- Mom learned about her special needs son’s abuse by seeing TikTok video 5 Years Ago
- Influencer gets revenge on her male trolls with Instagram account Today 10:32 AM
- Conservatives are frothing over a Ukraine joke told on CNN Today 10:26 AM
- Dua Lipa isn’t canceled—but her fans are defending her in #DuaLipaIsOverParty like she is Today 9:21 AM
- These YouTube videos claim to show the Kobe Bryant helicopter crash (they don’t) Today 9:08 AM
- More than 40 colleges say they won’t use facial recognition on campus Today 8:32 AM
- LeBron’s Instagram tribute to Kobe is devastating Today 7:56 AM
- ‘Rise of Empires: Ottoman’ is ‘Game of Thrones’ for history buffs Today 7:00 AM
- People on Twitter ask whose ancestors would’ve passed immigrant ‘wealth test’ Monday 6:54 PM
- Kobe Bryant helicopter crash mocked in teen’s TikTok video Monday 6:38 PM
- Chiefs, Bears, Packers have Twitter accounts hacked Monday 3:48 PM
- Washington Post reporter suspended amid backlash over Kobe Bryant tweet Monday 3:08 PM
- America is united in hating Ken Starr’s impeachment hat Monday 3:01 PM
- In ‘Cuties,’ the contradictions of growing up come to a head Monday 1:55 PM
- Racist tweets blame fruit bat soup for coronavirus Monday 1:25 PM
If you’re using Hola, a free virtual private network (VPN) that lets you stream things like Netflix abroad, you need to stop immediately. The company behind Hola is turning your computer into a node on a botnet, and selling your network to anyone who is willing to pay.
Security researchers discovered multiple security flaws in Hola and published their findings on a site called “Adios Hola.”
“Hola is harmful to the internet as a whole, and to its users in particular,” researchers wrote.
So what’s the big deal? By using Hola as a VPN, you can view any content that might otherwise be blocked in your location by routing your traffic through the U.S. or whatever country you want your content to be in. But Hola turns your computer into an exit node without your permission, essentially letting anyone browse the Web through your network. Any malicious activity could then be traced back to you.
As the researchers note, it’s the same problem people have on the Tor browser—but on Tor, you can opt out.
Hola is going even further, by selling access to the network through a site called Luminati from $1.45 to $20 per GB. On Adios Hola, researchers published chat logs between them and the company explaining that they don’t enforce rules that say people shouldn’t be engaging in illegal activity because the company has “no idea what you are doing on our platform.”
Additionally, Hola can let someone take over programs on your computer. The researchers explain:
And on some systems, it gets worse; Hola will happily run whatever you feed it as the ‘SYSTEM’ user. What this means in simple terms, is that somebody can completely compromise your system, beyond any repair. It allows for installing things like a rootkit, for example.
This problem is not just an ‘oversight’. It’s not a thing where you say ‘well, bugs can happen’. This kind of security issue can only happen if a developer is either grossly incompetent, or simply doesn’t care about the security of their users. It’s negligence, plain and simple, and there’s no excuse for it.
If you haven’t already, uninstall Hola right now. And if you’re not sure whether or not you’re vulnerable thanks to Hola, you can visit the site to find out.
Selena Larson is a technology reporter based in San Francisco who writes about the intersection of technology and culture. Her work explores new technologies and the way they impact industries, human behavior, and security and privacy. Since leaving the Daily Dot, she's reported for CNN Money and done technical writing for cybersecurity firm Dragos.