Your Landlord’s WiFi Router Knows More About You Than You Think

If you work from home using a landlord-provided Wi-Fi network, you’ve probably assumed it’s private enough — password-protected, behind a locked door, nobody else is watching. But the device sitting in the hallway closet knows a lot more than most people realize. It logs every website you visit, every device you connect, and — as researchers demonstrated in 2026 — it can even track your physical movement through walls with 99.5% accuracy using signals it already broadcasts. That’s not a future problem. That’s the hardware in your home right now.

Privacy & Security
Home Office Setup
Data Protection

Heads up — this post may include links to things I use or like, and I might earn a little something if you shop through them. Doesn’t cost you anything extra, and I only mention stuff I’d actually recommend.

What Your Landlord’s Router Sees (and Logs)

Every internet request you make — for work, for streaming, for banking — passes through that router. Even with HTTPS encryption, the router still sees the domain names you visit, the timestamps, and how long you stay. A 2026 analysis of router logging confirms that private browsing mode does nothing at the network level. Your browser might forget your history, but the router keeps a record.

Depending on the router model and configuration, it may also log connection and disconnection events for every device — your work laptop, your phone, your smart speaker, even your printer. Over weeks and months, that data creates a detailed pattern of when you’re home, when you’re awake, and which devices you use for what. That’s a problem if you’re a remote worker handling sensitive client files or confidential company data.

🛡️What this means for remote workers

If your landlord or property manager has access to the router admin interface — and many do, especially in shared buildings — they could see the domains you visit for work, your login times, and even which device you use for client calls. That’s not just a privacy concern; it’s a potential data breach risk for your employer.

And it’s not just landlords. Your internet service provider sees the same data, and in the US, ISPs can sell your browsing history without explicit consent since the 2017 repeal of FCC broadband privacy rules. ISPs typically store this data for six months to two years, according to Incogni. They can also enhance it with demographic data from brokers — ethnicity, income, political affiliation — and then sell it to advertisers.

The New Frontier: Tracking You Through Walls

What most people don’t know is that the same Wi-Fi router can also sense your physical presence. Researchers at the Karlsruhe Institute of Technology demonstrated in 2025 that standard Wi-Fi signals can identify individuals through walls with up to 99.5% accuracy, using only beamforming feedback data that routers already exchange with connected devices.

99.5%
Accuracy identifying people through walls using standard Wi-Fi beamforming data — no special hardware required. Source: KIT research, 2025.

Here’s how it works: modern routers (Wi-Fi 5 and later) use beamforming to focus signals toward specific devices. The connected devices send back beamforming feedback information — unencrypted data that describes signal quality. A person walking through the room changes those signal patterns. With a machine learning model trained on that data, researchers could identify which person was where, even through interior walls.

What makes this especially unsettling is that the hardware needed to perform this surveillance already exists in millions of routers. A tool like the open-source RuView project — which has roughly 78,000 GitHub stars — can run on a regular laptop and stream real-time location data using a $9 microcontroller. No cloud account, no special permissions, no way for you to know it’s happening.

⚠️ This isn’t science fiction

The IEEE 802.11bf standard, which makes location tracking a built-in feature of Wi-Fi, is already in development. Products like Google Nest and Arris Surfboard models will have movement tracking enabled by default, with no opt-out available. No law currently requires manufacturers or ISPs to disclose this capability in privacy policies.

Who’s Collecting Your Data

If you’re using an ISP-provided router — common in apartments and rentals — the data pipeline is even broader. Comcast Xfinity routers, for example, include Wi-Fi motion sensing that detects movement via signal disruption, as reported by Cybernews. That means your ISP could theoretically know whether anyone is home, and at what times, without ever installing a camera.

Then there’s the router manufacturer itself. TP-Link controls roughly 60% of the US home router market, and the US Commerce Department proposed banning its products in December 2024 over national security concerns. Microsoft discovered that thousands of compromised TP-Link routers had been used by Chinese state hackers since 2021. Even if you don’t own a TP-Link router, the point stands: router manufacturers have access to telemetry data, and some have been shown to share it with third parties.

