[Solved] DNS hijacking and VPN

Yeah, that's a "whack-a-mole" issue. Apple (and many others) cycle through a big collection of IP address for their DNS servers. Do that nslookup now, wait 10 minutes and do it again, you'll get a few different hosts each time, which is why I run both an IP-based block on 443 and a dnsmasq-based name blocker (adblock + DoH list).

1 Like