5 Steps the FBI Wants You to Take to Secure Your Router Right Now


If you haven’t thought about your home router since the day you set it up, the FBI would like a word. Federal agencies, including the FBI and NSA, disclosed on April 7 that a unit of Russia’s military intelligence directorate, the GRU group known as APT28 or Fancy Bear, has been systematically compromising home and small office routers since at least 2024, using the access to intercept credentials, authentication tokens and sensitive communications. The agency took the unusual step of remotely resetting thousands of affected US devices under a court order, but officials are warning that without action from individual router owners, the problem is far from solved.

The attack targeted small-office/home-office routers, also known as SOHO routers, and was carried out by a unit in the Russian military intelligence agency, the GRU. Government agencies are urging people to follow basic router hygiene steps, such as updating to the latest firmware and changing default login credentials. The UK’s National Cyber Security Centre includes a number of TP-Link routers specifically targeted by the hackers.

While that news sounds pretty alarming, it’s worth keeping in mind that the attack compromised enterprise routers specifically, so your home Wi-Fi router likely isn’t at risk. That said, some of the affected routers can be used as standard home routers, so it’s worth checking whether your model was exploited in the attack.

“There is a big trend of exploiting routers these days, and that goes both for the consumer and enterprise or corporate routers,” Daniel Dos Santos, vice president of research at the cybersecurity company Forescout, told CNET.

What type of attack is this?

A news release from the NSA notes that the attack indiscriminately targeted a wide pool of routers, with the goal of gathering information on “military, government, and critical infrastructure.”

This attack is linked to threat actors within the Russian GRU — which go by APT28, Fancy Bear, Forest Blizzard and other names — and has been ongoing since at least 2024, according to the FBI. 

It’s known as a Domain Name System hijacking operation, in which DNS requests are intercepted by changing the default network configurations on SOHO routers, allowing the actors to see a user’s traffic unencrypted. 

“For nation-state actors like Forest Blizzard, DNS hijacking enables persistent, passive visibility and reconnaissance at scale,” says a Microsoft Threat Intelligence report on the attack. 

Microsoft identified more than 200 organizations and 5,000 consumer devices impacted by the GRU’s attack. 

Which routers were affected?

The FBI’s announcement refers to one router specifically, the TP-Link TL-WR841N, a Wi-Fi 4 model that was originally released in 2007. The UK’s National Cyber Security Centre lists 23 TP-Link models that were targeted, but notes that it is likely not exhaustive.

Here is the list of affected devices:

  • TP-Link LTE Wireless N Router MR6400
  • TP-Link Wireless Dual Band Gigabit Router Archer C5
  • TP-Link Wireless Dual Band Gigabit Router Archer C7
  • TP-Link Wireless Dual Band Gigabit Router WDR3600
  • TP-Link Wireless Dual Band Gigabit Router WDR4300
  • TP-Link Wireless Dual Band Router WDR3500
  • TP-Link Wireless Lite N Router WR740N
  • TP-Link Wireless Lite N Router WR740N/WR741ND
  • TP-Link Wireless Lite N Router WR749N
  • TP-Link Wireless N 3G/4G Router MR3420
  • TP-Link Wireless N Access Point WA801ND
  • TP-Link Wireless N Access Point WA901ND
  • TP-Link Wireless N Gigabit Router WR1043ND
  • TP-Link Wireless N Gigabit Router WR1045ND
  • TP-Link Wireless N Router WR840N
  • TP-Link Wireless N Router WR841HP
  • TP-Link Wireless N Router WR841N
  • TP-Link Wireless N Router WR841N/WR841ND
  • TP-Link Wireless N Router WR842N
  • TP-Link Wireless N Router WR842ND
  • TP-Link Wireless N Router WR845N
  • TP-Link Wireless N Router WR941ND
  • TP-Link Wireless N Router WR945N

A TP-Link Systems spokesperson told CNET in a statement that the affected models all reached End of Service and Life status several years ago.

