Your router is the one device on your network that's always on, rarely restarted, and — for most households — never opened again after the installer or a family member set it up years ago. That combination makes it an unusually attractive target: it's a permanent foothold that sees every device you own, and almost nobody is watching it.
Compromised home routers get used for a few consistent things: routing an attacker's traffic through your connection to hide their origin, quietly redirecting your web traffic to fraudulent sites, or acting as one node in a larger network of hijacked devices used to attack other targets. In most cases, you'd never notice anything different day to day.
The five-minute check
Beyond the basics
- Set up a guest network for visitors and smart-home devices. Isolating cameras, speakers, and other IoT gadgets from the network your laptop and phone use limits what a compromised smart device can reach.
- Turn off WPS. The one-button Wi-Fi Protected Setup feature is convenient but has a long history of implementation flaws that make it easier to crack than a strong password typed manually.
- Rename the network away from anything identifying. A network name that includes your address or last name gives a would-be attacker free information; it doesn't need to be clever, just generic.
The takeaway
Nobody budgets time to maintain a router because it's designed to be invisible once it's working. That's exactly why it's worth five minutes twice a year — it's the one device standing between everything else you own and the open internet, and it's almost never anyone's job to check on it.