Surfshark VPN is offering up to 87 percent off two-year plans

Surfshark’s One plan is heavily discounted right now, with an 87-percent discount on the two-year package, plus three extra months. The promo price comes out to $2.29 per month, or $62 for the first 27 months.

We’ve generally liked Surfshark as a straightforward, speedy service for everyday use, and it’s one of the picks in our guide to the best VPNs. In our Surfshark review, we found it delivered excellent speeds overall and reliably unblocked Netflix across most of our test servers, which makes this long-term deal worth a look if you want a VPN deal that also includes extras like antivirus, breach alerts and private search.

In our Surfshark review, the VPN stood out for its excellent performance and approachable design, especially for people who want strong protection without constantly tweaking settings. During testing, it delivered some of the fastest speeds we’ve seen from a major VPN, with average download speeds dropping by just over five percent worldwide. Upload speeds also held up well, making it a solid option for streaming, browsing and everyday use. We gave Surfshark an overall score of 87 out of 100 and called it one of the best VPNs for casual users.

This deal focuses on the Surfshark One plan, which bundles the VPN with a suite of extra security tools. In addition to the VPN itself, you get Alternative ID for masking your email and personal details, antivirus protection, breach monitoring through Surfshark Alert and a private search engine. It also supports unlimited simultaneous device connections, so you can protect all of your devices with a single subscription.

Right now, the Surfshark One plan is discounted by 86 percent, bringing the price down to $67 total for two years plus three extra months. That works out to $2.49 per month for the first 27 months, billed upfront, with a 30-day money-back guarantee if you change your mind. 

If you want to compare it against other top services before committing, you can also check out our full Surfshark VPN review and our best VPN guide to see how it stacks up. We’ll be keeping our best VPN deals roundup updated regularly, too.

This article originally appeared on Engadget at https://www.engadget.com/deals/surfshark-vpn-is-offering-up-to-87-percent-off-two-year-plans-123000279.html?src=rss

How much do VPNs cost?

So you've decided you need a virtual private network to hide your browsing activity from your ISP, change your virtual location, stay safe on public Wi-Fi and enjoy all the other benefits. The inevitable next question is: "Should I pay for one? If so, how much?"

All the best VPNs cost money, but it can be hard to tell an overpriced service apart from one that's priced according to its value. On this page, I'll share the costs for top VPN services, calculate the industry average and explain what makes VPNs cost as much as they do. At the end, I'll share a few tips for making a VPN fit your budget.

I'd like to start by introducing the complexity of the problem. If you just want the numbers, you’ll find those in the sections below.

The main thing that makes VPNs so hard to budget for is that providers aren't always honest about how much they're charging. They rarely lie outright, but they often overcomplicate their pricing structures and hide increases in the fine print.

Let's take CyberGhost as an example, since I just reviewed it. A one-month subscription to CyberGhost costs $12.99 — simple enough. However, you can also get a six-month subscription by paying $41.94 upfront, though the website more prominently calls this "$6.99 per month." Finally, you can pay $56.94 for a 28-month subscription, but only once; after that, it'll be $56.94 for a year.

These prices are subject to change.
These prices are subject to change.
Sam Chapman for Engadget

As you can see in the image, the website heavily emphasizes the average monthly price, in text that dwarfs the actual price you'll pay at checkout. This gets even worse with services like NordVPN that have multiple tiers of subscription as well as multiple durations. It's not uncommon to see 10 or more prices quoted for the exact same VPN.

The best way to cut through the confusion and shop on your own terms is to compare different VPNs at the same duration and subscription tier. For example, you could find the cost of one year of the most basic available plan, since most basic subscriptions still include full VPN service. In the next two sections, I'll compare and average the basic tiers of my top seven VPNs at the monthly and yearly levels.

Here's what the best VPNs cost per month. The numbers below are for subscribing to one month at a time, excluding any discounts and special deals.

  • Proton VPN: $9.99

  • ExpressVPN: $12.99

  • Surfshark: $15.45

  • NordVPN: $12.99

  • CyberGhost: $12.99

  • Mullvad: $5.98 (depends on dollar/euro exchange rate)

  • hide.me: $11.99

  • Average: $11.77

As you can see, $12.99 is a normal price for one month of a VPN — but the average price is somewhat lower, as several providers sell monthly plans for less. In general, expect to pay in the range between $10 and $13. Companies like Surfshark sometimes inflate their monthly prices in a bid to drive more traffic toward the longer plans.

Mullvad is also an outlier, since you can only ever subscribe to it month-by-month. There are other outliers, such as Astrill, which costs a whopping $30 per month. But the above holds true for all the best-regarded providers.

If you choose to sign up for a year at a time, you'll probably save money but you'll have to pay more upfront. VPNs offer long-term deals to pump their cash flow and active user numbers. One-year costs for the top seven VPNs are written below as a lump sum, since several of them add extra months to the first subscription period so they can quote a lower monthly price. Since CyberGhost doesn't have a one-year plan, I've replaced it with Windscribe.

  • Proton VPN: $47.88

  • ExpressVPN: $52.39 for the first subscription, $99.95 afterwards

  • Surfshark: $47.85

  • NordVPN: $59.88 for the first subscription, $139.08 afterwards

  • Windscribe: $69.00

  • Mullvad: $71.82 (depends on dollar/euro exchange rate)

  • hide.me: $54.99

  • Average: $57.69

For one year of a VPN service, you can expect to pay somewhere between $45 and $70. Note that at least two services, ExpressVPN and NordVPN, raise prices after the first year, so account for that in your budget if you really like them.

The length of the subscription is the biggest factor in determining how much you'll pay. Beyond that, it's all a bit fuzzy. Commercial VPNs are still a relatively new industry, so there's not a lot of standardization in the pricing.

Most of the variation in cost comes from competition: VPNs value themselves lower to offer a better deal than their rivals, or higher if they think they've got a unique differentiator. Astrill gets away with charging $30 a month because of a widespread belief that it's the best VPN for China (in truth, no VPN can be sure of working in China 100 percent of the time).

Another factor that might influence a VPN's price is the cost of maintaining its infrastructure. For each new server location, the provider has to either rent space in an existing data center, build its own physical server farm or set up a virtual server with an IP address from a particular location.

On Proton VPN, for example, you can switch locations by clicking the name of any country in the list on the left.
On Proton VPN, for example, you can switch locations by clicking the name of any country in the list on the left.
Sam Chapman for Engadget

Once the locations exist, they have to be maintained, including regular changes to their IP address so firewalls don't identify and block them. Loads at locations need to be balanced between servers and technology has to be upgraded as faster solutions become available. 

Since VPNs can have hundreds of server locations, all that upkeep doesn't come cheap, and customers often eat the cost. Factor in the price of extra features outside core VPN functionality and you'll understand why these companies are so desperate for liquidity that they'll offer discounts over 80 percent — as long as you hand over a lump sum right now.

