Report by Zimperium

Insecure Mobile VPNs: The Hidden Danger

4 FINDINGSPublished Oct 2, 2025
View Original Report →

Key Findings

3 VPN apps still utilized a legacy version of the OpenSSL library.

ZimperiumInsecure Mobile VPNs: The Hidden Danger ·Oct 2, 2025
VPN

25% of the VPN apps analyzed on iOS failed to include a valid privacy manifest at all.

ZimperiumInsecure Mobile VPNs: The Hidden Danger ·Oct 2, 2025
VPN

On iOS, over 6% of VPN apps were found requesting private entitlements, which are typically restricted from third-party developers. This represented a total of 30 apps

ZimperiumInsecure Mobile VPNs: The Hidden Danger ·Oct 2, 2025
VPN

Approximately 1% of the analyzed VPN apps were found to be vulnerable to a Man-in-the-Middle (MitM) attack.

ZimperiumInsecure Mobile VPNs: The Hidden Danger ·Oct 2, 2025
VPN