Capital is used to hide IP but users are at risk of being exposed to IP because of VPN software
These are 3 vulnerabilities on HotSpot Shield and have been patched.
HIjack traffic (CVE-2018-7879) is part of the HotSpot Shield Chrome extension, allowing intrusion and redirection of web traffic to the infected site.
Leak DNS (CVE-2018-7878) leaks IP users to DNS servers, allowing ISPs to monitor and record activity.
True IP address leak (CVE-2018-7880) allows hackers to track user locations. This error is due to the whitelist to allow a very loose direct connection. Any domain with localhost such as localhost.foo.bar.com for example, and type = a1fproxyspeedtest in the address bar can bypass proxy and leak real IP.
Note that the above holes are on the Chrome browser utility, not on the mobile application or the software installed on the device.
See more:
Russia banned proxy services and VPN to block extreme content