论 #21313803 未加载
评论 #21312254 未加载
评论 #21313196 未加载
评论 #21318331 未加载
评论 #21312173 未加载
评论 #21312154 未加载
评论 #21312671 未加载
fauigerzigerkover 5 years ago
<i>&gt;NordVPN said it found out about the breach a “few months ago,” but the spokesperson said the breach was not disclosed until today because the company wanted to be “100% sure that each component within our infrastructure is secure.”</i><p>So instead of allowing their customers to do their own damage limitation, they left their customers in the dark and continued to expose them to a breach they weren&#x27;t sure they had fully contained.<p>I wonder when that sort of thing will become a criminal offence.
评论 #21314249 未加载
评论 #21316001 未加载
评论 #21314234 未加载
评论 #21313526 未加载
评论 #21313234 未加载
评论 #21313382 未加载
评论 #21314460 未加载
评论 #21313413 未加载
评论 #21313497 未加载
评论 #21315487 未加载
CiPHPerCoderover 5 years ago
This is always topical: Don&#x27;t use VPN Services<p><a href="https:&#x2F;&#x2F;gist.github.com&#x2F;joepie91&#x2F;5a9909939e6ce7d09e29" rel="nofollow">https:&#x2F;&#x2F;gist.github.com&#x2F;joepie91&#x2F;5a9909939e6ce7d09e29</a>
评论 #21313448 未加载
评论 #21313422 未加载
评论 #21313666 未加载
评论 #21313282 未加载
评论 #21313561 未加载
评论 #21315489 未加载
评论 #21313524 未加载
评论 #21317359 未加载
评论 #21313246 未加载
评论 #21316852 未加载
_-___________-_over 5 years ago
I don&#x27;t understand the obsession with VPN providers. Funneling all your Internet access through a single entity no matter where you connect from just seems like a fundamentally bad idea to me, especially if that entity&#x27;s business is getting people to funnel all their traffic through, making them a juicy target for governments or hackers.
评论 #21312938 未加载
评论 #21312534 未加载
评论 #21312510 未加载
评论 #21313124 未加载
评论 #21315226 未加载
评论 #21312840 未加载
评论 #21313783 未加载
评论 #21313006 未加载
评论 #21313120 未加载
Liquixover 5 years ago
Nord (and perhaps others) seem to have been compromised for months&#x2F;years - lifetime accounts have been available on the DN for significantly cheaper than other VPNs: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=20094946" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=20094946</a><p>Doesn&#x27;t seem like a smear - glad this is coming to light.
评论 #21313133 未加载
评论 #21316074 未加载
numlock86over 5 years ago
Maybe they should spend more money on security than throw at people like PewDiePie to advertise them ... by also giving false claims like protecting you from hackers and making you magically &quot;secure&quot;, whatever that&#x27;s supposed to mean. Doesn&#x27;t give the impression they know what a VPN actually is. Considering that most likely the phrasing comes from NordVPN themselves I always questioned them as a whole. Good to have some positive feedback (from my point of view) on that now.
tmikaeldover 5 years ago
It&#x27;s odd that NordVPN, VikingVPN and Torguard all got their private keys leaked here.<p>- Did the hackers use an SSH or a VPN service vulnerability?<p>- Or maybe even a previously unknown vulnerability?<p>- Was SSH access firewalled? If not, why?<p>- Do they still have root access?
评论 #21312269 未加载
评论 #21313239 未加载
评论 #21312770 未加载
评论 #21312892 未加载
chickenpotpieover 5 years ago
This is so well timed, I just bought a 3-year subscription to NordVPN and they have a 30 day refund policy.
评论 #21313110 未加载
评论 #21313469 未加载
评论 #21313094 未加载
FillardMillmoreover 5 years ago
I can&#x27;t help but notice that NordVPN is one of the most heavily advertised VPNs from what I&#x27;ve seen (which raises the question, as one researcher pointed out in the article - are they not spending enough money on their security and infrastructure to protect their users?). They are claiming that: &quot;no-one could know about an undisclosed remote management system left by the [data center] provider&quot;.<p>Apparently the hacker was able to find out - so while it may be unknown, it&#x27;s not an impossibility to detect it. Beyond whether or not sensitive information was accessed, what will NordVPN do in the future to eliminate or mitigate the possibility that this will occur again?
