You are in a hotel lobby in a city you do not know, sitting in one of those low chairs by the window, taking a call because your room has bad reception and the meeting started four minutes ago. You are saying a client’s company name out loud. You are saying a dollar figure out loud. Halfway through, you notice the man on the couch across from you has stopped scrolling on his phone and has not moved in about ninety seconds.

He is probably just tired. Most people are just tired. But that moment is worth sitting with, because it points at something most travel security advice gets backwards. Everybody worries about hotel Wi-Fi and almost nobody worries about the person eight feet away with working ears. The realistic ways business information escapes on a trip are mostly ordinary and mostly fixable, and none of them require you to be scared of the internet.

Most Of The Leak Is Analog

Airports, hotel lobbies, breakfast rooms, coworking spaces, and airplane cabins all have one thing in common. They put strangers within arm’s reach of you for a long time with nothing to do.

Nobody has to hack anything to learn that your company is buying a competitor, that a particular employee is being let go, or that a client is behind on payments. They just have to be sitting nearby while you say it. And a laptop screen at cruising altitude is readable from the aisle, from the seat behind you, and from the seat across the aisle, which is why flight attendants see more confidential documents than most compliance officers.

  • Move the sensitive call. Your room, a stairwell, a rental car in the parking garage, outside on the sidewalk. Anywhere the audience is not a fixed group of people who cannot leave.
  • Drop the proper nouns. If you truly have to take it in public, use first names only and skip the company name. Half of what makes overheard information useful is knowing who it is about.
  • Stop using speakerphone in shared space. It doubles the audience instantly and it is the single most common version of this mistake. Wired earbuds with a microphone solve it and never need charging.
  • Do not do the hard document on the plane. Payroll, contracts, medical records, anything with a list of names. Read the trade magazine instead and do the work in the room.

Public Wi-Fi Is Not The Bogeyman It Used To Be

This one surprises people, so it is worth quoting a source with no product to sell. The Federal Trade Commission, the FTC, tells consumers that while early public hotspots often were not secure, connecting through a public Wi-Fi network is usually safe today, because most websites now use encryption.

The reason is HTTPS, which stands for HyperText Transfer Protocol Secure and is the padlock you see in your browser’s address bar. It scrambles the conversation between your browser and the website, so someone else on the hotel network sees that you connected to a bank, but not your username, your password, or your balance. The threat that dominated coffee shop warnings a decade ago has largely been engineered away.

What has not gone away is where you land. The FTC is careful about this. Encryption protects the trip, not the destination, and scammers build fake websites with perfectly valid padlocks. So the real hotel Wi-Fi risk is not eavesdropping. It is being nudged toward a convincing fake login page, and it is connecting to a network that somebody named to look official. A network called Airport Free WiFi is just a name a person typed. Ask the front desk or the gate agent what the real network is called, and treat any sign-in page that asks for an email password as a scam.

A quick word on virtual private networks, or VPNs, which route all your traffic through an encrypted tunnel to a server somewhere else. A VPN is genuinely useful for reaching systems back at your office and for keeping your browsing list away from whoever runs the network you are on. It is not a shield against phishing, bad passwords, or malware, and consumer VPN advertising oversells it badly. Remember that a VPN mostly relocates your trust. The cloud is just someone else’s computer, and so is the VPN provider’s server. Use the one your company runs, and do not treat it as the whole plan.

The Screen, The Notifications, And The Share

  • Buy the privacy filter. It is a thin plastic sheet that clips over the laptop screen and narrows the viewing angle so anyone off to the side sees black. It costs less than a checked bag and it is the highest value item in the entire travel kit for anyone who works on planes.
  • Turn off notification previews. By default, phones and laptops show the beginning of every message right on the lock screen. That is a live feed of your business readable by anyone glancing at the table. Switch previews to show only when unlocked.
  • Turn on Do Not Disturb before you share your screen. Every focus or do not disturb mode blocks pop-ups during a presentation. A client watching your screen does not need to see a message about another client, or from your bank, or from your spouse.
  • Share the window, not the desktop. Every meeting tool lets you share one application instead of the whole screen. Do that, and close the browser tabs and file windows that show other customers’ names before you join.
  • Look at what is behind you on video. Whiteboards, shipping labels, and paperwork on the desk behind your head are all legible at high definition. Blur the background or move the chair.
  • Treat hotel business center machines as public. Do not sign in to anything on them and do not print client documents there. You have no idea what is installed and no way to check.

Ports, Power, And Bluetooth

You have probably seen the warnings about juice jacking, the idea that a tampered public USB charging port could push malware onto your phone while it charges. Here is the honest version, straight from the Federal Communications Commission, the FCC. The agency says the attack is technically possible, and in the same breath says it is not aware of any confirmed instances of it occurring. That is an unusually calm sentence from a federal agency, and it deserves repeating in a world of breathless headlines.

The precautions still cost you nothing, so take them. The FCC recommends packing your own AC and car chargers and cables, carrying an external battery, using a charging-only cable from a supplier you trust, and always choosing charge only if a device ever asks whether to share data or trust the computer.

The Cybersecurity and Infrastructure Security Agency, known as CISA, adds two more that are easy to forget. Turn Bluetooth off when you are not using it, since an open connection is an invitation you did not mean to send. And keep physical control of your devices rather than leaving them unattended in public areas. On that last point, the hotel room safe is a convenience feature and not a security feature. Those safes have override codes and the staff knows them.

The Kit That Actually Goes In The Bag

  • A privacy screen filter sized for your laptop. Leave it clipped on permanently and you will never forget it.
  • Your own wall charger, car charger, and cables. Enough that you never need to borrow one or use the one mysteriously left in the nightstand drawer.
  • A power bank. The most practical answer to public charging ports is not needing them.
  • Wired earbuds with a microphone. Kills the speakerphone habit, works when the battery is dead, and costs almost nothing.
  • Your second factor, already set up and tested. An authenticator app or a hardware security key on your keychain, confirmed working before you leave, so a login prompt in a foreign hotel is not a crisis.
  • A card with who to call. Your IT provider, your bank’s fraud line, and your insurance carrier. Written down, in your wallet, because the phone is exactly what you might have lost.

The Bottom Line

Working from the road is not dangerous. It is just less controlled than working from your own desk, and the leaks that happen out there tend to be embarrassingly simple. Somebody heard you. Somebody read your screen. Somebody saw a notification pop up during a demo. The fixes are proportionally simple, and once the habits are in place they take no effort at all.

If your team works from hotels, client sites, and gate areas around DFW Airport, we can help you put together a standard travel setup and a short written policy people will actually follow. Get in touch at https://harrisonward.com/contact/.


Sources

Comments are closed

This website uses cookies and asks your personal data to enhance your browsing experience. We are committed to protecting your privacy and ensuring your data is handled in compliance with the General Data Protection Regulation (GDPR).