VPNs can get pricey, especially if you want high quality. But some VPNs charge nothing at all. Is there any reason not to go with free VPNs every time?

The answer is a pretty clear yes; paying for a VPN is almost always a better idea. When we rounded up the best free VPNs, only three got our unqualified recommendation. All three were paid services with free plans, and all come with strict limitations on server locations, data usage and other privileges.

The unfortunate reality is that free VPNs come with downsides no matter which one you use. Plenty of them are hacked-together apps with little value, thrown together to make a quick buck. Others turn you into the product by selling your data to advertisers or renting out your home IP address. Some drop any pretense and plant malware directly on your device.

These risks, which are often invisible to the end user, are the reason I almost always advise going with a free VPN funded by a paid plan, like Proton VPN, hide.me or Windscribe. Those plans may be restricted, but at least the provider's motives are out in the open: they make money off the paid plan and they want you to switch to it.

If you've decided to pay for a VPN but want to stretch your budget as much as possible, the tips below can push your cybersecurity dollar a bit farther. To begin with, the general advice on choosing a VPN always applies: read expert opinions, check the reviews and use the free trial to test its speed and security.

Get a long-term plan. If you're confident that you'll actually use the VPN for the whole duration, there's no reason not to go with a 12-month or 24-month subscription. These are win-win deals that genuinely do save you a lot of money overall.

Cancel auto-renewal. VPN accounts are set to automatically renew by default. In some cases, this can inadvertently lock you into a higher-priced long-term plan. I recommend cancelling auto-renew right after subscribing even if you're sure you want to continue. From there, you can create a new account to get the introductory rate again — or go with a different VPN to get a better deal.

Look for resubscription deals. Another perk of cancelling immediately is that the VPN will often try to woo you back with exclusive discounts. Stay strong until your subscription is a month or two from expiring, then look for emails offering better rates.

Wait for seasonal discounts. If you can hold off until November, most VPNs offer steep discounts from Black Friday season all the way through New Year's. Check around other holidays too, as VPNs will take any excuse for marketing; CyberGhost is offering a Valentine's Day deal as I type this. We also keep track of the best VPN deals you can get at any time of the year.

Use the VPN to save money on streaming. Most streaming services are more expensive than VPNs. If you use a VPN to access more content without adding a new streaming subscription, you'll come out ahead. For example, if you only have Netflix but want to watch Schitt’s Creek, you can pay $16.99 per month for Peacock without ads — or $9.99 per month for Proton VPN to unblock Netflix Canada, which features that show.

Shop for regional discounts. Like the previous point, this won't save you money on the VPN itself, but might save you enough money on other expenses that you turn a profit. Changing your virtual location can get you discounts on purchases where prices vary by region, especially travel costs.

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/vpn/how-much-do-vpns-cost-170000567.html?src=rss

Moltbook, the AI social network, exposed human credentials due to vibe-coded security flaw

Moltbook bills itself as a social network for AI agents. That's a wacky enough concept in the first place, but the site apparently exposed the credentials for thousands of its human users. The flaw was discovered by cybersecurity firm Wiz, and its team assisted Moltbook with addressing the vulnerability.

The issue appears to be the result of the entire Reddit-style forum being vibe-coded; Moltbook's human founder posted a few days ago on X that he "didn't write one line of code" for the platform and instead directed an AI assistant to create the whole setup. 

According to the blog post from Wiz analyzing the issue, Moltbook had a vulnerability that allowed for "1.5 million API authentication tokens, 35,000 email addresses and private messages between agents" to be fully read and accessed. Wiz also found that the vulnerability could let unauthenticated human users edit live Moltbook posts. In other words, there is no way to verify whether a Moltbook post was authored by an AI agent or a human user posing as one. "The revolutionary AI social network was largely humans operating fleets of bots," the company's analysis concluded. 

So ends another cautionary tale reminding us that just because AI can do a task doesn’t mean it'll do it correctly.

This article originally appeared on Engadget at https://www.engadget.com/ai/moltbook-the-ai-social-network-exposed-human-credentials-due-to-vibe-coded-security-flaw-230324567.html?src=rss

TikTok says it’s ‘back to normal’ after winter storm-related outages

TikTok is finally "back to normal" in the US after days of technical issues and outages tied to winter storms. Less than a week after companies like Oracle took ownership of TikTok's domestic operations, the platform faced a major power outage when one of its primary US data center sites — run by Oracle — got taken down by the storm. 

The problems started last Monday, January 26, when TikTok announced it was working on a "major infrastructure issue" and warned of bugs, time-out requests, missing earnings, and more. The next day TikTok shared that progress has been made but there were still some issues. It added, "Creators may temporarily see '0' views or likes on videos, and your earnings may look like they're missing. This is a display error caused by server timeouts; your actual data and engagement are safe."

Then, yesterday, February 1, TikTok claimed the problem was straightened out and that users shouldn't experience any more related issues. "We're sorry about the issues experienced by our U.S. community. We appreciate how much you count on TikTok to create, discover, and connect with what matters to you," the platform stated in its update. "Thank you for your patience and understanding."

A number of US users have uninstalled TikTok in response to its new ownership and technical issues. Some users also claimed that TikTok was censoring what they could post or what others saw. For instance, The Guardian reports that many people faced issues sharing videos about ICE agents killing Alex Pretti and general anti-ICE content. 

On January 26, analytics firm Sensor Tower told CNBC that uninstalls of the app had increased by over 150 percent during the five days since its change in ownership, when compared to the three months before. At the same time, independent app and competitor UpScrolled saw a surge in downloads. 

This article originally appeared on Engadget at https://www.engadget.com/apps/tiktok-says-its-back-to-normal-after-winter-storm-related-outages-114848212.html?src=rss

The best cheap VPN in 2026

When talking about the best VPNs, I frequently warn about the dangers of trusting free VPNs without verifying them. Although there are a few free VPNs worth recommending, many other free providers are ineffective, malicious or looking to profit off their users (or sometimes all three). Even the best free VPNs work a lot better once you subscribe and access their full service.

This can be frustrating if you want to enjoy the benefits of a VPN but don't have the budget for yet another subscription. To help you out, I put together a list of the best paid VPN services you can get cheaply. Every name on the list comes with my full recommendation — I'll never recommend a VPN that doesn't protect you, no matter how affordable.

Before I get started, I want to define "cheap," since VPNs often bamboozle the customer with muddled pricing schemes. Most providers have long-term subscription plans with big discounts, and many of them compensate by making their monthly plans more expensive. On this list, I'll recommend services with cheap subscriptions for both the short and long term, plus one favorite that balances both.

