

And anyone who takes a photo of you needs to ask your consent.
Hah, good luck when everyone has dashcams and door cams. In a perfect world this would be nice.


And anyone who takes a photo of you needs to ask your consent.
Hah, good luck when everyone has dashcams and door cams. In a perfect world this would be nice.
Why does this look like Cat Mario
Here you go, I’ve done my part in this discussion and from what I can tell you choose to remain ignorant to do any research yourself or to accept the provided data for what it is.
As I said in my previous comment this is your choice to support a company with the initial intention of distributing malware, I will not discuss this further.
Could you have a residential static VPN as one of the wireguard profiles and have it be somewhat local to you so you could use banking apps etc on specific devices? Trying to get this to pass the wife test but if streaming or banking is affected I will have to roll back to no vpn.
Absolutely, my setup I have a catchall rule that captures the entire 10.6.0.0/24 range however I can specify the IP’s individually so if I want to put a remote device behind my WAN and not through another WireGuard tunnel I can do that.
You can kind of see that in my second screenshot in my previous comment, I have a couple devices individually behind WGC4 and my catchall rule sitting on WCG5, the router will prioritize WCG4 over WGC5.
Edit: the Asus router also comes with a built in DDNS feature, you can either use Asus’s free domains and associate your dynamic IP with them or setup your own domain, it’ll keep your A records up to date whenever your IP changes.
For example I use this script to update my Cloudflare record for my domain - https://github.com/clayauld/asus-merlin-cloudflare-ddns
Picked myself up an Asus WRT router (AX86U) flashed it with Merlin firmware - the custom firmware includes a feature called “VPN Director” which lets me connect up to 5 different WireGuard clients and route my devices through whichever one I choose, given that the Asus WRT router is also capable of hosting its own WireGuard server I created a VPN director rule that routes that server through one of these clients.
The VPN director has a priority ruleset, so if for example WireGuard client 5 dies it will either kill all outbound connections and wait until it’s back online or fallback to WireGuard client 4, WireGuard client 1 being the highest priority right before WAN.
I like this setup because it’s my router doing the routing, not a secondary server hosting WireGuard like Tailscale.
Edit; It also works with oVPN if you prefer that protocol over WireGuard.


CyberGhost currently has alway an excellent review in IT publications and independent benchmarks
In that very same article…
It’s Not Just Mid VPNs
Kape doesn’t just own multiple VPN companies, they also own several media outlets and other ‘cybersecurity’ software. Let’s start by looking at one of their most egregiously misleading ‘cybersecurity’ software offerings: ReImage.
ReImage is/(was?) marketed as a PC scan and repair tool. It’s actually something called scareware and it’s specifically designed to ping you with alarming messages about your computer containing multiple vulnerabilities, and prompting you to purchase a license to have their software perform the critical fixes necessary. I say ‘was’ marketed because when you go to their website, it doesn’t work. I was only able to look at their website through the web archive tool. Their crunchbase page gives the appearance that they’re still in operation, and you can still download their software off third-party websites. I wouldn’t though.
Kape Owns VPN Review Sites Too
You know what’s better than gobbling up market share of the VPN space? Gobbling up the websites that review them too, and creating your own vertical integration.
So not only does Kape own some of the biggest VPNs in terms of market share, but they also have complete control over the affiliate ecosystem that shills their subpar products onto unwitting consumers. Oh and that’s not all, they also own a middle-man company that specializes “in monetizing high-quality traffic by connecting them with the brands they need.” In other words, they own the VPNs, the VPN affiliate marketing platforms, and the VPN review websites. They’ve created an entire ecosystem that they control, all explicitly designed to go after your data and your wallet.
Here are some of the Kape Controlled entities that you may or may not have heard of before:
Whether or not you trust a company with the initial intention of distributing malware is on you, and by using their Proxy you’re still pushing your traffic to their servers albeit in a less-secure manner, and to believe they don’t retain your data is merely laughable as they’re obliged by the Five Eyes Alliance due to their headquarters being in London and are required to retain personal information you provide them.
I don’t use Windscribe myself because they’re a Canadian company and obliged by FVEY, but at least they’re independent from Kape Technologies.
CyberGhost extension
Suggest digging into CyberGhost and their history and association with Kape Technologies.
https://windscribe.com/blog/what-is-kape-technologies/
Kape’s Sketchy Beginnings
Let’s just take a brief moment to look at the origins of Kape. It wasn’t always known by this name, the original company was called Crossrider.
Crossrider dealt in Malware (they called it “ad injection”), and their specialty was building a platform that allowed mobile app developers to easily inject ads into their software or web application. They were so good at it, they caught the attention of Google’s security research team who were incredibly alarmed by what they had found: an entire ecosystem of thousands of companies, broken down into various segments (Software, Distribution, Injection, and Ads).
Crossrider’s main purpose was to function as a distributor, and they were incredibly effective at this. They used their network to drive as many installs as possible, all while collecting a commission for each install of the ad injection software. For those curious about this ecosystem, an archived version of Google’s Security Blog can be found here.
Rebranding as Kape Technologies
Due to the increasing negative attention their antics were causing, the company underwent a massive rebranding and emerged as Kape Technologies.
Nowadays, Kape Technologies is a conglomerate of multiple “privacy-first” software companies, including Express VPN. Express is not their only play in the VPN space though: they’ve also acquired a few larger-scale VPN operations over the past few years. Their first VPN acquisition was Cyberghost for €9.1M back in 2017, followed by Private Internet Access for $127M and Zenmate for €4.8M in 2018. Then came the Express VPN whale in 2021 for $936M, giving Kape a massive foothold in the VPN marketplace.
If Kape VPNs are known for anything, it’s being kinda sketchy. Since we’ve already covered Express in a previous article, the focus will be on the other three lesser-known VPNs that are part of the Kape Corporate Umbrella
Kape Acquires Cyberghost
Cyberghost was the first VPN that Kape acquired, back when they were still called Crossrider. Cyberghost was founded in 2011 by German entrepreneur Robert Knapp, who moved to Bucharest with $100,000 in seed capital ready to exploit the cheaper labor market in Romania. Robert’s own bio on the Cyberghost website claims that he’s passionate about building a privacy-preserving product, yet he had no problem cashing out for almost $10 Million to a company run by ex-Israeli spies and insider-trading billionaires. The irony is apparently lost in translation I suppose.
There’s also an issue with vulnerabilities. In 2023, professional pen testers exposed a vulnerability in the Cyberghost VPN client that could lead to system compromise, yet they had an incredibly difficult time getting any sort of response from the Kape security team (who quickly and quietly patched the issue).
Phone > WireGuard Tunnel to my House = Reap the benefits of my PiHole and other hosted services > WireGuard Tunnel to ProtonVPN endpoint = Reap the benefits of appearing outside my country
Essentially created my own multi-hop VPN, which I use 24/7 outside of my home-network.
Are the waffles at least good?


