This VPN allows anyone to access your internet connection. What could go wrong?

In other posts over the past year, cybercrime forum users have recommended Big Mama or shared suggestions about configurations people should use, according to Banana Analytics. In April this year, the security company Cisco Talos said It had seen traffic from the Big Mama proxy, along with other proxies, by attackers trying to force their way into various company systems.

Mixed messages

Big Mama’s website has few details about its ownership or leadership. The company’s terms of service say a business called Bigmama SRL is registered in Romania, although its previous version Website from 2022And Now at least one live pageLists a legal address for BigMama LLC in Wyoming. The U.S.-based business was dissolved in April and is now listed as inactive, according to the Wyoming Secretary of State’s website.

A person using the name Alex A responded to an email from WIRED about how Big Mama works. In the email, they say that information about free users’ connections being sold by Big Mama Network to third parties is “duplicated multiple times in the app market and application,” and that people have to accept terms to use. VPN. They say that Big Mama VPN is officially available only from the Google Play Store.

The email says, “We do not advertise and have not advertised our services on the forums you mentioned. They say they received a notification from Talos about its network being used as part of a cyber attack. Didn’t know about April searches. “We block spam, DDOS, SSH as well as local networks. We log user activity to cooperate with law enforcement agencies,” the email says.

Alex A. asked WIRED to send more details about ads on cybercrime forums, details about Talos searches, and information about teenagers using Big Mama on Oculus devices, saying they would like to answer more questions. will be “happy”. However, they did not respond to another email with additional details about the search findings and questions about their security measures, even though they believe someone was impersonating Big Mama to post on cybercrime forums, Alex said. Identity of A, or who is running the company.

During its analysis, Trend Micro’s Hilt says the company also discovered a security vulnerability within Big Mama VPN, which could allow a proxy user to access someone’s local network if exploited. . The company says it reported the glitch to Big Mama, which fixed it within a week, a detail Alex A confirmed.

Ultimately, Hilt says, there are potential risks whenever someone downloads and uses a free VPN. “All free VPNs come with a trade-off of privacy or security concerns,” he says. This applies to people loading them onto their VR headsets. “If you’re downloading applications from the Internet that aren’t from official stores, there’s always the risk that it’s not what you think it is. And the same is true with Oculus devices.

Leave a Comment