Routers are the gatekeeper between a network and the internet, yet many businesses leave default settings in place. A recent Engadget guide outlines a handful of changes that can be made in about ten minutes, starting with logging into the router's admin panel using its IP address and the credentials printed on the device.

The first step is to replace default admin credentials and the network name, since model-name SSIDs give attackers clues about potential weaknesses. The guide also recommends setting the wireless security to WPA3-Personal, or a mixed WPA2/WPA3 mode if older devices must be supported. Guest networks are another key tool: they isolate smart-home devices and visitors from the main network, and can be given separate passwords and bandwidth limits.

Two features should be disabled. WPS, which allows password-free device connection via a PIN or button, is vulnerable because the PIN is effectively two four-digit codes and can be cracked easily. Remote management, which lets users administer the router from outside the home, should also be turned off unless strictly needed. The guide notes that exact menu names vary by router manufacturer, but the principles apply broadly.