I can live with the standard mode, so this post is more of a warning to those who use vpn and are wondering why their dns is leaking, or those who don’t even know that their dns is leaking.
I did tests with 3-4 types of DNS. First one was VPN DNS, a custom DNS and my ISP default DNS. Both in aggressive mode and standard mode. DNS was not leaked in anyone of the test.
@sym can you provide the version of Brave you’re running, and more information about how your VPN is configured (enough for someone else to reproduce the issue)? In addition, could you try with the #brave-adblock-cname-uncloaking flag disabled in brave://flags, and say whether or not that changes the result?
There have been a few edge cases we’ve patched regarding CNAME uncloaking in combination with VPN or proxy setups; it’s something we definitely want to fix if it’s still leaking in some cases.