Your router is the only device in your home that every other device depends on, and it is almost always the one nobody has ever logged into. Most Indian homes are running whatever the ISP technician configured on installation day, with the default password still on it.
Seven settings genuinely matter. None takes more than a minute.
Get Into the Router First
Type 192.168.1.1 or 192.168.0.1 into a browser on a device connected to your Wi-Fi. The exact address, and the default login, are usually printed on a sticker on the router itself.
If neither address works, check the sticker or your ISP’s documentation. Some ISP-supplied routers use a different address or a branded app instead.
1. Change the Admin Password
The single most important item, and the most neglected.
The admin password is not your Wi-Fi password. It is the credential for the router’s settings, and on a very large number of Indian home routers it is still admin/admin or admin/password. Anyone who gets onto your network — a guest, a neighbour who guessed the Wi-Fi key — can then reconfigure your entire network.
Change it to something long and unique, and store it in your password manager.
2. Use WPA3, or WPA2 With AES
Under wireless security settings, select WPA3 if your router offers it. If not, WPA2-PSK with AES.
Never use WEP, never use WPA, and never use TKIP. These are broken, and TKIP additionally caps your speed.
If some older device refuses to connect to WPA3, most routers offer a WPA2/WPA3 mixed mode as a compromise rather than dropping everything back to WPA2.
3. Turn Off WPS
WPS is the button that lets a device join by pressing it, or by entering an eight-digit PIN. The PIN method has a known, long-standing weakness that allows the network key to be recovered.
Turn WPS off entirely. Typing a password once per device is not a hardship.
4. Turn Off Remote Management
Often labelled remote administration, remote access or WAN management. It allows the router’s settings page to be reached from the internet rather than only from inside your home.
Unless you specifically need it, disable it. It is a door onto your network that exists for the convenience of support staff and of anyone scanning for exposed routers.
While you are there, disable UPnP if you do not need it, and turn off any Telnet or SSH access you did not deliberately enable.
5. Update the Firmware
Router firmware fixes security vulnerabilities, and home routers are a standard target for botnets precisely because nobody updates them.
Look for a firmware or system update section, and check for an update. Enable automatic updates if the option exists. If your router is old enough that the manufacturer has stopped issuing updates, that is a reason to replace it — a router running unpatched firmware from several years ago is a genuine liability, not merely dated.
6. Set Up a Guest Network
Most modern routers support a separate guest SSID that provides internet access without access to your main network.
Put visitors on it, and put your smart devices on it too — smart bulbs, plugs, cameras and televisions are frequently the weakest-secured things in a home, and isolating them from the network holding your laptop and your backups is sensible.
Give it its own password and enable client isolation if offered.
7. Rename Your Network Sensibly
Change the SSID from the default, which usually announces the manufacturer and model and tells anyone nearby which known vulnerabilities to try.
Do not name it after your flat number, your family name or your address. “Sharma 402” tells a stranger in the corridor exactly whose network they are looking at.
Two Things Not Worth Doing
Hiding the SSID. A hidden network is still visible to anyone with basic tools, and it makes your own devices behave worse. It is inconvenience without security.
MAC address filtering. MAC addresses are trivially spoofed and are broadcast in the clear. It creates a maintenance chore every time a guest visits and stops nobody who is actually trying.
Both appear on nearly every “secure your router” list and neither belongs there. A strong WPA3 password does far more than either.
Check Who Is Connected
Your router’s admin page lists connected devices. Look through it occasionally and account for everything you see.
If there is something you cannot identify, change the Wi-Fi password — which disconnects everything and forces each device to reconnect — and watch what comes back.
If you also want the network to be faster rather than merely safer, that is a different set of changes, covered in our guide to increasing Wi-Fi speed at home. And if your speeds are poor regardless of settings, test the line properly using our guide to broadband speed testing before blaming the router.
We cover practical Indian home networking at Techleez.
Why Home Routers Get Attacked
It is worth understanding the motive, because it explains why an unremarkable household is a target at all.
Nobody is interested in your browsing. What they want is the device itself — a router with default credentials and unpatched firmware is recruited into a botnet, where it sits quietly forwarding traffic, participating in attacks on others, or relaying scam infrastructure. You notice nothing except, occasionally, a connection that feels slower than it should.
The second motive is DNS. An attacker who controls your router can silently redirect where your devices go, so that a correctly typed bank address resolves to a replica. Nothing on your laptop warns you, because the deception happens before your browser is involved.
Both attacks are automated and indiscriminate. They find routers by scanning, not by choosing, which is precisely why a default password is enough to be found.
Check Your DNS Settings
While you are in the admin panel, look at the DNS servers configured under the internet or WAN settings.
They should be your ISP’s, or a public resolver you deliberately set. If they are unfamiliar addresses you did not configure, that is a strong sign the router has been tampered with — reset it to factory defaults, update the firmware, and set everything up again from scratch with a new admin password.
Frequently Asked Questions
What is the most important router security setting?
Changing the admin password from the default. It controls every other setting on the device.
Is the admin password the same as the Wi-Fi password?
No. The Wi-Fi password lets devices join the network; the admin password lets someone change the router’s configuration.
Should I hide my Wi-Fi network name?
No. Hidden networks are still discoverable with basic tools and cause connection problems for your own devices.
Does MAC address filtering improve security?
Not meaningfully. MAC addresses are easily spoofed. It creates work without stopping a real attacker.
How do I access my router settings?
Enter 192.168.1.1 or 192.168.0.1 in a browser on a device connected to your Wi-Fi. The address and default login are usually on a sticker on the router.
How often should I update router firmware?
Check every few months, or enable automatic updates. A router no longer receiving updates should be replaced.