评论 #21313572 未加载
评论 #21314790 未加载
评论 #21315703 未加载
评论 #21317791 未加载
评论 #21315300 未加载
评论 #21313751 未加载
Sir_Cmpwnover 5 years ago
NordVPN is being recommended a lot to people who don&#x27;t know better by influencers on social media, especially on YouTube. This kind of endorsement is recklessly negligent and needs to stop.<p><a href="https:&#x2F;&#x2F;drewdevault.com&#x2F;2019&#x2F;04&#x2F;19&#x2F;Your-VPN-is-a-serious-choice.html" rel="nofollow">https:&#x2F;&#x2F;drewdevault.com&#x2F;2019&#x2F;04&#x2F;19&#x2F;Your-VPN-is-a-serious-cho...</a><p>Edit: note that I don&#x27;t blame these influencers for their ignorance on the risks of using a VPN; rather I blame the shady VPN providers for overselling the security value of their product and leading users into a false sense of security.
评论 #21312141 未加载
评论 #21312520 未加载
评论 #21312146 未加载
评论 #21312293 未加载
评论 #21316613 未加载
rikkipittover 5 years ago
Two days ago I deleted my old Digital Ocean VPN (built using the OpenVPN tutorial I found somewhere), then opted for a discounted 3-year NordVPN plan. Looks like I&#x27;m going to have to ask for a refund. <i>facepalm</i>.
trigger89over 5 years ago
&quot;On the same note, the only possible way to abuse the website traffic was by performing a personalized and complicated man-in-the-middle attack to intercept a single connection that tried to access NordVPN.&quot;<p>If I had root, can&#x27;t I just find out what crypto libraries are in use? and trigger an uprobe to decrypt the traffic on that crypto library ?<p>Every user connection handled by that vpn server would have been plain text for me.<p>I think they are downplaying the importance of this hack
ineedasernameover 5 years ago
&quot;no-one could know about an undisclosed remote management system left by the [data center] provider&quot;<p>Why not? I&#x27;m generally familiar with the services offered by dedicated-server&#x2F;co-lo&#x2F;vps providers, and remote management systems are very common. This includes out-of-band (OOB) access when using dedicated systems. Seems like the sort of thing that solid due diligence would pick up. Even if it&#x27;s completely undocumented, designing a robust security checklist to be completed by the vendor should find this sort of thing.<p>This excuse also makes NordVPN look extremely bad for future use: If you say &quot;nobody could have known&quot; then you&#x27;re also saying &quot;it could happen again&quot; because if you can&#x27;t know about it, you can&#x27;t know if other vendors do the same. If you can stop it from happening in the future by implementing additional measures, that means those additional measures could have been used to prevent it the first time. So either you&#x27;re inherently unsecure, or the issue was preventable.
abbadaddaover 5 years ago
Did NordVPN know about this hack when they were offering their deal for something like $88 for 3 years? I went back and looked at their prices from 2017 and it was something like $69 to $83.99 billed annually (<a href="https:&#x2F;&#x2F;www.pcworld.com&#x2F;article&#x2F;3200777&#x2F;nordvpn-vpn-review.html" rel="nofollow">https:&#x2F;&#x2F;www.pcworld.com&#x2F;article&#x2F;3200777&#x2F;nordvpn-vpn-review.h...</a>). I&#x27;ve been a NordVPN customer for a while but have been thinking of switching due to some articles touching on nefarious marketing practices and&#x2F;or questionable data practices. Then I see this deal for $88 for 3 years and it was tempting to re-up. Coincidentally, when the deal ran out the news broke several days later about the hack. I for one will be finding a new VPN provider, but I can&#x27;t help to think they were trying to rope in as many existing customers as possible before news of the hack broke. Suspect at best.
phantom_oracleover 5 years ago
There&#x27;s a bittersweet irony with this story. They were recently pushing ads claiming that &quot;Ain&#x27;t no hacker can steal your online life. (If you use VPN).&quot;<p>The ad has since been deleted :D
arshbotover 5 years ago
Lots of talk here from highly technical folks but not one person brings up the fact that these are expired keys - as in not usable?<p>I understand that the fact that these keys were obtained is concerning but the security of nord and etc prevailed at the end of the day.<p>The question is: were they leaked before they expired or long after?
