Cloudflare's 1.1.1.1 Service Launches on Android and iOS (fastcompany.com)
harrymcc writes: Content-distribution network Cloudflare has introduced iOS and Android versions of 1.1.1.1, a free service which helps shield you from snoops by replacing your standard DNS with its encrypted (and speedy) alternative. The mobile incarnation of the PC service it launched last April, the apps don't require you to do anything other than downloaded and install them, give your device permission to install a VPN, and flip a switch -- making them approachable for the masses, not just geeks.
You really should read the article. If you have your own DNS or your own VPN this is a downgrade to your opsec. Most people don't, and they do use the ISP's DNS servers (or the telco carrier's DNS) ... and here is where the Cloudflare service really makes a difference.
It doesn't "Hijack" anything. You either affirmatively choose to install it... or you don't. If you don't, nothing changes.
Try reading the article for comprehension. /.reader#734
We have a simple solution!
Install this app and give Cloudflare permission to access all of your network traffic and you can use our DNS server!
This isn't protecting traffic from snooping, it's exposing traffic to Cloudflare. The same company which makes a business model out of holding other people's private TLS keys. The same company which refuses to stop serving known spammers. The same company which was breaking half the internet for Tor users.
Cloudflare is the kind of centralization we need to get away from.
How am I supposed to remember that IP address? If only there was a system to translate such IP addresses into more human-friendly names that are easier to remember...
I deny that I have not avoided attaining the opposite of that which I do not want.
Are you aware of the fact that Cloudflare has access to ALL of your DNS queries? If you do not trust your ISP, Google, etc., why would you trust Cloudflare?
You downloaded an VPN app that now has the gall to ask to install a VPN - inconceivable.
There are two rules for success:
1. Never tell everything you know.
Because most people have to trust someone with their DNS queries, especially when on mobile networks. Given a choice of unencrypted DNS queries to your scummy mobile provider's servers or encrypted ones to Cloudflare, you are probably better off with the latter.
At least Cloudflare can't tie up the request with cell location data and sell that information to nearby businesses.
const int one = 65536; (Silvermoon, Texture.cs)
SJW, n: "Someone I don't like, and by the way I'm a fuckwit" - AC