| Risk | Explanation | |------|-------------| | | VPNBook states they keep connection logs (timestamp, bandwidth used) for 7 days. | | Shared passwords | Anyone can download the same zip. No user isolation. | | MITM potential | The VPNBook server controls the encryption keys. They could theoretically inject ads or track traffic. | | UDP 53 detection | Advanced NGFWs (Palo Alto, Fortinet) can fingerprint OpenVPN despite port 53. They then reset the connection. | | No IPv6 leak protection | If your ISP provides IPv6, traffic can bypass the VPN unless explicitly disabled in the .ovpn config. |