• Skip to main content
  • Skip to header right navigation
  • Skip to after header navigation
  • Skip to site footer
RestorePrivacy

RestorePrivacy

Your online privacy resource center

  • Home

General

Home

News

About

Contact

Privacy Tools

  • Secure Browsers
  • Secure Email
  • Private Search Engine
  • Best VPN Services
  • Data Removal Services
  • Best Password Managers
  • Secure Messaging Apps
  • Ad Blockers
  • Identity Theft Protection

Newsletter

Coming soon.

No spam, ever.

  • Home
  • News
  • Email
    • Secure Email
    • ProtonMail Review
    • Tutanota Review
    • Mailfence Review
    • Mailbox.org Review
    • Hushmail Review
    • Posteo Review
    • Fastmail Review
    • Skiff Mail Review
    • StartMail Review
    • Runbox Review
    • Temporary Disposable Email
    • Encrypted Email
    • Alternatives to Gmail
  • Password
    • Best Password Managers
    • KeePass Review
    • NordPass Review
    • 1Password Review
    • Dashlane Review
    • RoboForm Review
    • LastPass Review
    • Bitwarden Review
    • Strong Password
  • Storage
    • Best Cloud Storage
    • pCloud Review
    • Nextcloud Review
    • IDrive Review
    • SpiderOak Review
    • Sync.com Review
    • MEGA Cloud Review
    • NordLocker Review
    • Tresorit Review
    • Google Drive Alternatives
  • Identity Theft
    • Identity Theft Protection
  • VPN
    • What is VPN
    • VPN Reviews
    • VPN Comparisons
    • Best VPNs
    • VPN Coupons
    • VPN Routers
  • Messenger
    • Secure Messaging Apps
    • Signal Review
    • Telegram Review
    • Wire Review
    • Threema Review
    • Session Review
  • Tools
    • Secure Browser
    • Ad Blocker
    • Secure Email
    • Private Search Engine
    • Password Manager
    • Secure Messaging App
    • Tor
    • Identity Theft Protection
    • Unblock Websites
    • Browser Fingerprinting
    • Privacy Tools
  • Info
    • Mission and Site Guidelines
    • Press
    • Contact

Critical Firewall Flaw on Upcoming macOS 14 Sonoma Exposes VPN Traffic

September 14, 2023 By Heinrich Long — 2 Comments
Critical Firewall Flaw on Upcoming macOS 14 Sonoma Exposes VPN Traffic

Update: Apple has fixed the flaw according to Mullvad’s recent blog post.

Mullvad VPN has published a warning to alert its macOS users that its client app doesn’t work correctly on Apple’s upcoming major release macOS 14, codenamed ‘Sonoma.’

According to the VPN vendor, a firewall bug in the new system prevents the proper implementation of rules on network traffic, allowing network packets that should be normally blocked to pass through. Although this does not impact only VPN apps, it is particularly problematic for such tools as it undermines their security, potentially leading to data leaks that might jeopardize the user’s privacy and anonymity.

“During the macOS 14 Sonoma beta period, Apple introduced a bug in the macOS firewall, packet filter (PF). This bug prevents our app from working, and can result in leaks when some settings (e.g., local network sharing) are enabled.”

Mullvad VPN

The Mullvad VPN team tested their app in macOS 14 beta 6, and also on the upcoming system’s release candidate (RC), and the firewall flaw is present on both. Considering that ‘Sonoma’ is scheduled for release by September 26, 2023, there are less than two weeks left to iron out bugs of this type, assuming that Apple considers this a security problem in the first place.

RestorePrivacy has contacted Apple to learn more about the issue and whether or not the consumer tech giant is planning to release a fix before the announcement of stable macOS 14 or on one of the first point releases, and we will update this post as soon as we receive a response.

What should macOS VPN users do?

While we normally recommend keeping your operating system and apps updated to the latest version, this will be an exception to those recommendations. Until Apple fixes this critical firewall flaw, macOS users should remain on macOS 13 Ventura. The security risks of upgrading and having your VPN traffic exposed are greater than staying on macOS 13 Ventura.

Similarly, Mullvad recommends the same:

MacOS 14 Sonoma is scheduled to be released on the 26th of September, if the bug is still present we recommend our users to remain on macOS 13 Ventura until it is fixed.

Mullvad VPN

How to reproduce the firewall flaw on macOS Sonoma

Mullvad has also provided technical instructions on how to reproduce the bug, which would be helpful to confirm future fixes work as expected. The test aims to evaluate the functionality of the macOS firewall, specifically its packet filter (PF). By setting up specific firewall rules that should block and log certain traffic, the test checks if the firewall correctly filters out that traffic. So far, in macOS 14, the firewall fails to block the specified traffic and does not log it, indicating a malfunction in the firewall system.

