An unsecured Wi-Fi network can allow attackers to:
- Access your network without permission.
- Intercept unencrypted data.
- Compromise devices connected to your network.
- Spread malware across your home network.
Essential steps to secure your Wi-Fi router
- Change the router’s default username and password.
- Default credentials are often publicly available.
- Use a long, unique, and random password.
- Keep your router firmware up to date.
- Install updates regularly.
- Enable automatic updates if supported.
- Change the default Wi-Fi name (SSID).
- Avoid using the manufacturer’s default name.
- Don’t include personal information such as your name or address.
- Set a strong Wi-Fi password.
- Use a memorable passphrase of 5 to 7 unrelated words.
- Make it at least 16 characters long.
- Don’t reuse passwords from other accounts.
- Use strong Wi-Fi encryption.
- Prefer WPA3 Personal.
- If WPA3 isn’t available, use WPA2 AES (also called WPA2-PSK).
- Avoid WEP, WPA, or WPA2-TKIP, as they are outdated and insecure.
- Disable remote management.
- Prevents people from managing your router over the internet.
- Disable WPS (Wi-Fi Protected Setup).
- WPS can be exploited to gain unauthorised access.
- Disable UPnP (Universal Plug and Play).
- While convenient for smart devices, it can expose your network to attacks.
- Enable it only temporarily if absolutely necessary.
- Secure the router physically.
- Keep it in a location where others cannot easily access or reset it.
- Enable a Guest Wi-Fi network.
- Give guests a separate password.
- Connect smart home and IoT devices to the guest network whenever possible to isolate them from your main devices.
