WEBVTT

00:00.000 --> 00:04.640
all public Wi-Fi networks are just, you know, traps that are there to just destroy them.

00:04.720 --> 00:10.600
And there is a grain of truth to it, especially back in the day, like back in 2015, HTTPS wasn't

00:10.600 --> 00:14.740
as common, which is going to guarantee that the traffic between you and the sites that you're

00:14.740 --> 00:18.780
accessing is actually kept between you two. And so it was possible for networks to access that.

00:18.980 --> 00:23.020
But now every site uses HTTPS for the most part. And that does kind of kill that whole

00:23.020 --> 00:28.460
packet sniffing story from back in 2015. But there are still some things that do leak to

00:28.460 --> 00:32.440
your network that are still very much a real thing in 2026. So you have things like your

00:32.440 --> 00:38.100
DNS queries, SNI is also something that's kind of leaked there. And a network operator can still

00:38.100 --> 00:42.440
see every domain you access. So you are trusting that network provider with quite a lot of things.

00:42.620 --> 00:47.020
And at the end of the day, if somebody has malicious things in mind on that network,

00:47.020 --> 00:52.180
they can still do a lot to, to harm that connection. So it's, there's reasons to be,

00:52.260 --> 00:56.020
I think legitimately concerned. And there's reasons that aren't maybe as dramatic as

00:56.020 --> 00:59.740
they're shared online. Now, I think the easiest solution for a lot of people,

00:59.840 --> 01:04.460
yeah, is a VPN. I don't think that for many people are going to gain like instant security

01:04.460 --> 01:09.100
that's typically advertised with a VPN provider, but it is going to shift the trust away

01:09.620 --> 01:14.720
from your ISP to a VPN company. It's not going to eliminate trust, but it is going to do things

01:14.720 --> 01:18.560
that is going to help guarantee that. Like when you have audits, you have a company

01:18.560 --> 01:21.680
that's dedicated to privacy. Worst case, you're going to end up where you started,

01:21.860 --> 01:24.660
but best case, they're probably protecting your privacy better. You can do things

01:24.660 --> 01:29.480
like encrypted DNS. You can use firewalls and you can also use your VPN altogether.