“While these products are outside our standard maintenance lifecycle, TP‑Link has developed security updates for select legacy models where technically feasible,” the spokesperson said. 

TP-Link is urging people with these outdated routers to upgrade to a newer device if possible. You can find a list of available security patches on its security advisory page addressing the recent attack. 

How to keep your router safe

The NSA referred organizations to a list of best practices for securing your home network. The most important thing you can do if you’re using one of the impacted devices is to upgrade your router as soon as possible. It likely hasn’t received firmware updates in years, which is like leaving the door to your network unlocked. 

“The longer you carry on doing that, the greater the risk,” said Rik Ferguson, vice president of security intelligence at Forescout. “The router sits in such a privileged position within any network. All of your communication, all of your traffic, has to pass through that device.”

In addition to using a newer device that’s still getting security updates, there are a few other steps you can take to lock down your network: 

  • Update your firmware regularly: Many networking devices allow you to enable automatic firmware updates in the settings. If this is an option, I’d highly recommend doing it. If it’s not, you can find updates for your router by logging into its web interface or using its app.
  • Reboot your router: The NSA’s guidance recommends rebooting your router, smartphone and computers at least once a week. “Regular reboots help to remove implants and ensure security,” the agency says. 
  • Change default usernames and passwords: One of the most common ways hackers gain access is by trying default, manufacturer-set login credentials. “There’s a whole underground economy that underlies all of that,” says Ferguson. “Basically, they just harvest credentials, either through attacks of their own, or by stockpiling them from other sources and buying them.” This username and password combination is different from your Wi-Fi login, which should also be changed every six months or so. The longer and more random your password, the better
  • Disable remote management: Most regular users don’t need to remotely manage their Wi-Fi router, and this is one of the primary ways threat actors can change your router’s settings without your knowledge. You can typically find this option in your router’s admin settings
  • Use a VPN: The FBI’s announcement on the attack specifically recommends that organizations with remote workers use a VPN when accessing sensitive data. These services encrypt your traffic as it passes through a remote server, keeping it safe from hackers.





Source link

Leave a Reply

Subscribe to Our Newsletter

Get our latest articles delivered straight to your inbox. No spam, we promise.

Recent Reviews


Being a founder is awesome. And it also really sucks.

It’s a huge amount of stress, disappointment and uncertainty, with little appreciation or guidance.

It’s perfectly normal to find yourself questioning what it all means.

I’ve been there myself… questioning whether the sleepless nights and stress was worth it. And now, I’m often the person founders turn to when they do the same.

In this essay, I wanted to talk about happiness, purpose, and how to get more of it when you’re constantly living in survival mode.

Three Types of Happiness

Martin Seligman, the father of positive psychology, describes three distinct paths to happiness: the pleasant life, the engaged life, and the meaningful life.

  • The pleasant life is about pleasure—closing a deal, hitting a milestone, getting some great customer feedback. As a founder, there’ll be phases where pleasure is hard to come by. Clearly, you can’t build a founder life on pleasure alone.
  • The engaged life is about flow—the state when you’re fully absorbed in solving a hard problem. Most founders have this in spades early on, but as their companies grow, their role can evolve away from flow. Being out of flow is often a signal you need to redesign your role.
  • The meaningful life is about purpose—the sense that what you’re doing matters. Unlike pleasure and engagement, meaning doesn’t require things to be going well. It sustains you through the hard times, not just in spite of them.

So when times are hard, meaning is what we can return to. Unlike pleasure and engagement, meaning is up to you.

And it’s work you can start right now.

How to Make Meaning

So how do you actually build meaning, even when you can barely see past next week? A meaningful life has three components:

  • A meaningful future
  • A meaningful past
  • A meaningful present

Creating meaning in each is an act of creativity. It’s an active process in which you assign meaning to things.

