ASUS warns of critical remote authentication bypass on 7 routers

https://lemmy.ml/post/16945296

ASUS warns of critical remote authentication bypass on 7 routers - Lemmy

Never turn on remote admin. You don’t need to admin your router from outside of your house.
And if you absolutely do. Set up a VPN.
I heard that a while ago many VPN services were bought by the very people you use a VPN to protect against. How do you know which ones are safe?

I believe they mean setting up a VPN on your network, rather than buying a service from a VPN provider.

Something like Wireguard lets you configure individual devices to access your network remotely.

WireGuard: fast, modern, secure VPN tunnel

WireGuard: fast, modern, secure VPN tunnel

Yup, I did that last week and it’s pretty easy. Basically:

  • Set up a VPS and configure wireguard
  • Set up your computer to connect to it (or your router if you literally only want remote admin); you’ll probably want to configure persistent connections
  • Set up your phone to connect to it
  • Test it at work sometime to make sure it all works
  • I do it in two hops: connect to VPS then to internal computer. There are other configurations (e.g. talk to peer computers directly), but this works well for me.