WebRTC leaks your real IP

What is WebRTC?

WebRTC, or Web Real-Time Communication, is a technology that enables real-time communication with Javascript APIs in your browser, without additional software. As an open-source framework, which is promoted by Mozilla and Google, among others, WebRTC functions as a secure communication infrastructure for video chats, voice calls or file sharing via web apps. WebRTC, when combined with the web conferencing server and the STUN server, provides the starting page and ensures the synchronisation of the connection between the endpoints.

How secure is WebRTC?

Proper encryption and online security When using VoIP applications, insufficient firewall settings can pose security risks. As a result, you can end up with malware on your computer. WebRTC should, however, be unproblematic, as no downloads or installations are required to use it. WebRTC has in-house security functions such as end-to-end encryption on-board as standard, and should therefore provide a reliable back-up for communication on almost any server. the use of a microphone and camera must be permitted for every connection, in which regard the user must be informed prior to commencing the data transfer.

If data is transferred, the DTLS protocol (Datagram Transport Layer Security) is used for encryption. This is already standard in the Firefox, Chrome and Opera browsers and is based primarily on the TLS protocol. This prevents data manipulations. Bugging attempts by snoopers are also prevented. At the same time, security is enhanced by means of audio and video encryption using the SRTP (Secure Real-Time Protocol). Here the security risk posed by DoS attacks is reduced thanks to encryption and authentication.

WebRTC reveals actual IP addresses

Essentially, WebRTC can be classified as a useful tool that is increasing in significance, but not if the privacy of the user suffers as a result. In the case of the use of the VPN service in particular, the true identity and the location of the user can be encrypted. Just a simple script on a website is sufficient to determine a user’s “original IP”. The consequence of this is that the protection provided by the VPN is no longer there. If you would like to perform a small practical test, you can see the problems for yourself via this website.

How do I preserve my online privacy?

In order to prevent the identification of your location, a VPN solution is normally sufficient to protect your privacy. Should it nonetheless still be possible to detect your IP address, we offer a short troubleshooting guide. Here you are shown several ways to protect and make your browser and your internet activity more secure.