Did you even read it? There's no IP leak. And if you're a high target, then using some kind of proxy is literally the first step you take. The attack is nothing but an exaggeration and has no merit in real world
Yes, I read it. Information about your IP address is leaked, as that's how Cloudflare routes you to a given datacenter.
And I strongly disagree that being able to uncover somebody's rough geographic location is not a privacy problem.
I wouldn't be surprised if this, for example, lets you deduce if somebody is currently home, at work, or commuting (as all three ISPs might be hitting different Cloudflare datacenters). That's not information everybody is comfortable broadcasting to the world.
Yes, I read it. Information about your IP address is leaked, as that's how Cloudflare routes you to a given datacenter.
And I strongly disagree that being able to uncover somebody's rough geographic location is not a privacy problem.
I wouldn't be surprised if this, for example, lets you deduce if somebody is currently home, at work, or commuting (as all three ISPs might be hitting different Cloudflare datacenters). That's not information everybody is comfortable broadcasting to the world.