Every device in your home talks to the internet through one box. It is always on, it is reachable from outside, and it runs software that has probably not been updated since it was manufactured.
Phones and laptops nag you until you update them. Routers do not. There is no notification, no badge, no prompt — you would have to log into an administrative interface you have visited perhaps twice, on an address you may not remember, to find out an update exists.
What changed in 2026
- Automatic updates became more common. More consumer routers ship with automatic firmware updates enabled by default, which is the single biggest improvement in this area.
- Support windows got published. Regulatory pressure in several markets pushed vendors toward stating how long a device will receive security updates.
- Botnets kept targeting routers. Compromised home routers remained a staple of large-scale attack infrastructure, because the population of unpatched devices is enormous.
- ISP-supplied equipment improved unevenly. Some providers push updates automatically; others ship hardware that ages without attention.
Why the router is the high-value target
It sits at the boundary. Every connection passes through it, and unlike your laptop it is exposed to the internet by design.
A compromised router lets an attacker redirect your DNS — sending you to lookalike sites while your browser shows the address you typed — observe traffic metadata, reach devices on your internal network, and use your connection as part of a botnet.
None of that requires compromising any of your actual devices. It is also frequently invisible: a router behaving maliciously looks, from inside the house, like a router.
The reason it is targeted so heavily is population. There are enormous numbers of home routers running years-old firmware with publicly documented vulnerabilities, and scanning for them is cheap.
What to actually do
Check your firmware version and update it. Log into the admin interface — the address is usually on a label on the device. Find the firmware or system section, check for updates, install. If you have never done this, expect the available version to be substantially newer than what is running.
Enable automatic updates if offered. There is a reasonable argument against automatic updates on infrastructure, and it is outweighed here: the realistic alternative is not careful manual patching, it is nothing for five years.
Check the support window. Vendors increasingly publish an end-of-support date. A router past it will never receive another security fix regardless of what is found in it, and that is a reason to replace hardware that otherwise works fine.
Disable remote administration. An admin interface reachable from the internet is among the most commonly exploited settings. You almost certainly do not need to configure your router from outside your house, and if you do, a VPN into your network is the safer route.
Change the default admin password. Still, in 2026, a live problem. Default credentials for every consumer model are published and trivially searchable.
Turn off UPnP unless something needs it. It lets devices open ports automatically without asking, which is convenient and exactly what you would not want a compromised device to be able to do. Some games and consoles want it; test whether yours actually does.
Check your DNS settings occasionally. Altered DNS is a common outcome of router compromise and is easy to spot if you know what yours should be.
ISP equipment
If your router came from your internet provider, the situation varies considerably.
Some providers push firmware automatically and manage the device properly, which is genuinely better than most consumers manage themselves. Others supply hardware and forget about it, and you may not even have administrative access to check.
Two questions worth asking: does the provider update this device automatically, and can you use your own router instead? Where you can, buying your own gives you control over updates and support lifespan — at the cost of taking on responsibility for both.
If you are stuck with provider equipment you cannot update, running your own router behind it is an option, though it introduces double-NAT complications worth understanding before you commit.
Common mistakes
- Never checking at all. The default state for most households.
- Leaving remote administration on. The most exploited single setting.
- Default admin credentials. Published for every model.
- Ignoring the support window. A working router with no security updates is a liability.
- Buying from a vendor with no support policy. If they will not commit, assume the worst.
- Updating during a critical moment. Firmware updates can fail; do it when a brief outage is fine.
- Assuming the ISP handles it. Some do, some do not, and it is worth finding out which.
FAQ
How often should I check?
Every few months if updates are manual, which is realistically more often than most people will. If automatic updates are available, enable them and check occasionally that they are running.
Can an update brick my router?
It is possible and uncommon. Do not interrupt power during an update, and do it at a time when losing the network briefly is acceptable. The risk is far smaller than running known-vulnerable firmware for years.
Should I use third-party firmware?
Open-source router firmware can extend the useful life of hardware past vendor support and give more control. It requires compatible hardware, some technical confidence, and a willingness to maintain it yourself. A reasonable option for the interested; not a general recommendation.
How do I know if my router has been compromised?
Hard to be certain from inside. Warning signs include DNS settings you did not set, unfamiliar devices in the client list, admin settings that changed on their own, and unexplained slowdowns. If you suspect it, a factory reset followed by an update and reconfiguration is the practical response.
Where to go next
For limiting what a compromised device can reach, read home network segmentation. For getting the most out of the router you have, Wi-Fi channel planning, and for hardware with current support, the best Wi-Fi 7 routers.