Test to reproduce the bug or confirm the fix in the future
MullvadVPN

Be warned that the given test will erase any pre-existing firewall rules loaded in the packet filter. If you wish to preserve these rules, you should not run the test.

While no other VPN providers have reported pre-release testing of their apps on the forthcoming macOS system, the inherent flaw likely affects all to some degree. Therefore, all macOS VPN users should exercise caution and opt to stay at macOS 13 until the situation clears up.

Related articles:

  • Mullvad VPN review
  • Mullvad VPN Partners with the Tor Project to Release New Browser
  • Apple iOS and macOS Impacted by New Bugs Bypassing Code Signing
  • Mullvad VPN Says Android Leaks WiFi Connection Data
  • Best VPN Services
Avatar photo

About Heinrich Long

Heinrich is an associate editor for RestorePrivacy and veteran expert in the digital privacy field. He was born in a small town in the Midwest (USA) before setting sail for offshore destinations. Although he long chafed at the global loss of online privacy, after Edward Snowden’s revelations in 2013, Heinrich realized it was time to join the good fight for digital privacy rights. Heinrich enjoys traveling the world, while also keeping his location and digital tracks covered.

Previous Post:Google Rolls Out Privacy Sandbox - New Initiative to Deliver Ads on ChromeGoogle Rolls Out Privacy Sandbox – New Initiative to Deliver Ads on Chrome
Next Post:State Spyware Extensively Using Ads as Distribution ChannelState Spyware Extensively Using Ads as Distribution Channel

Reader Interactions

Comments

  1. Jamin

    September 25, 2023

    Greetings.
    Thanks for this. With the release date upon us, just wondering if any fixes have come out or if we should still wait on upgrading. Do you plan to post another article or other communication regarding when you believe it safe to upgrade?

    Thanks,
    Jamin

    Reply
    • Jamin

      September 25, 2023

      Oops, I may have overlooked your update. Looks like we’re cleared to update. Thanks again for this and all your work. Your team is a great resource.

      Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Sidebar

Follow Us:

  • X
  • Mastodon
  • Facebook

Digital Privacy Essentials:
Secure Browser
Private Search Engines
Secure Email
Best Password Managers
Secure Messaging Services
Best Ad Blockers
Best VPN Services
Secure Cloud Storage

Privacy & Security Guides:
Privacy Tools
Alternatives to Google Products
Firefox Privacy Modifications
Five Eyes, 9 Eyes, 14 Eyes Spying
Browser Fingerprinting
Is Tor Safe?
Alternatives to Gmail
VPN vs Tor
Alternatives to WhatsApp
Is Your Antivirus Spying on You?
Controlling Communication Channels is Crucial for Privacy
Anonymity Networks: VPNs, Tor, and I2P
How to Really Be Anonymous Online
Private and Anonymous Payments

Secure Email Reviews:
ProtonMail Review
Tutanota Review
Mailfence Review
Mailbox.org Review
Hushmail Review
Posteo Review
Fastmail Review
Runbox Review
CTemplar Review
Temporary Email Services
Encrypted Email

Password Manager Reviews:
Bitwarden Review
LastPass Review
KeePass Review
NordPass Review
Dashlane Review
1Password Review
Best Password Managers

Secure Messaging App Reviews:
Wire Review
Signal Review
Threema Review
Telegram Review
Session Review
Wickr Review

Secure Cloud Storage Reviews
Tresorit Review
MEGA Cloud Review
Sync.com Review
Nextcloud Review
IDrive Review
pCloud Review
SpiderOak Review
NordLocker Review

How To Guides
How to Encrypt Files on Windows
How to Encrypt Email
How to Configure Windows 10 for Privacy
How to use Two-Factor Authentication (2FA)
How to Secure Your Android Device for Privacy
How to Secure Your Home Network
How to Protect Yourself Against Identity Theft
How to Unblock Websites
How to Fix WebRTC Leaks
How to Test Your VPN
How to Hide Your IP Address
How to Create Strong Passwords
How to Really Be Anonymous Online

About RestorePrivacy

Contact

About

RestorePrivacy is a digital privacy advocacy group committed to helping you stay safe, secure, and private online. You can support this project through donations, purchasing items through our links (we may earn a commission at no extra cost to you), or sharing this information with others. See our mission here.

  • X
  • Facebook
  • Mastodon

And for cybersecurity news, check out CyberInsider.

Digital privacy Checklist:

  1. Secure browser: Brave or Modified Firefox
  2. VPN: NordVPN (74% off coupon)
  3. Ad blocker: uBlock Origin or AdGuard
  4. Secure email: ProtonMail or StartMail
  5. Secure messaging: Signal or Threema
  6. Private search engine: MetaGer or Brave
  7. Password manager: NordPass or Bitwarden
  8. Identity theft protection: Aura
  9. Data removal service: Incogni

Copyright © 2025 Restore Privacy, LLC · Privacy Policy · Terms of Use · Contact · Sitemap · All Rights Reserved