A couple of VPNs have decent pricing options attached to worthy services but weren't quite strong enough to make the list. Both these services get my hearty recommendation; they're just hard to justify as "cheap."

ExpressVPN recently switched to a multi-tier pricing model. The Basic pricing tier gets you complete VPN service but doesn't include the full set of features. The best price on that is $78.18 for 28 months, which works out to $2.79 per month. Although that sounds great, it's more expensive than both Surfshark and CyberGhost at the same duration and renews at the even higher price of $99.95 per year ($8.33 per month).

Still, as I wrote in my full ExpressVPN review, it's an outstanding service overall. Thanks to its sensible app layouts and focus on doing simple tasks well, I find it especially good for introducing beginners to what a VPN can do.

NordVPN is another provider that I gave a relatively positive review. I really like its boundary-pushing features, especially the various types of highly specialized servers. Its pricing isn't bad, exactly, but even the Basic level is more expensive than just about everyone else at every duration. NordVPN's fast download speeds and wide server network make it worthwhile for lots of users, but it's hard to recommend to people on a budget.

Looking for an affordable VPN is the same as looking for any kind of VPN; it just requires more care. The worst VPNs usually present themselves as free, but there's also a fair number of mediocre options that think low prices have to mean a mediocre service. If you want to use a VPN but don't have much extra cash, take some additional care in a few areas of your search.

First, don't subscribe to a VPN — or even download any of its apps — if you haven't verified its security. To do that, start by checking what experts have to say about it. If a VPN is truly unsafe, chances are high that somebody has already sounded the alarm. You can also check the list of protocols the VPN offers. If it's anything other than OpenVPN, WireGuard or IKEv2, do a deep dive to make sure it's using worthwhile encryption.

If you've verified that the VPN isn't a virus, check to see if it has a free trial or a guaranteed money-back period. This will give you some risk-free time to do hands-on tests. Our article on how we test VPNs includes several tests you can run on your own computer, phone or tablet. Check the VPN's speed, make sure it has the server locations you need and look for anything that might be leaking your real IP address.

Read the VPN's privacy policy and make sure you're comfortable with how much information it saves. Some VPNs emphasize privacy more than others. Finally, before your free trial or refund period expires, make sure to double-check on the pricing structure of the VPN you're choosing — it's possible that it will only be cheap for the first subscription period.

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/vpn/best-cheap-vpn-170000957.html?src=rss

Amazon discovered a ‘high volume’ of CSAM in its AI training data but isn’t saying where it came from

The National Center for Missing and Exploited Children said it received more than 1 million reports of AI-related child sexual abuse material (CSAM) in 2025. The "vast majority" of that content was reported by Amazon, which found the material in its training data, according to an investigation by Bloomberg. In addition, Amazon said only that it obtained the inappropriate content from external sources used to train its AI services and claimed it could not provide any further details about where the CSAM came from. 

Amazon provided Engadget with the following statement to explain why it doesn’t have data that can provide any further action on what it found.

“When we set up this reporting channel in 2024, we informed NCMEC that we would not have sufficient information to create actionable reports, because of the third-party nature of the scanned data. The separate channel ensures that these reports would not dilute the efficacy of our other reporting channels. Because of how this data is sourced, we don't have the data that comprises an actionable report.”

"This is really an outlier," Fallon McNulty, executive director of NCMEC’s CyberTipline, told Bloomberg. The CyberTipline is where many types of US-based companies are legally required to report suspected CSAM. “Having such a high volume come in throughout the year begs a lot of questions about where the data is coming from, and what safeguards have been put in place.” She added that aside from Amazon, the AI-related reports the organization received from other companies last year included actionable data that it could pass along to law enforcement for next steps. Since Amazon isn’t disclosing sources, McNulty said its reports have proved “inactionable.”

Amazon provided Engadget with these additional details, which were first reported in Bloomberg:

“Amazon is committed to preventing CSAM across all of its businesses, and we are not aware of any instances of our models generating CSAM. In accordance with our commitments to responsible AI and the Generative AI Principles to Prevent Child Abuse, we take a deliberately cautious approach to scanning foundation model training data, including data from the public web, to identify and remove known CSAM and protect our customers. While our proactive safeguards cannot provide the same detail in NCMEC reports as consumer-facing tools, we stand by our commitment to responsible AI and will continue our work to prevent CSAM.”

The company also reiterated that “we intentionally use an over-inclusive threshold for scanning, which yields a high percentage of false positives” to explain the high volume of content the company reported.

Safety questions for minors have emerged as a critical concern for the artificial intelligence industry in recent months. CSAM has skyrocketed in NCMEC's records; compared with the more than 1 million AI-related reports the organization received last year, the 2024 total was 67,000 reports while 2023 only saw 4,700 reports. 

In addition to issues such as abusive content being used to train models, AI chatbots have also been implicated in several dangerous or tragic cases involving young users. OpenAI and Character.AI have both been sued after teenagers planned their suicides with those companies' platforms. Meta is also being sued for alleged failures to protect teen users from sexually explicit conversations with chatbots.

Update, January 30, 2026, 11:05AM ET: This story has been updated with several statements from Amazon.

This article originally appeared on Engadget at https://www.engadget.com/ai/amazon-discovered-a-high-volume-of-csam-in-its-ai-training-data-but-isnt-saying-where-it-came-from-224749228.html?src=rss

UK wants to give web publishers a ‘fairer’ deal with Google’s AI overviews

The UK’s Competition and Markets Authority (CMA) is recommending measures to give publishers more control over how their content is used in Google’s AI overviews. The aim is to “provide a fairer deal for content publishers, particularly news organizations,” the CMA’s chief executive Sarah Cardell said in a press release.

With Google accounting for more than 90 percent of search inquiries in the UK, the CMA recently designated the company with “strategic market status” for search under the Digital Market Act. That allows the regulator to apply “conduct requirements” on Google to promote competition and avoid antitrust issues.

With those new powers, the CMA proposed a number of measures today. The first is a set of controls that would allow publishers to opt out of their content being used for features like AI Overviews or to train AI models. Google would also need to properly attribute publisher content.

Another measure would require Google to apply fair search result rankings for businesses, with an “effective process for raising and investigating issues.” Google would also need to provide a “choice screen” for alternative search options on Android mobile and Chrome browsers.

“These targeted and proportionate actions would give UK businesses and consumers more choice and control over how they interact with Google’s search services — as well as unlocking greater opportunities for innovation across the UK tech sector and broader economy,” Cardell said in a statement.

In response, Google wrote that it’s “exploring updates to let sites specifically opt out of Search generative AI features.” The aim, it said, is to keep search helpful for people who want information quickly while allowing publishers to better manage content. “Any new controls need to avoid breaking Search in a way that leads to a fragmented or confusing experience for people,” the company wrote, adding that it’s “optimistic” it can meet the CMA’s requirements.

