• Dionysus@leminal.space
    link
    fedilink
    arrow-up
    7
    ·
    4 hours ago

    As everyone else has said, yes.

    There are tools that conduct random traffic patterns out the VPN though continuously to obfuscate your usage…

    Basically you make sure none of your traffic transits anything except the VPN, including DNS. The tool pulls random spikes of traffic, just junk in different sizes, anyone watching will only see the VPN traffic.

    Think of it this way, you want to mail stuff, and your neighbor can run over and look at the outbound labels on your boxes, so instead you mail everything to a proxy service who then remails it.

    They can still see you mail things though… Right?

    So instead you send thousands of boxes filled with different weights of junk to the proxy with directions to dump most of them, and your real shipments are mixed in there, the neighbors won’t know which box is real and which is junk or if it’s all real, they just won’t know.

    The key is to maintain a consistent randomness, making it difficult to pin down.

        • BooBees@fedinsfw.app
          link
          fedilink
          English
          arrow-up
          12
          ·
          8 hours ago

          Or by organizations that already have those vulnerabilities and keys in place but haven’t publicized them to maintain an advantage. Aka intelligence agencies

  • MentalEdge@sopuli.xyz
    link
    fedilink
    arrow-up
    8
    ·
    6 hours ago

    Of course.

    Lots of cybercrime has been solved by law-enforcement by matching traffic logs based on timestamps and throughput.

  • kayzeekayzee@lemmy.blahaj.zone
    link
    fedilink
    English
    arrow-up
    18
    ·
    7 hours ago

    Yes! In fact ISPs can use fingerprinting techniques to match websites with known data transmission patterns (ping, badwidth, packet timing, etc) to guess what websites you might be accessing even through an encrypted vpn. Some vpns (like mullvad and probably others) will throw in false data packets to thwart this type of fingerprinting.

    • Zedd_Prophecy@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 hour ago

      Yes, use any other DNS other than your provider. Adgaurd at minimum, PI hole with advanced lists is better. Both even better.

      • NarrativeBear@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        edit-2
        10 minutes ago

        I agree using something like Cloudflare or Quad9 is better then not using it at all, and making sure to turn on DNS over HTTPS is massive benefit. But as shown in my previous linked video even with this turned on a ISP can see/snoop DNS queries.

        A VPN would help obscure website you visit through the VPN, but your ISP would still see the connection to the VPN’s IP address.

        Though now comes the question of how much you trust that particular VPN.

  • Lasherz@lemmy.world
    link
    fedilink
    arrow-up
    2
    ·
    4 hours ago

    Yes. VPN still uses your data, more of it in fact because encrypted secure tunnel files are generally larger than the original data and also cached data on the ISP network are no longer called, so more goes to the greater internet.

  • gedaliyah@lemmy.world
    link
    fedilink
    arrow-up
    5
    ·
    6 hours ago

    Yeah, I remember some case where a college student was caught while using the school’s network because they new the times and filesizes of something. I don’t remember the exact details though.

  • wizardbeard@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    7
    ·
    7 hours ago

    Your ISP will be able to see the usage, and will almost certainly be able to tell that it is VPN usage. They won’t be able to tell what you’re doing or where you’re truly connecting to, just that you transferred whatever quantity of encrypted data with the VPN company at whatever time.