We review vendors based on rigorous testing and research but also take into account your feedback and our affiliate commission with providers. Some providers are owned by our parent company.
Learn more
vpnMentor was established in 2014 to review VPN services and cover privacy-related stories. Today, our team of hundreds of cybersecurity researchers, writers, and editors continues to help readers fight for their online freedom in partnership with Kape Technologies PLC, which also owns the following products: Holiday.com, ExpressVPN, CyberGhost, and Private Internet Access which may be ranked and reviewed on this website. The reviews published on vpnMentor are believed to be accurate as of the date of each article, and written according to our strict reviewing standards that prioritize professional and honest examination of the reviewer, taking into account the technical capabilities and qualities of the product together with its commercial value for users. The rankings and reviews we publish may also take into consideration the common ownership mentioned above, and affiliate commissions we earn for purchases through links on our website. We do not review all VPN providers and information is believed to be accurate as of the date of each article.

Latest News: Cybersecurity

The vpnMentor research team is reporting about a recent incident involving the popular Stable Diffusion user interface, ComfyUI, that has sent shockwaves through the AI community, exposing the potential dangers lurking behind seemingly innocuous tools. While ComfyUI itself remains secure, a

vpnMentor Research Team First published on June 09, 2024

Researchers have discovered that malware can exploit Microsoft's new Windows Recall feature to steal sensitive user data. Windows Recall, which is part of Microsoft's new Copilot+ PCs, captures regular screenshots to help users retrieve previously seen content through natural language queries.

Husain Parvez First published on June 07, 2024

A consumer-grade spyware app, pcTattletale, has been discovered to be running on check-in systems at three Wyndham hotels in the United States, according to a TechCrunch report. The spyware captures screenshots of the hotel booking systems, exposing guest names, reservation details, and partial

Husain Parvez First published on May 25, 2024

A critical vulnerability dubbed "Linguistic Lumberjack" has been discovered in Fluent Bit, a widely used logging and metrics tool. This vulnerability could potentially jeopardize major cloud platforms, including Amazon AWS, Google GCP, and Microsoft Azure. According to security researchers at

Husain Parvez First published on May 24, 2024

In a coordinated effort, the FBI, along with international law enforcement agencies, has successfully seized BreachForums, a notorious cybercrime forum known for facilitating the sale and trade of stolen data. BreachForums has been a significant hub for cybercriminals to sell stolen personal

Husain Parvez First published on May 20, 2024

In a startling discovery, scammers have been found exploiting Indian government websites by planting ads that redirect users to online betting platforms. According to a report by TechCrunch, approximately forty-eight domains ending with “gov.in” have been compromised across various Indian states,

Husain Parvez First published on May 16, 2024

An international coalition of law enforcement agencies has turned the tables on the notorious LockBit ransomware gang by reviving and repurposing its seized dark web site. Originally taken down in an operation earlier this year, the site is now being used to tease and announce upcoming revelations

Husain Parvez First published on May 07, 2024

Verizon’s annual Data Breach Investigation Report (DBIR) revealed a troubling boom in vulnerability exploitation throughout 2023. Instances of vulnerabilities being exploited surged by over 3x (180%) from the previous year. It also uncovered a troubling increase in the use of ransomware and

Hendrik Human First published on May 03, 2024

A critical bug in Palo Alto Networks' PAN-OS software, specifically affecting its GlobalProtect feature, has set the cybersecurity world on alert. Identified as CVE-2024-3400, this zero-day flaw was first spotted by Volexity on April 10, and it can be used by attackers to execute arbitrary code

Husain Parvez First published on April 19, 2024

Roku has confirmed that a credential-stuffing attack has compromised approximately 576,000 user accounts. This attack follows a similar incident that occurred last month, which affected over 15,000 accounts. The latest round of malicious activity was detected due to Roku’s close monitoring of

Keira Waddell First published on April 17, 2024