

This looks interesting and appears to be somewhat similar to vopono which allows any app to be run in a separate namespace via a VPN provider.
This looks interesting and appears to be somewhat similar to vopono which allows any app to be run in a separate namespace via a VPN provider.
You might want to investigate vopono which allows specific applications to run in a separate network space. This you could for example run Firefox or qbittorrent in a separate virtual network that can only communicate via Mullvad VPN tunnel but not see anything outside it. This is great for desktop use. Another great option is gluetun which allows other docker containers to be bound to a VPN tunnel.
Check out Clonezilla, which is the perfect tool for the job.
https://mullvad.net/en/blog/2023/8/9/response-to-tunnelcrack-vulnerability-disclosure/ is Mullvad’s response to this topic. TLDR not a concern other than possibly for IOS.
Gluetun works great for other docker containers. For regular apps Vopono is another great solution, which makes it easy to for example run another instance of a browser in a separate namespace.