> how I'd design a VPN if I were an intelligence agency

I think its safe to assume that intelligence agencies have other options available to them, such as country-wide timing attacks.