iPhone > Safari webkit > WireGuard tunnel home network > PiHole DNS (Quad9 upstream) > WireGuard tunnel ProtonVPN endpoint
That is the flow of my current network.
Edit: I ran curl from my server
┌─[user@debian] - [~/compose] - [Thu Aug 13, 12:26]
└─[$]> curl -v https://angieguardian.org/
* Host angieguardian.org:443 was resolved.
* IPv6: (none)
* IPv4: 77.61.56.117
* Trying 77.61.56.117:443...
* ALPN: curl offers h2,http/1.1
* TLSv1.3 (OUT), TLS handshake, Client hello (1):
* CAfile: /etc/ssl/certs/ca-certificates.crt
* CApath: /etc/ssl/certs
* Recv failure: Connection reset by peer
* TLS connect error: error:00000000:lib(0)::reason(0)
* OpenSSL SSL_connect: Connection reset by peer in connection to angieguardian.org:443
* closing connection #0
curl: (35) Recv failure: Connection reset by peer
┌─[user@debian] - [~/compose] - [Thu Aug 13, 12:27]
└─[$]> curl -v angieguardian.org
* Host angieguardian.org:80 was resolved.
* IPv6: (none)
* IPv4: 77.61.56.117
* Trying 77.61.56.117:80...
* Connected to angieguardian.org (77.61.56.117) port 80
* using HTTP/1.x
> GET / HTTP/1.1
> Host: angieguardian.org
> User-Agent: curl/8.14.1
> Accept: */*
>
* Request completely sent off
* Recv failure: Connection reset by peer
* closing connection #0
curl: (56) Recv failure: Connection reset by peer
Can confirm my PiHole is resolving the requests and forwarding the requests to Quad9.




Yeah something ain’t right here chief. Now I have to ask, what was the LLM policy in regards to the development of this software?



Seems a little odd that the fediverse uses Cloudfare.
You need to be more descriptive, use in what regard? Both are capable DNS providers but as far as I’m aware, Cloudflare is also a domain registrar.
Also each instance of Lemmy is configured differently, perhaps Lemmy.zip uses cloudflare but that isn’t the case for every instance of Lemmy.


I also know there is a script you can set up which will handle the initial contact to federate automatically.
I tried finding such a script but had no luck. I was able to export my subscription list from sh.itjust.works and imported it on my instance.
I had to unsubscribe and resubscribe to the communities I follow as I was experiencing the ‘Subscribe Pending’ issue but after a little while things seemed to start evening out and becoming a bit more stable.


My instance has been online for about a month, the supplied docker-compose.yaml was quite straightforward, had a little headache with Nginx but nothing overly complicated.
The long-con so to speak is federation, you have to subscribe to each community manually to begin federating with them, i have noticed timing issues with other instances such as Lemmy.world and have not been able to resolve them.


The phrase “Off with their head” is about to be hip again.


Redlib is great but has not seen a new release in over a year, the maintainer who took over the Libreddit project is clearly burnt out.
Suggest following this GitHub issue as folks have created forks of Redlib.
Chiming back in 3 hours later, just downloaded the latest release from Freetubes website, i can confirm that with my invidious instance that everything seems to be working fine. While my invidious instance is a private one, ill share it with you in the meantime until your normal setup gets back in order, shoot me a DM.



I’m not home to verify my Freetube however, I just checked my invidious instance and can confirm that the first video I attempted to play errored.
I am updating my Invidious instance to see if it still persists, perhaps the instances you’re using are out of date, I know invidious updates quite frequently to stay on-top of YouTube changes.
Edit; Updating invidious appeared to resolve my errors, I can only assume the instances you’re using are out of date. I’ll check Freetube when I get home.
Freetube is capable of utilizing the Invidious APi and provides more functions such as sponsor blocking or click-bait thumbnail removal.
Lots of customization features that I highly suggest pairing with Invidious.
Be an adult, either ask her yourself or a staff member that you don’t appreciate being recorded in a private setting. If nothing changes and she continues to record you take your business elsewhere.