When its new designation was announced in October 2025, Google complained that some of the proposed interventions would inhibit UK innovation and growth. Citing a study, the company said that similar measures imposed by the European Union produced “negative results” that “have cost businesses $114 billion.”

This article originally appeared on Engadget at https://www.engadget.com/ai/uk-wants-to-give-web-publishers-a-fairer-deal-with-googles-ai-overviews-132742850.html?src=rss

Windscribe review: Despite the annoyances, it has the right idea

Windscribe is a virtual private network (VPN) with intense "How do you do, fellow kids?" energy. It has servers in 69 countries and an annual plan that costs $69, an obsession with the sex number that rivals Elon Musk's. I'm shocked that it doesn't have a subscription costing $4.20 per month.

But there's another side to Windscribe's cringe: an obsession with independence and a Bernie Sanders-like anger on behalf of an exploited public. In a market where the best VPNs aim for professionalism, Windscribe aspires to be punk. Its iconoclasm may have led it to develop an app that looks like ExpressVPN in a trash compactor, but it also spurred Windscribe to offer a strong free plan and forgo financial relationships with VPN reviewers. That attitude earned it a spot on my list of the best free VPNs.

Although Windscribe's heart is in the right place, my job is to figure out whether that translates into a good product. I used our rigorous VPN testing procedure to rate Windscribe in 11 categories. You can find my results in the table below and a final verdict at the end of the review.

Editor's note (1/27/26): We've overhauled our VPN coverage to provide more detailed, actionable buying advice. Going forward, we'll continue to update both our best VPN list and individual reviews (like this one) as circumstances change. Most recently, we added official scores to all of our VPN reviews. Check out how we test VPNs to learn more about the new standards we're using.

Category

Notes

Installation and UI

Installation and setup are always straightforward

Apps look very similar on Windows, macOS, iOS and Android

App design is overly compact and often impenetrable, but hides a solid program

Browser extensions allow one-click bypassing of security features on the current page, much like common ad blockers

Speed

Average latency below 300 worldwide

Some slowdown in download and upload speeds, but not severe

Speeds were highly consistent everywhere except some African servers

Security

Six solid protocols — WireGuard, IKEv2, and four based on OpenVPN

Most protocols available on all platforms, except IKEv2 on Android

No leaks detected, even while switching servers

Packets are encrypted as expected

Pricing

$9 per month, $69 for one year ($5.75 per month)

Custom plans cost $1 per country plus $1 for unlimited data; must spend at least $3

Static IPs available for $2 per month or $8 per month for a residential address

Free plan gives you 10 locations and 10GB per month with a confirmed email

Bundles

Shares coupon codes for various discounts on five "partners in privacy"

Privacy policy

Retains very little information, none of it personally identifiable

Can make an account without an email address

All apps have been audited by independent overseers

Fought Greek court case in 2025 because it had no logs to turn over

Virtual location change

15 different servers in five locations unblocked Netflix

Content changed each time, suggesting the destination site was completely fooled

Server network

193 server locations in 122 cities across 71 countries

Only two virtual server locations in the entire network

Real servers in Russia and India risk abrupt shutdowns

Features

Standout extras include the customizable R.O.B.E.R.T blocker and split tunneling on Windows, Mac and Android

Network Options offers lots of automation choices, but terminology makes it needlessly confusing

Includes obfuscation to get online in restrictive regions

Firewall is a stronger version of a kill switch, preventing any access unless the VPN is connected

Customer support

Knowledgebase search bar is good at finding articles, and articles themselves are useful

Garry AI chatbot is helpful, but pushed way too hard at the expense of access to human agents

Active Reddit and Discord communities for peer-to-peer help

Background check

Founded in Canada in 2016

No significant controversies in 10 years

Canada is a Five Eyes nation, but this shouldn't matter if Windscribe is keeping to its no logs policy

The first step is always to figure out how easy or hard the VPN is to use. Windscribe and other VPNs are important tools, but you'll never use them if the UI gets in the way. I tested Windscribe's desktop apps on Windows and Mac, its mobile apps on iOS and Android and its Chrome and Firefox browser extensions.

To start with, let me say that installing Windscribe is a breeze no matter where you do it. The downloaders and installers handle their own business, only requiring you to grant a few permissions. The apps arrive on your system ready to use out of the box.

The first thing you'll notice about Windscribe is that it's not even slightly interested in looking like any other VPN. It crams everything into an extremely compact window, which has some advantages — mainly that it's easy to operate it while looking at another app. On the downside, well, it looks like this.

Windscribe's UI on a Windows laptop.
Windscribe's UI on a Windows laptop.
Sam Chapman for Engadget

The Windscribe team will probably just say that I'm brainwashed by the establishment, but there's a good reason that most VPNs choose designs with a little more space. This fiddly console, most of which is taken up by information you can't interact with, is likely to confirm all a newcomer's worst fears about using a VPN. Private Internet Access had a similar problem of tightening its app design to the point of being incomprehensible.

The problems persist when you get to the settings page. It's easy to make sense of a VPN without technical knowledge, but Windscribe's preferences menu does everything it can to obscure that truth. Highly technical features are mixed in with options for casual users, and the explanatory blurbs usually cloud the issue even further.

Even the "Look & Feel" settings somehow manage to be confusing. What is the difference between the Stretch, Fill and Tile modes for aspect ratio? What the heck is a Bundled background, and what does it matter whether it's Square, Palm, Ripple, Drip or Snow? The answers to all these can be found by playing around or looking in the knowledgebase, but a VPN really shouldn't require that for its most basic toggles.

Once you get used to Windscribe and learn where to find the features that actually matter, it runs quite smoothly. Connections are never delayed and there are none of the random error messages that have dogged me on other VPNs. In a world of VPNs that look great but run clunkily, Windscribe has built one that looks terrible but runs great. I can't complain about how well it works, but is it too much to ask for a provider that does both? (Oh, wait, that's Proton VPN.)

Windscribe's macOS app is almost identical to its Windows app. That deserves praise in itself — you'll get much the same experience no matter which type of computer you use. But it also means the Mac app shares the same problems.

Windscribe's app for Mac desktops and laptops.
Windscribe's app for Mac desktops and laptops.
Sam Chapman for Engadget

There's the same overly compact design cluttered with too much information. The same technobabble-filled options menu. And the same fundamental solidity underlying it all: a VPN that does the job beautifully but has no interest in being accessible. It would be a mistake to write Windscribe off because of its app design, but it's important to know what you'll have to work through.

One thing I can't fault Windscribe for is a lack of consistency. The Android app looks a lot like the Windows and Mac apps, only lightly adapted for the mobile format. On these devices, the design decisions make more sense — the UI writing is still impenetrable for casual users, but the compact pages look a lot more normal on a phone screen.