评论 #21312734 未加载
评论 #21313155 未加载
AdmiralAsshatover 5 years ago
<a href="https:&#x2F;&#x2F;twitter.com&#x2F;hexdefined&#x2F;status&#x2F;1186214904132300800" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;hexdefined&#x2F;status&#x2F;1186214904132300800</a><p>The thread indicates that VikingVPN and Torguard were also compromised at some point. Highly concerning.
charles_fover 5 years ago
I guess it depends what you want from your VPN.<p>When I want to secure a shady connection in a coffee house, I have a raspberry 3 at home that I use only for that purpose with an openVpn setup with <a href="https:&#x2F;&#x2F;www.pivpn.io&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.pivpn.io&#x2F;</a> - super easy to use. Downside, I rely on my isp not to spy on me. Upside, it&#x27;s mine and unless I&#x27;m specifically targeted it&#x27;s unlikely someone will mitm me.<p>To hide my location for various purposes, I have used TigerVPN. They have been reliable so far, but I wouldn&#x27;t trust entirely any third party when it comes to privacy. Upside - somewhat reliable and not my isp. Downside - for all I know someone in Czech Republic is watching what I stream with a bucket of popcorn
inianover 5 years ago
<a href="https:&#x2F;&#x2F;nordvpn.com&#x2F;blog&#x2F;official-response-datacenter-breach&#x2F;" rel="nofollow">https:&#x2F;&#x2F;nordvpn.com&#x2F;blog&#x2F;official-response-datacenter-breach...</a>
sudoazaover 5 years ago
More worrisome is that this may allow old cptures to be decrypted, anyone know of VPN providers that use PFS?
评论 #21312497 未加载
metalliqazover 5 years ago
A while ago I read that there was a potential smear war going on between some of the larger VPN providers. Is there any chance that this is related? (I&#x27;d prefer more than just a tweet)
kbensonover 5 years ago
This sounds suspiciously like the Supermicro BMC bug reported here a while back[1], and while it actually can be hard to make sure the IPMI stuff doesn&#x27;t take over a NIC you don&#x27;t want it to[2], there are things you can do to prevent that, such as explicitly setting IPMI interface and address information so it won&#x27;t use &quot;smart&quot; behavior to negate all your security.<p>As to whether &quot;no-one could know&quot;, well, <i>I</i> knew after I read that HN submission, and at work we made sure to double check all our configs. This ended up being mostly a known problem, but the extra context helped us find another edge case I believe.<p>It&#x27;s not great that you have to be aware of the latest security problems <i>and how they may interact in obscure ways with system configs</i>, but that&#x27;s the nature of security and state of the industry right. Not much to do except buckle down and pay attention. To everything.<p>1: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=20870686" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=20870686</a><p>2: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=20872084" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=20872084</a>
weinzierlover 5 years ago
Apart from deanonymizing customers and potentially reading the traffic of customers they sent over the VPN what are other risks for customers?<p>What I&#x27;m thinking about is that the VPN essentially tunnels through my firewall so a malicious VPN provider may possibly be able to do things that, for example, an arbitrary web server cannot.
saurikover 5 years ago
This is difficult to track, as it is really just a sentence attached to some screenshots, with some commentary but no technical detail... but this seem to be a website key, not an OpenVPN key?<p>(edit: And, in fact, this is confirmed by NordVPN&#x27;s statements on the matter: &quot;The expired TLS key was taken at the same time the datacenter was exploited. However, the key couldn’t possibly have been used to decrypt the VPN traffic of any other server. On the same note, the only possible way to abuse website traffic was by performing a personalized and complicated MiTM attack to intercept a single connection that tried to access nordvpn.com.&quot;)
eicossaover 5 years ago
I remember last week&#x27;s episode on Darknet Diaries where NordVPN was offering 3y plans for a hefty discount. My first reaction was &quot;Are they going out of business ?&quot;<p>This week&#x27;s news lets me make sense of that ad.
samwhiteUKover 5 years ago
So what does this mean for an every day consumer? I had been debating using the 30-day money back guarantee as I realised I didn&#x27;t use it as much as I thought I would. I want to stay protected on public Wifi. Added anonymity occasionally would be good too, as well as accessing US Netflix from here in the UK.<p>Now my 30 days is up. What would be the best course of action? Should I email and say that I&#x27;m not comfortable being their customer any more, and asked to be reimbursed? Carry on, for my use case? I&#x27;d never connected to a Finnish server.