Amazon’s Eero, a popular mesh system, collects device models, network performance logs, and usage patterns. Amazon says it won’t sell the data, but privacy advocates have noted the pattern — as one EPIC staff attorney put it, “wait a few years, like Facebook did with WhatsApp and Instagram.”

Third-party data harvesters like Plume partner with ISPs to collect even deeper analytics. Proton’s analysis notes that Plume promises ISPs marketing insights from detailed behavioral data, including when you’re present in your home.

What Actually Protects You (and What Doesn’t)

Let’s be direct about what works and what doesn’t, so you don’t waste time on half-measures.

🔧 Steps to take today
  • Use a VPN on all devices — encrypts traffic so your router and ISP see only encrypted data to the VPN server. Choose a reputable no‑log provider and enable it on every device you use for work.
  • Enable DNS over HTTPS (DoH) — encrypts the domain queries that usually travel in plain text. Set it in your browser (Firefox, Chrome, Edge) or at the router level using Cloudflare 1.1.1.1 or Quad9.
  • Use WPA3 encryption — if your devices support it, this is the strongest Wi‑Fi security standard. At minimum, use WPA2. Never use WEP or WPA1.
  • Change the default admin password — this is the single most common entry point for attackers. Use a strong, unique password.
  • Disable WPS and UPnP — both are convenience features that create security holes. Turn them off in the router settings.
  • Set up a guest network — keep your work laptop and phone on the main network, and put smart home devices (thermostats, speakers, cameras) on a separate guest network. This isolates them from your primary traffic.

If you’re renting and can’t replace the router, at least do the following: enable a VPN on your work devices, turn on DoH in your browser, and ask your landlord whether they have remote access to the router admin panel. If they do, ask them to disable remote management. If they won’t, consider using a personal mobile hotspot for work traffic.

For those who can buy their own router, look for models that support open-source firmware like OpenWrt or DD‑WRT. These give you granular control over telemetry and data logging. The Synology RT6600ax is one example that explicitly states no personal data collection from traffic and uses a local web interface rather than cloud storage.

The Honest Limit

Here’s the part that’s hard to hear: none of the above steps stop passive Wi‑Fi sensing. A neighbor, a passerby, or anyone with that $9 microcontroller and open-source software can still detect your presence through walls using the Wi‑Fi signals already bouncing around your home. WPA3 encryption doesn’t prevent that because the sensing doesn’t require access to your network — it just reads the ambient radio waves.

The IEEE 802.11bf standard will make this capability a default feature in new routers. Google Nest and Arris Surfboard models will have movement tracking built in, with no user opt-out. The technology is moving from research labs into commercial products, and there are currently no federal regulations in the US governing Wi‑Fi sensing deployment in residential settings.

That doesn’t mean you should give up on protecting your browsing data. It means you need to separate two problems: internet traffic privacy (which VPN and DoH genuinely fix) and physical location privacy (which currently has no consumer-friendly solution). For now, the best you can do is:

  • Use a VPN and DoH together for all work traffic.
  • Keep your router firmware updated and use the strongest available security settings.
  • If you’re on a landlord’s network, consider a personal hotspot or a cellular backup for sensitive work.
  • Stay informed about new standards and products — this area is changing fast.

If you’re a remote worker, your home network is your office network. Treating it with the same seriousness you’d give a company VPN is no longer optional. Our guide on securing your home network walks through the specifics of router settings and device segmentation.

💭How much are you willing to trade convenience for privacy on the network you use for work — especially when the surveillance is invisible and you can’t opt out?
🔑 So what changes?

You now know that your landlord’s router is not a neutral device — it logs your browsing, your device activity, and potentially your physical location. The practical takeaway is to assume that any network you don’t fully control is public. Use a VPN, enable DNS over HTTPS, and segment your devices. For the location-tracking piece, stay aware that no consumer solution exists yet, and push for clearer regulation. Your remote work setup deserves the same privacy protections as an office network.