A comparison of Windscribe's extremely similar apps on Android and Mac.
A comparison of Windscribe's extremely similar apps on Android and Mac.
Sam Chapman for Engadget

There's not a lot to say about Windscribe on iOS that I haven't already said about the other three main platforms. Looking over all my screenshots, it seems fairly clear that Windscribe's problems — much like PIA's — come from starting on mobile and trying to make that same design work on desktop. It's still not great to look at, but I can at least see where they're coming from.

Windscribe's iOS app.
Windscribe's iOS app.
Sam Chapman for Engadget

Windscribe's extensions for Chrome and Firefox look a little like its desktop and mobile VPN apps, but they act a little differently. They serve the same basic purpose as the standalone apps — changing your IP address and location — but they're also customizable ad blockers for the web page you're currently on.

Windscribe's Google Chrome extension.
Windscribe's Google Chrome extension.
Sam Chapman for Engadget

For example, in the image above, I can control what location Google perceives me to be in. But I can also control what gets blocked by choosing to let Google bypass certain features. Clicking the leftmost button makes the current website skip the VPN tunnel. The central button shuts off the ad blocker and the right-hand button shuts off the features on the Privacy section of the preferences menu. Like everything else about Windscribe, it's unintuitive but works great once you figure it out.

I used speedtest.net to test Windscribe's speeds. In case you aren't familiar with the jargon, Ping measures a server's latency, which is how long it takes a single packet of data to reach it from your device. Download speed measures how much data can be downloaded at a time, while upload speed shows how quickly you can send data to the network. Think of ping as your car's speed in miles per hour and download and upload speed as the amount of traffic on the road.

As usual, I used the WireGuard protocol to run these tests, since it's almost always the fastest. Starting with my unprotected speeds at home in Portland, I moved gradually farther away until I was connecting to the other side of the world. Ideally, ping should increase linearly (not exponentially), while download and upload speeds don't dip much at all. I've recorded Windscribe's performance in the table below.

Server location

Ping (ms)

Increase factor

Download speed (Mbps)

Percentage drop

Upload speed (Mbps)

Percentage drop

Portland, USA (unprotected)

22

59.35

5.92

Vancouver, Canada (fastest location)

27

1.2x

55.89

5.83

5.56

6.08

Boston, USA

161

7.3x

48.49

18.30

5.66

4.39

Quito, Ecuador

283

12.9x

46.46

21.72

4.68

20.95

London, UK

287

13.0x

43.70

26.37

4.51

23.82

Nairobi, Kenya

595

27.0x

32.63

45.02

3.57

39.70

Seoul, South Korea

258

11.7x

43.27

27.09

4.48

24.32

Average

269

12.2x

45.07

24.06

4.74

19.93

Windscribe gave me some of the shortest latencies I've ever seen — comparable to CyberGhost, whose ping lengths I was also very impressed by. Its download and upload speeds also look a lot like CyberGhost's, with both firmly in good-but-not-amazing territory.

However, Windscribe's speeds were a lot more consistent. Throughout the tests, I hardly ever saw major fluctuations in the same location, on any metric. The Nairobi server seemed to be under some strain, but that's not unusual for a VPN in Africa. Every location except for that one followed a smooth downward curve. I'm happy with that; speed is one of the areas where you want your VPN to be reliably boring, not flashy.

Practically, a speed test like this suggests that Windscribe is best for gaming, livestreaming and video chatting, and that it's perfectly serviceable for any other task you could do online. You may not get the best speeds you've ever seen, but unless your internet is bad to begin with, Windscribe should not slow it down enough to be noticeable.

I can say up top that Windscribe doesn't seem to have any dangerous security flaws, but I'll take this section to explain why I think that. To start with, it uses only the three VPN protocols currently known to be secure: WireGuard, OpenVPN and IKEv2, plus a few other options all based on OpenVPN. With those options, you can be sure you're getting encryption that's currently uncrackable.

It also passed two batteries of tests I ran on its security. The first set of tests looks for DNS leaks, WebRTC leaks and other slip-ups that might reveal your real IP address. The second checks whether data packets sent through the VPN tunnel are actually getting encrypted. Check each section below for details on how Windscribe did.

A VPN protocol determines how exactly a VPN makes contact between its own servers, your device and your ISP. Certain protocols can make your VPN run faster, stabilize a shaky connection or get into websites other protocols fail to unlock. If you're having a problem with your VPN, changing the protocol is one of the first troubleshooting steps.

Windscribe makes a total of six protocols available, though it's really just three, since four of the six are variations on OpenVPN. WireGuard works on every platform, and is currently the fastest and most stable — its drawback used to be that it was new, but with the passage of time, it's no longer new enough to make it suspect.

IKEv2 is a connection protocol that uses the separate IPSec protocol for its security. This double team's main strength is reconnecting to the VPN when a device switches networks; it's also good at not draining phone batteries. Windscribe supports IKEv2 on Mac, iOS and Windows.

OpenVPN is the oldest open-source VPN protocol, refined by over a decade of repeated probing by volunteers. It's not only relatively fast and highly secure, but comes in two flavors: TCP, which makes connections more stable, and UDP, which is usually faster and should be your first resort with OpenVPN. Windscribe supports OpenVPN on all platforms.

Windscribe rounds out the selection with two unique protocols, both focused on hiding your VPN traffic from firewalls and censors. Stealth uses the same connection ports as HTTPS, so it can't be blocked by shutting certain ports down entirely. WStunnel obfuscates connections even further by using the extremely common WebSocket technology to establish VPN connections. Both these proprietary protocols are much slower than the other options, but can save you if you find yourself repeatedly blocked while using Windscribe.

I started my leak tests by using ipleak.net to check several Windscribe servers for IP leaks of all sorts. Each time I connected and checked my location, I only saw the VPN server's IP address, never my real one. I tried to trip Windscribe up by switching servers while remaining connected, even changing continents, but my true location never once slipped out. This puts its security solidly above CyberGhost, Norton VPN and many others.

I couldn't find any holes in Windscribe's armor.
I couldn't find any holes in Windscribe's armor.
Sam Chapman for Engadget

Windscribe automatically blocks IPv6 traffic while connected, so IPv6 leaks weren't going to be a thing. I finished the test by checking five servers using browserleaks.com/webrtc, finding no issues each time.

The final step is to make sure Windscribe is applying encryption properly through its VPN protocols. For this test, I used a free packet sniffer app called Wireshark to look directly at what my computer was sending out.

Windscribe's encryption looks solid.
Windscribe's encryption looks solid.
Sam Chapman for Engadget

It's a bit hard to tell what's going on, but to summarize, I've loaded a website without HTTPS protection and checked whether Windscribe managed to apply that protection. The lack of readable information in the data stream proves that its encryption is indeed working as expected.