评论 #21321930 未加载
throwaway_nordover 5 years ago
Why would their website&#x27;s SSL certificate be on one of their VPN servers? Do all of their current 3000 servers have the private key for their website right now?
评论 #21314219 未加载
jwilkover 5 years ago
See also: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=21311475" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=21311475</a>
generalpassover 5 years ago
I&#x27;m frankly blown away that the comments I&#x27;m seeing here don&#x27;t suggest to just roll your own.<p>$5&#x2F;mo is the typical price nowadays for a 1 GB VPS with 1TB upload. Cancel at any time. Save image, redeploy monthly&#x2F;weekly&#x2F;daily to protect from longer term IP address tracking. Use scheme of your choice (e.g., SOCKS proxy, VPN, standard HTTP port for everything, etc.)
clSTophEjUdRanuover 5 years ago
I like Mullvad
评论 #21312460 未加载
评论 #21312084 未加载
crispyambulanceover 5 years ago
People have been talking about using VPN&#x27;s because of &quot;dangerous&quot; public wifi, but I have to admit, I don&#x27;t understand the risks.<p>Let&#x27;s say you go to a coffee house and sign-in to their wifi with their password and use it browse https websites, like gmail or you favorite social media... what&#x27;s the main risk? What can happen? What <i>does</i> happen?
评论 #21314919 未加载
评论 #21314950 未加载
pickle-wizardover 5 years ago
I only use NordVPN to get around GeoIP blocks on a couple of streaming apps. So I&#x27;m not too worried about my data being compromised, but I don&#x27;t like the way they handled this. Think I&#x27;ll start looking for another provider?<p>Looks like you can side load OpenVPN onto a FireTV. Maybe I&#x27;ll go the roll my own this time.
knolaxover 5 years ago
Wasn&#x27;t NordVPN the one that was created by a marketeer? I wouldn&#x27;t be suprised if this was just cover for them to sell their customer&#x27;s data indirectly. If anybody finds a dump of the data they sold they could just claim it was from the breach.
ngcc_hkover 5 years ago
Wow. Just switch per advice of lihkg! How serious? Seems all tech talk but not impact talk
评论 #21312051 未加载
ga-vuover 5 years ago
NordVPN blog post, and the source: <a href="https:&#x2F;&#x2F;nordvpn.com&#x2F;blog&#x2F;official-response-datacenter-breach&#x2F;" rel="nofollow">https:&#x2F;&#x2F;nordvpn.com&#x2F;blog&#x2F;official-response-datacenter-breach...</a>
1000unitsover 5 years ago
This is a feature in my eyes. Just stack a bunch of these hacked by different people who don&#x27;t cooperate with each other. Now any user has plausible deniability over anything that happens on these networks. No?
jedisct1over 5 years ago
Get a VPS and run your own VPN. It doesn&#x27;t have to be complicated: <a href="https:&#x2F;&#x2F;github.com&#x2F;jedisct1&#x2F;dsvpn" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;jedisct1&#x2F;dsvpn</a>
kryogen1cover 5 years ago
The interesting thing about OOB on most modern servers is that its a separate, physical NIC. Not only is that easily VLAN able, a more security conscious datacenter could even air-gap the out of band LAN!
评论 #21313637 未加载
TazeTSchnitzelover 5 years ago
From the amazing service providing “Double VPN” (yes, really) for extra privacy and “Onion VPN” (with the Tor bit being behind NordVPN, not the other way around) for ultra extra privacy!
评论 #21315527 未加载
catocover 5 years ago
Any comments about Encrypt.me as a NordVPN alternative?<p>It looks <i>much</i> more reliable. (from their website; the team&#x27;s CV&#x27;s; etc -&gt; i.e.: no hard evidence)
therealmarvover 5 years ago
Any one knows WHICH server provider in Finland caused this?<p>Just following the chain because NordVPN says it was this provider who does not told about their security leak?