I’ve been using a landlord-provided router for years, and I won’t lie — learning about Wi‑Fi sensing made me uncomfortable. The honest answer is that I can’t stop someone from knowing I’m home. But I can stop them from knowing which client site I’m on or when I’m in a video call. That’s the line I’m drawing for now, and it’s worth drawing yours too.— Marianne
Facebook
Twitter
LinkedIn
Email

Marianne Foster

Hi, I’m Marianne! A mom who knows the struggles of working from home—feeling isolated, overwhelmed, and unsure if I made the right choice.At first, the balance felt impossible. Deadlines piled up, guilt set in, and burnout took over. But I refused to stay stuck. I explored strategies, made mistakes, and found real ways to make remote work sustainable—without sacrificing my family or sanity.Now, I share what I’ve learned here at WorkFromHomeJournal.com so you don’t have to go through it alone. Let’s make working from home work for you. 💛
Table of Contents

Protecting Data While Working From Home

Working from home is awesome, right? Fuzzy slippers, midday snacks, and maybe even sneaking in a load of laundry during a meeting. But hold on! Before you get too comfy, let’s talk about something super important: keeping your company’s data safe when you work from home. Leaking sensitive information could mean big trouble for your employer, and even yourself. This guide breaks down how to protect data while you work remotely. Why is Data Protection Important When Working From Home? Think of your company’s data as treasure – valuable secrets, customer information, financial records, and all sorts of confidential

Read More »

Remote Work Security: Privacy First Always

Remote work has transformed the workplace landscape, allowing individuals to work from home with unprecedented flexibility. However, while this shift offers convenience, it also raises significant concerns regarding data privacy and security. Protecting sensitive information has never been more critical, and organizations and employees must take proactive steps to ensure their safety online. Understanding Remote Work Security Risks When you work from home, multiple security threats arise that can lead to data breaches, unauthorized access, and the proliferation of sensitive information. Some common risks include: 1. Phishing Attacks: These are deceptive attempts to steal sensitive data by masquerading as

Read More »

Protect Data: Remote Work Privacy Basics

Let’s talk about something super important: keeping your data safe while you’re working remotely. Especially when you work from home, it’s easy to forget that keeping information secure becomes even more critical. This is all about simple steps you can take to protect yourself and your company. Understanding the Risks of Remote Work Data Privacy When you’re in the office, there are usually security measures built into the environment, like secure networks and IT support just around the corner. But when you work from home, you become the main line of defense. Think about it – you’re using your

Read More »

Data Privacy Guidelines for Your Home Office Assessment

Most data privacy checklists assume you’ve already got the basics covered. But the real question, the one that trips up even seasoned remote workers, is whether you’ve actually assessed your specific home office setup against the threats that matter. Human error causes 88% of data breaches, according to research from Stanford University — and that number doesn’t mean people are careless. It means the gap between knowing what to do and actually doing it is wider than most of us admit. A proper home office assessment closes that gap, not by overwhelming you with alerts, but by turning good

Read More »

Data Privacy: A Remote Work Must

Data privacy has become an essential concern for everyone, especially in this new era of remote work. As more employees work from home, the potential vulnerabilities associated with data exposure grow significantly. Companies are transitioning to digital platforms, and employees are using their personal devices more than ever, making it crucial to understand the implications for data privacy. The Importance of Data Privacy in Remote Work Data privacy is not just a compliance requirement; it’s a necessary component of trust between businesses and their clients. The increasing dependence on digital tools means that sensitive information is constantly in motion,

Read More »

Control Data Access For Remote Teams

Securing sensitive data when your team is scattered across different locations is a serious challenge. This article provides practical strategies and actionable tips to control data access effectively for remote teams, improving data privacy and minimizing security risks, especially within a work from home environment. A strong data access control strategy is crucial to stay compliant with data protection regulations and maintain your business’s reputation; let’s dive in. Understanding the Remote Data Security Landscape The shift to remote work, particularly with the growing popularity of work from home arrangements, has fundamentally changed how businesses handle data security. Previously, data

Read More »