Windscribe has three subscription options (not counting its free plan, which I'll discuss in a moment). One month of Pro service costs $9.00 — after Mullvad, the second-cheapest monthly subscription to a top-tier VPN. You can also pay $69 for a 12-month Pro subscription, working out to $5.75 per month. Both of these tiers give you the exact same set of Pro features and can be used on unlimited simultaneous devices.

The cost of Windscribe Pro at publication time.
The cost of Windscribe Pro at publication time.
Sam Chapman for Engadget

The third option is to build your own plan. Build-A-Plan is an interesting beast that's unique to Windscribe. When you choose a custom plan, you must spend at least $3 per month. Gaining access to all the Pro servers in a country costs $1. For each country you add, you get an additional 10GB of data per month on top of the 10GB already included for free.

If you'd rather not budget your data at all, you can pay another $1 for unlimited data, plus 10 custom rules for the R.O.B.E.R.T. content blocker (I'll untangle the tortured acronym soon). It's a little convoluted, but wonderfully flexible. You can even change your Build-A-Plan in the middle of the subscription period.

Windscribe also offers shared static IPs for an extra fee. You can add a datacenter IP to any plan for $2 per month or a residential IP (usually better at getting around restrictions) for $8 per month. Team billing is also available through ScribeForce at $3 per seat per month, including a centralized management panel.

Windscribe isn't the overall best free VPN — hide.me wins that honor with its more flexible data limit — but it's close. Free users get access to servers in 10 countries: the US, Canada, the UK, the Netherlands, Norway, France, Germany, Switzerland, Romania and Hong Kong. If you plot that on a map, you'll see that the Windscribe free plan is most useful in North America and Europe.

Free users start with a data allotment of 2GB per month. The monthly limit rises to 10GB if you sign up with a confirmed email address and 15GB if you post about Windscribe on Twitter/X. That's enough for casual browsing, but streaming in standard definition takes about 1GB per hour, so you won't be doing much binge-watching.

On the upside, a free plan gives you access to all Windscribe's features except for dynamic port forwarding. You can set three R.O.B.E.R.T. rules and use your free account on an infinite number of devices (subject to the usual restrictions about exploiting that for commercial purposes — as Windscribe itself states, no one person has 30 devices that need a VPN).

Windscribe doesn't have any add-ons of its own except for static IP addresses. However, it does offer discount codes for a group of "partners in privacy" that share its business ethics. The coupon codes are available here and don't require a Windscribe subscription to use.

The five members of Windscribe's gang.
The five members of Windscribe's gang.
Sam Chapman for Engadget

There are currently five allies in the gang. Control D offers DNS filtering for organizations to block unwanted websites; the Windscribe coupon gives you 50 percent off. You can get 25 percent off a one-year subscription to addy.io, an open-source email anonymizer, and Ente, an encrypted storage space for photos and videos.

Rounding out the team are Kagi, a private search engine which you can use for three months free with the Windscribe coupon, and Notesnook, an encrypted notes app. Windscribe's coupon gives you a 10% discount on Notesnook's yearly plans in perpetuity.

Windscribe's marketing positions it as serious about user independence, so I came into this section hoping for a privacy policy that backs those words up. An early green flag is that the policy is short, succinct and obviously written to be read by the users themselves. It's also fantastic that you can sign up without an email address (though you will need one to get the full data allotment on the free plan).

Windscribe gathers information on its website using Piwik, an open-source analytics tool that it manages itself; no third parties are involved. The Windscribe app itself collects no information except for the amount of data used in a month, the time of your last connection and the number of devices you have online at once. When actively connected, it also gives you an anonymized username necessary for the OpenVPN and IKEv2 protocols.

My only quibble is that Windscribe is oddly reluctant to identify which third-party payment processors it uses. The information does exist elsewhere — an article in the knowledgebase states that payments are handled by "trusted third party processors such as PayPal and Stripe," and another page says that CoinPayments handles cryptocurrency transactions. It's a small thing, but the rest of the policy is so airtight that it stands out.

Windscribe's apps are fully open-source (you can find them on Github here). In addition to this general exposure, it's also undergone three intensive audits from security firms. Leviathan Security looked into its desktop apps in 2021 and its mobile apps in 2022. The auditors made a total of five high-severity recommendations, all of which Windscribe claims to have addressed.

More recently, Windscribe had its entire codebase audited by PacketLabs. The auditors' June 2024 report found that some of Windscribe's code was storing more user information than it strictly needed to. Windscribe also claims to have handled this risk. More importantly, PacketLabs found no intentional subversions of Windscribe's no-logs policy, so its privacy statements can likely be trusted.

Further corroboration of the latter came from a 2025 court case in which Windscribe founder and CEO Yegor Sak was indicted in Greece and charged with a crime committed by a Windscribe user through an IP address in Finland. This case is obviously absurd — like charging the head of GM with a single instance of vehicular manslaughter committed by someone driving a Buick — but Sak was obliged to appear in court anyway.

As Sak writes in the linked post, he could have turned over the logs and shown who actually committed the crime, but he couldn't since Windscribe doesn't keep that information. Had there been an alternative to waging an expensive and inconvenient legal campaign in another country, Sak would surely have taken it. The fact that he didn't is strong proof of Windscribe's no-logging policy.

Changing your IP address with a VPN can do more than just anonymize your internet activity. A service like Windscribe can give you an IP address associated with a certain country or region, letting you use the internet like you were there. This has applications ranging from the serious (break out of a nationwide firewall to document human rights issues) to the fun (get new titles on streaming platforms without paying for a new subscription).

Netflix is a great tool for testing whether a VPN can change your virtual location. Like most streamers, it tries to block all VPN access to protect the copyrights it holds. Consequently, if a VPN can crack Netflix, it must be serious about keeping its server network fresh to foil any potential blockers.

A successful location change on Netflix using Windscribe.
A successful location change on Netflix using Windscribe.
Sam Chapman for Engadget

For this test, I tried to access Netflix three times each through five different Windscribe server locations, refreshing the connection to use different servers each time. I looked for successful Netflix access, plus different content to prove my location had actually changed.

Server location

Unblocked Netflix?

Changed content?

Vancouver, Canada

3/3

3/3

Queretaro, Mexico

3/3

3/3

Tokyo, Japan

3/3

3/3

London, UK

3/3

3/3

Auckland, NZ

3/3

3/3

Windscribe got a perfect score. Netflix loaded easily every time, and the content was always localized to the country I chose. With this performance combined with its fairly consistent speeds over long distances, Windscribe makes a nearly perfect streaming VPN. The only downside is that the data limits on the free plan mean you'll probably have to pay for serious streaming time.

Windscribe has 193 server locations in 71 countries, which it insists on listing as "69+" (again, hilarious). Although 193 sounds like a lot, many of them are duplicate locations in the same city. This isn't necessarily a problem, but for accuracy's sake, the total number of cities with Windscribe servers is 122.