评论 #21316623 未加载
HugoDanielover 5 years ago
Should be ok, after all they dont keep any logs right ?
评论 #21313250 未加载
goshxover 5 years ago
This is called karma. People have been using their services to run cyberattacks and NordVPN people do NOTHING to stop them.<p>This news brings me joy.
Attainedover 5 years ago
Just use Cloudflare WARP since it&#x27;s finally out. You&#x27;re never really anymous unless it&#x27;s a lifestyle anyways.
discordanceover 5 years ago
NordVPN runs a desktop app with escalated local privileges.<p>Surely if they were compromised that would be the attack vector for a bad actor.
misiti3780over 5 years ago
Off topic a bit, what what other VPNs are people using. I have been using ExpressVPN and am very happy with it.
评论 #21314900 未加载
评论 #21314241 未加载
kebmanover 5 years ago
&quot;It&#x27;s an older code, but it checks out.&quot; :D Sorry, I just couldn&#x27;t help myself!
hemant6488over 5 years ago
can&#x27;t get hacked if you don&#x27;t use a VPN.<p>I use sshuttle (<a href="https:&#x2F;&#x2F;www.terminalbytes.com&#x2F;sshuttle-vpn-over-ssh-vpn-alternative&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.terminalbytes.com&#x2F;sshuttle-vpn-over-ssh-vpn-alte...</a>).
godelmachineover 5 years ago
This is troublesome.<p>I was planning to eke out $85&#x2F; annum and go for NordVPN, but now even this is unreliable
评论 #21313092 未加载
评论 #21313185 未加载
评论 #21312976 未加载
评论 #21313005 未加载
评论 #21312999 未加载
评论 #21313028 未加载
gerdesjover 5 years ago
There are quite a lot of anti NordVPN and VPN in general experts pontificating here. A quick scroll down through all comments and I note a distinct <i>lack</i> of green handles.<p>This is a 500+ comment article with hardly any near null comment commentards. My analysis is not very rigorous.
Angeo34over 5 years ago
&gt;trusting companies outside of EU jurisdiction Literally your own fault
评论 #21315480 未加载
meh206over 5 years ago
Security has never been priority for any of these public VPN providers.
badrabbitover 5 years ago
ProtonVPN uses Nord servers infrastructure right? Were they affected?
评论 #21318792 未加载
john_alanover 5 years ago
NordVPN subscriber here, I just use DSVPN now. Simple and works.
craftomanover 5 years ago
Could this be another marketing trick to lure more customers? Last time I checked, companies are actually favourable when they &quot;get slightly hacked&quot;. They get front page from top tech websites, magazines, forums...
sellingwebsiteover 5 years ago
How feasible is to run and administer your own VPN in cloud ?
jbillow2000over 5 years ago
Wonder if there will be a class action.
dlphn___xyzover 5 years ago
what can a paid vpn service provide that you couldn’t get with free &#x2F; open source tools?
HNLurker2over 5 years ago
ROFL at the ads
SimeVidasover 5 years ago
The best thing NordVPN can do right now is make a statement that clearly and honestly describes how its users are affected. No bullshit marketing language, no trying to hide facts, just a short and simple explanation of what this means for users and what they should do next.
评论 #21313015 未加载
评论 #21313037 未加载
评论 #21313029 未加载
yjftsjthsd-hover 5 years ago
@dang or mods - I&#x27;m surprised that this isn&#x27;t merged with <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=21311475" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=21311475</a> ; is there some special value in keeping them separate?
评论 #21315023 未加载
codesushi42over 5 years ago
This is the last time I trust a product endorsement from the Angry Videogame Nerd.
some_furryover 5 years ago
If you&#x27;re reading this and wondering which VPN service you should use to stay safe, start reading here: <a href="https:&#x2F;&#x2F;faq.dhol.es&#x2F;@Soatok&#x2F;cryptography&#x2F;which-vpn-service-will-protect-me-from-hackers" rel="nofollow">https:&#x2F;&#x2F;faq.dhol.es&#x2F;@Soatok&#x2F;cryptography&#x2F;which-vpn-service-w...</a><p>(Spoiler: You&#x27;re asking yourself the wrong question.)
评论 #21313137 未加载
评论 #21313451 未加载