If you aren’t intentional about this, your brain will assign meaning for you. And if you’re not feeling great, your brain will come up with interpretations that match and then reinforce the negative feelings.

What I’m about to share with you is the process I run through when my clients start questioning themselves, and what they’re building.

1. A Meaningful Future

In Man’s Search for Meaning, Viktor Frankl documented the atrocities of the concentration camps. He writes:

“Any attempt to restore a man’s inner strength in the camp had first to succeed in showing him some future goal.”

A lot of modern therapy fixates on the past. But Frankl realised that getting clear on our future goal is even more powerful.

When it comes to founders, they often have goals… but unless you’re fully pumped, your goals need refinement. 

I commonly see three issues with a founder’s goals:

  • They have too many goals. We accumulate goals over time, but we rarely sit down and remove goals. For example, you had goals when you were 18 years old. Most of these have been parked, but some might still be guiding you now.
  • The goal isn’t big enough. For most founders, the more ambitious the goal, the more energy it unlocks. Just increasing the size of the goal can act as a powerful clarifying force for what matters.
  • The goal isn’t framed by its meaning. It’s the difference between ‘I want to make $100M’ versus ‘I want to help 10,000 customers avoid what happened to me’. One is financial, the other is personal.

Refining and reconnecting to your primary goal is critical for building a life of meaning.

Questions to work through:

  • What’s the biggest and most exciting goal you can dream up?
  • If that was your primary goal, what other goals stop being relevant?
  • What people or person could the bigger goal attract that would make it achieving it easier?

2. A Meaningful Past

Being a founder can sometimes feel like a full-contact sport. You can get hurt, through disappointment, bad luck, and even betrayal. That’s why painful events in the past need to be treated like a wound.

When we don’t process the past, unhelpful stories we tell ourselves to protect our ego can cause havoc in the present.

Treating the past means framing every single thing that happened in two ways:

  • A win: an accomplishment that we can celebrate.
  • A lesson: a failure that we learn from, that we can celebrate.

We leave everything else behind. If, for some reason, we can’t let something go, it means we haven’t learned something important from it. As my mentor used to tell me: failures will be repeated until learned.

This work can be done separately, but it’s even more powerful to do it in the context of a big goal. This way, the wins and lessons can be aligned to the vision that truly excites us.

Questions to work through:

  • What is the meaning of what you’ve been through?
  • How did those experiences serve you?
  • Where are they failing to serve you today?

3. A Meaningful Present

Here’s the thing: the future and the past don’t physically exist. They’re tools to help us act in the present.

Often, clarifying the meaning of a bigger future and a happier past makes changing the present obvious and necessary.

As founders, it’s easy to be driven entirely by the past: old goals, old activities, old habits. This stops us from growing. And a lack of growth is one of the fastest paths to feeling meaningless.

Most founders I work with don’t need to do more. They need the courage to do less.

Growth often requires us to:

  • Start doing something we haven’t done before
  • Stop doing something we’ve already mastered
  • Double down on getting even better at some things

The meaningful present is about making these changes — aligning how you spend your time with the future you’ve defined and the lessons you’ve drawn from the past.

Questions to work through:

  • What is the biggest bottleneck to making the big goal viable?
  • What do you need to stop doing—even if there’s a cost involved?
  • What do you need to delegate?

Happiness Isn’t Always Happy

A meaningful life isn’t always smiles and rainbows. It comes with difficulty, sacrifice, and discomfort. But it’s the thing that keeps you going when pleasure and engagement can’t.

If you’re a founder questioning what it all means, the answer isn’t to push harder or to quit. It’s to invest time in making meaning.

Start with the future. Let it reshape the past. And then rebuild the present around what actually matters.

Related Reading: 

 

Originally published on March 11th, 2026

 

How do top founders actually scale?

I’ve coached CEOs for 10,000+ hours—here’s what works.
Join 17,000+ founders learning how to scale with clarity.

Unsubscribe any time.





Source link