Region

Countries with servers

Cities with servers

Total server locations

Virtual server locations

North America

6

40

61

0

South America

7

7

9

0

Europe

38

47

75

0

Africa

3

3

5

0

Middle East

2

2

2

0

Asia

12

16

28

1

Oceania

2

6

12

0

Antarctica

1

1

1

1

Total

71

122

193

2 (1 percent)

The bigger story here is Windscribe's spurning of virtual servers. A virtual server location is physically located in a different region than the one it outwardly displays. For example, a server with an Indian IP address might really be in Singapore. Throughout the entire Windscribe network, only two servers are virtual: one in India and one in Antarctica.

This is both good and bad. On the positive side, the near-total lack of virtual servers means you can be sure of how any server will perform. If it says it's in Buenos Aires, it'll run like it's in Buenos Aires — you won't be surprised with lagging speeds because it's really in Miami. This also makes it clear that Windscribe isn't interested in pumping up its network size for marketing purposes.

Windscribe's server selection list on the Mac app.
Windscribe's server selection list on the Mac app.
Sam Chapman for Engadget

On the other hand, virtual locations aren't an inherently bad thing. Windscribe acts as though advertising hype is the only reason any VPN would employ them, but there are real use cases. Virtual servers can be used to place locations inside countries where real servers would risk confiscation by the government, like Russia, India and China. Windscribe chooses instead to place real servers in Russia and India, both of which have data retention laws that directly conflict with its own privacy policy.

Does this mean that using Windscribe's Russian servers will earn you a midnight visit from the FSB? Probably not. Assuming Windscribe is following its no-logs policy (which appears to be the case), there won't be any user data on those servers if the government seizes them. But it does mean they're effectively running illegal data centers which could be raided and shut down at any time. Be aware of this if you depend on Windscribe's locations in Russia or India.

As covered in the UI section, Windscribe has a lot going on in its apps. The Connection tab alone has 13 different features, including two submenus with several options of their own. With this many options, and so many of them highly situational, I won't be able to cover every nook and cranny without this review getting seriously bloated. I've instead chosen some of the most important and illustrative features to give you a clear sense of the whole picture.

You'll find this feature at the top of the Connection tab. When you click Network Options, you should see the name of your current Wi-Fi network and all the others your Windscribe account has discovered. This feature lets you control how the VPN reacts to each network it encounters, not unlike CyberGhost's Smart Rules.

Just switching around a few terms would make this a lot less confusing.
Just switching around a few terms would make this a lot less confusing.
Sam Chapman for Engadget

The app does a remarkably poor job of explaining how this works, so I'll break it down for you here. When the Auto-Secure Networks switch is turned on, Windscribe will automatically mark each new network as Secured — a word which here means "Windscribe turns on when it encounters the network."

So far, so good. But if you turn Auto-Secure Networks off, things get weird. Without it, Windscribe tags every network you encounter as Unsecured. Whenever you connect to an Unsecured network, Windscribe immediately disconnects itself. This means it secures all Secured networks and does not secure any Unsecured networks.

It feels backwards until you realize that Windscribe is referring entirely to itself here. "Secured" doesn't mean that the Wi-Fi network is password-protected or otherwise considered safe, and "Unsecured" doesn't mean that it's open to the public without a password. All that matters is whether or not you want Windscribe to activate or deactivate on that network. It's a useful feature that even lets you choose a VPN protocol for each network, but it would help to bring it more in line with mainstream terminology.

This mouthful of a feature name allegedly stands for Remote Omnidirectional Badware Eliminating Robotic Tool. This is perhaps the apex of the VPN industry's unfortunate habit of saddling perfectly good features with word-salad names (yes, I'm aware it's supposed to be funny).

R.O.B.E.R.T. is perhaps the most customizable content blocker on any VPN right now. To start with, it includes eight lists of sites it blocks at the DNS level: Malware, Ad + Trackers, Social Networks, Porn, Gambling, Clickbait, Other VPNs and Crypto. These vary in usefulness, and you can't determine the contents of each list, but it's nice to have such a range of choices.

It eliminates all the badware, remotely AND omnidirectionally!
It eliminates all the badware, remotely AND omnidirectionally!
Sam Chapman for Engadget

Where R.O.B.E.R.T really shines, though, is in its browser-based customization dashboard. Each Free user can make three custom rules, and Pro upgrades that to 10. Each custom rule can be used to block a specific website or network or allowlist it from one of the other general blocklists. You can also set it to spoof a domain, though there's no practical reason to do this (Windscribe's idea of a "useful" application is making your friends think your post made the front page of Reddit).

Split tunneling sends some of your internet requests through the VPN tunnel while others go unencrypted as normal. This can be useful if you get worse-than-usual speeds and want to minimize the amount of traffic going through the VPN, or for certain websites that refuse to work with any VPN server.

You can split tunnel on Windscribe's apps for Windows, Mac and Android. Windows and Android users can split by app or website, while Mac users can only split by website. Windscribe lets you choose whether your split tunnel will be inclusive (only apps and IPs on the list will go through the VPN) or exclusive (the apps and IPs on the list will not go through the VPN). Note that R.O.B.E.R.T. rules apply to the entire system, even excluded apps and domains.

Instead of a kill switch, which it derides as an incomplete solution, Windscribe includes a Firewall feature on desktop and an Always On VPN feature on mobile. The Firewall can be considered a strong kill switch that prevents any internet traffic from going outside the VPN tunnel — something doesn't have to go wrong for the blocks to activate. Always On VPN on iOS and Android is functionally the same.

A more proactive defense has its advantages, but it would be nice if Windscribe included the weak kill switch option. Kill switches and firewalls can be overactive, and sometimes, you don't want the strongest level of security.

This feature is designed to let you access Windscribe on networks that don't want you to use a VPN, from school and work systems to entire censorious countries like China. Windscribe isn't forthcoming about how it works, but it's probably a deep-packet obfuscation that makes VPN traffic look like regular traffic. I didn't have time to pop over to China and test Circumvent Censorship, but I'm glad it exists.

Clicking the question mark tab on the Windscribe app shows you the full list of support options. You can peruse the knowledgebase, ask their chatbot Garry, talk directly to a human or check out their user communities on Reddit and Discord.

Most of these lead back to Garry.
Most of these lead back to Garry.
Sam Chapman for Engadget

I started with the written FAQs. At the top of the knowledgebase, there's a row of buttons you can click to see only articles relating to a particular operating system. This is a good idea in theory, but it's not implemented very well — there's no visible tagging system, so we can't see how it's deciding which articles to filter.

