MacOS Big Sur reveals Apple secretly hates your VPN and firewall

How to fix macOS Big Sur problems
(Image credit: guteksk7 / Shutterstock / Apple)

If you're using a Mac VPN and recently updated your device to Big Sur, your privacy may be at risk as it was discovered that Apple apps are able to bypass both firewalls and VPN services in the company's latest version of macOS.

Twitter user mxswd first spotted the issue back in October and provided more details in a tweet which reads: “Some Apple apps bypass some network extensions and VPN Apps. Maps for example can directly access the internet bypassing any NEFilterDataProvider or NEAppProxyProviders you have running”.

Security researcher at Jamf, Patrick Wardle confirmed that this was happening and explained in a comment that previous versions of macOS allowed a firewall or VPN to be set up using the Network Kernel Extension (kext).

According to Wardle, the Mac App Store in Big Sur is able to bypass any firewall set up by a user as its traffic is invisible to firewalls. This has serious security implications for organizations that have set up firewalls to prevent certain applications from using their corporate networks.

Bypassing firewalls and VPNs

The news outlet Apple Term wrote a story on this issue back in mid-October in order to bring attention to it ahead of Big Sur's official release. However, in an update to its story, Apple Term explained that the issue still exists, saying:

“Since the original publication of this article, macOS Big Sur has exited beta and been released to the public. Despite this, there is no indication that Apple has changed its behavior.”

In a tweet, Wardle showed how cybercriminals could use malware to easily exploit the gap between Apple apps and user's firewalls. By doing so, they could then send users' personal data to remote servers which puts both their privacy and security at risk.

As of now, it's still hard to understand why Apple would make its own apps exempt from firewalls and VPNs. Some believe that it is due to licensing issues while others think the company wants to keep data and traffic from its apps out of VPN servers.

Firewalls and VPNs are one of the many ways in which consumers and business users alike protect their privacy and security online, so hopefully Apple will address this issue soon. Until then though, it may be worth holding off on updating to Big Sur if you regularly use a VPN or firewall.

  • Also check out our complete list of the best VPN services

Via TNW

TOPICS
Anthony Spadafora

After working with the TechRadar Pro team for the last several years, Anthony is now the security and networking editor at Tom’s Guide where he covers everything from data breaches and ransomware gangs to the best way to cover your whole home or business with Wi-Fi. When not writing, you can find him tinkering with PCs and game consoles, managing cables and upgrading his smart home. 

Latest in VPN
Tor
What is Onion over VPN?
A representational concept of a social media network
What are data removal services?
ExpressVPN's Lightway Turbo upgrade – promo image
Can fast be faster? ExpressVPN promises it’s possible
AdGuard VPN during TechRadar tests
AdGuard becomes the latest VPN to add post-quantum encryption
NordVPN running on a desktop, mobile devices, Apple TV, a router and a game console
NordVPN reacts to results from its latest security audit
ExpressVPN's new Linux app interface
ExpressVPN releases a major upgrade to its Linux app
Latest in News
NordicTrack Ultra 1
The new NordicTrack Ultra 1 treadmill looks like it was designed by an architect and costs $15,000
An Nvidia GeForce RTX 5070
Nvidia RTX 5080 stock is so barren that retailers are holding competitions where you can "win" the right to buy one for MSRP
Assassin's Creed Shadows
Ubisoft shareholder accuses publisher of 'misleading investors', plans protest outside Paris HQ
Google Gemini AI logo on a smartphone with Google background
I made an AI version of Bilbo Baggins using Goggle Gemini for free, and shared a pipe with him outside Bag End – here’s what you can now do with Gems
Nicole Kidman wears a blue blouse with her arms crossed.
Netflix might be renewing The Perfect Couple and Beauty in Black for season 2, but I don’t get why when it’s canceled shows with poorer ratings
The Russo brothers posing for a photograph and Herman carrying a Volkswagen camper van in The Electric State
'We're optimists': AI enthusiasts Joe and Anthony Russo defend its use in movies and TV shows, but admit there are 'very real dangers' around its application