The search bar is much more likely to get you where you need to go. It works instantaneously and always turns up relevant articles, though it's weirdly insistent on showing exactly 10 results. I have few complaints about articles themselves, which are written in a way any user should find useful (give or take yet more attempted humor).

I tested the chatbot, Garry, by asking it about the mysterious Advanced Parameters tab of the Windscribe app. It explained each feature on that tab (none of which should be touched except by users with technical knowledge) in a spiel that was clearly pre-written but nonetheless useful. Garry was launched in 2018, when IBM Watson was the biggest thing in AI, and recently revamped into "Garry 2.0" — whether this is based on OpenAI or another platform is anyone's guess at the moment.

Windscribe appears to handle all of its own support, without outsourcing to Zendesk or a similar third party. If you decide not to go through Garry, Windscribe does have the option of connecting directly to a human. However, the Contact Humans option on the app sends you directly back to Garry. It's eventually possible to get Garry to connect you to a real person, but that doesn't excuse Windscribe building an outright lie into its app.

The Contact Support button on the knowledgebase, which I expected to lead to a ticket submission, also sends you straight to Garry. Windscribe really, really wants you to use Garry, in case that wasn't clear. You might have a better time going straight to the Windscribe Discord server or the r/Windscribe subreddit, both of which are linked to in the app.

Windscribe eschews a lot of the things we've come to expect from a VPN provider. It doesn't pay for ads anywhere. It has no affiliate relationships with news sites. The only thing resembling a Windscribe ad campaign is the free-plan data reward for Xeeting about it. It doesn't even have any venture capital investors — it's completely self-funded and self-hosted.

As a jaded and cynical reviewer who was already annoyed by Windscribe's memelord attitude, I was prepared to sniff out any hypocrisy in its background, which makes it all the more impressive that I didn't find any. Since its founding in Canada in 2016, Windscribe has never once been involved in any public doings that contradict its statements of ethics. It's even given free unlimited VPN access to every journalist working in Ukraine.

The only thing I could find resembling a controversy was an incident in July 2021 when Ukrainian police confiscated two servers that weren't fully encrypted. Although this would only have posed a risk to users running a customized connection profile under very specific conditions, it was still a lapse. Windscribe responded appropriately in my view, ending the legacy OpenVPN implementation that caused the problem.

Windscribe is based in Canada, which is one of the Five Eyes nations (along with the U.S., the U.K., Australia and New Zealand). This sounds scary, but it's not actually an issue, as Yegor Sak himself points out in a blog post I reference frequently.

Five Eyes is not an organization, but an agreement between five allied countries to share necessary intelligence with each other. This can absolutely be misused. If the U.S. government wants to spy on someone without running into the 4th Amendment, it can ask the Brits to spy on that person instead and tell them what they find, knowing the Constitution can't determine what other countries do to our citizens.

As bad as that is for our civil liberties, it doesn't actually change anything where VPNs are concerned. If a VPN isn't logging user data, there shouldn't be anything for any of the Five Eyes (or Nine Eyes or Fourteen Eyes) nations to find. And if it is keeping logs, you shouldn't be using it no matter where its headquarters are.

You might wonder, at this point, why my distaste for Windscribe's tryhard sense of humor has featured so prominently in this review. One reason is that I had to read a lot of it this week, and you must suffer as I have suffered. But it also makes Windscribe look very good by implication. Having no patience for the discount-4chan act that pervades Windscribe's brand, I was primed to dislike the VPN itself — and I simply couldn't.

This is not to say I had no problems at all with Windscribe. Its physical servers in Russia are difficult to trust. Its help options lean way too heavily on Garry the chatbot. Its app design and UI writing are significant faults. The free plan doesn't give you enough data for streaming.

Having said all that, though, Windscribe does everything else right. It changes virtual locations and unblocks Netflix without breaking a sweat. Its servers keep latencies low, and download speeds remain solid across the world. The apps may look bad, but they never break down. Some features, like R.O.B.E.R.T. and Auto-Secure, are both useful to everybody and deeply customizable for power users.

Windscribe may be best for privacy nerds who know how all its doohickeys work, but it's a VPN I recommend for everybody. In a world of predatory software, it's a relief to use an app that's unabashedly on the customer's side.

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/vpn/windscribe-review-despite-the-annoyances-it-has-the-right-idea-120000837.html?src=rss

Pornhub will become unavailable for many UK users as of February 2

Pornhub will stop offering full access to new users in the UK on February 2, its parent company Aylo said Tuesday, citing the nation's Online Safety Act and its age-verification requirements. The company said users who already verified their ages before the cutoff will still be able to access the adult site through existing accounts.

The move follows the Online Safety Act’s Protection of Children Codes, which took effect last summer and require adult sites to use "highly effective" methods of age verification. Aylo claims the system is backfiring and shifting both adults and minors to noncompliant porn sites that don’t verify age or moderate content according to Politico. Aylo's lawyers argued that only device-based age verification methods sufficiently protect user data.

Alexzandra Kekesi, VP of Brand and Community at Aylo, said "anyone who has not gone through that process prior to February 2 will no longer be able to access [the sites] and they're going to be met with a wall," according to 404 Media. The adult site was similarly made unavailable in various US states after the passage of age-verification laws that Pornhub claimed put users' privacy at risk. "These people did not stop looking for porn," Aylo said at the time. "They just migrated to darker corners of the internet that don’t ask users to verify age, that don’t follow the law, that don’t take user safety seriously, and that often don’t even moderate content."

Users who wish to get around these sorts of bans typically use VPNs to mask the origin of their internet traffic, though the UK is reportedly considering a ban on VPNs for children. The nation has also been considering a social media ban for users under 16 years of age, similar to the one enacted in Australia.

This article originally appeared on Engadget at https://www.engadget.com/entertainment/pornhub-will-become-unavailable-for-many-uk-users-as-of-february-2-194622124.html?src=rss

WhatsApp introduces an advanced security mode to protect against hackers

Meta's WhatsApp just introduced something called Strict Account Settings, a tool "that further protects your account from highly sophisticated cyber attacks." This is a one-click button in the settings that automatically initiates a series of defenses.

So what does it do? It blocks media and attachments from unknown senders, disables link previews and silences calls from unknown senders. This results in a more restrictive experience, but hopefully a safer one.

The company says this isn't necessarily for regular users, as conversations are already protected by end-to-end encryption. Instead, this is being pitched as a tool for "journalists or public-facing figures" that "may need extreme safeguards against rare and highly sophisticated cyberattacks."

Strict Account Settings will be rolling out globally in the coming weeks. Users will find the tool in the Privacy settings.

WhatsApp is just the latest tech platform to offer enhanced security tools for high-risk users. Apple introduced Lockdown Mode back in 2022 and Android introduced its Advanced Protection Mode last year.

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/whatsapp-introduces-an-advanced-security-mode-to-protect-against-hackers-174144598.html?src=rss