Wi-Fi Warning: Staying Safe on Holiday

Business travel can expose individuals to serious cyber threats when connecting to hotel or airport Wi-Fi, so here we explain how to stay secure using practical precautions such as VPNs and mobile tethering.

Why Public Wi-Fi Is a Hidden Risk for Travellers

Public Wi-Fi is one of the most widely used digital conveniences among UK business travellers. Whether in airports, hotels, cafés or train stations, free internet access is often seen as a quick and easy way to stay productive while on the move. But security experts are warning that many of these networks are poorly protected or actively targeted by cyber criminals looking to intercept data or install malware.

A Norton survey found that 60 per cent of travellers were already connecting to public Wi-Fi at least once a week in 2023, with nearly half admitting they’d used unsecured networks to check work emails or log in to sensitive accounts. More recently, a 2024 analysis by cybersecurity firm Inflection Point confirmed that around 70 per cent of business travellers had encountered some form of cyber threat while away from their usual workplace.

For UK businesses in 2025, the operational risk is even greater. Remote access to corporate tools is now standard, while business travel has rebounded strongly across Europe and beyond. Insecure public networks can easily be exploited to steal credentials, compromise cloud accounts or gain backdoor access to business systems. The threat is no longer limited to high-risk environments, it’s embedded in everyday travel routines.

How Criminals Target Public Wi-Fi Users

The main security risk with public Wi-Fi is that it often lacks encryption. This means that the data sent between your device and the router can be intercepted by third parties using basic equipment. One of the most common tactics is known as a man-in-the-middle attack, where a hacker places themselves between you and the network to eavesdrop on your activity or harvest personal and company data.

Rogue Wi-Fi Hotspots

Another growing tactic is the use of so-called “evil twin” networks. These are rogue Wi-Fi hotspots set up to mimic a legitimate service, often with names like “Hotel_WiFi_Guest” or “Free_Airport_WiFi”. Once connected, users may be redirected to phishing pages or silently monitored. According to a recent report from US-based WatchGuard Technologies, it takes as little as £400 worth of off-the-shelf kit to create one of these fake hotspots.

Even genuine Wi-Fi networks can be a risk. For example, hotel systems are often shared across hundreds of users and rarely updated or segmented, making them soft targets. Airports are also ideal hunting grounds for criminals, thanks to the large volume of fast-moving, distracted users and international visitors unfamiliar with local security risks.

What Experts Recommend for Safer Connections

Security experts agree that the safest approach is to avoid public Wi-Fi altogether where possible. However, when access is essential, there are some practical steps that can significantly reduce the risk.

VPNs

The most important measure is to use a virtual private network (VPN). A VPN encrypts your internet traffic, so even if someone intercepts the connection, they won’t be able to read or tamper with your data. As Paul Bischoff, consumer privacy advocate at Comparitech, explains: “A VPN creates a secure tunnel that protects your traffic from snoopers on unsecured networks. For travellers, it’s an essential layer of defence.”

There are dozens of business-grade VPN providers on the market, with options like NordVPN, Surfshark and ExpressVPN all offering apps compatible with laptops and mobile devices. However, not all VPNs are equally secure. Free versions, in particular, may collect data or lack proper encryption protocols.

Tethering

Another option is mobile tethering, which involves connecting a laptop or tablet to the internet via your phone’s 4G or 5G data rather than using Wi-Fi. This method uses your mobile provider’s encrypted network and is generally far safer than connecting to unknown hotspots. Most smartphones have built-in hotspot functionality, though business travellers should check their data limits before relying on this approach abroad.

In situations where public Wi-Fi must be used, it’s also wise to:

– Avoid online banking, file sharing and sensitive logins.

– Stick to websites using HTTPS (look for the padlock symbol in your browser).

– Turn off auto-connect and file sharing features.

– Set the connection type to ‘Public’ in your device settings.

– Keep all apps, browsers and antivirus software up to date.

How Mobile Habits Can Create Unintended Exposure

A recent study by the UK’s National Cyber Security Centre (NCSC) highlighted how user behaviour plays a key role in exposure to cyber threats. In their analysis of business travel patterns, they found that users often relax security habits when on the move, especially during summer holidays or while rushing through airports.

For example, many travellers leave their phones or laptops unlocked, or stay logged in to work systems and cloud services. Others fail to check the legitimacy of a network before connecting, relying on familiar-sounding names. These small lapses, while understandable, can make it much easier for attackers to gain access.

The NCSC advises that staff travelling for work should be briefed on digital hygiene protocols and given the tools needed to work safely while mobile. This might include rolling out managed VPN solutions or providing mobile data allowances specifically for tethering.

The Cloud

One other important aspect to consider is that businesses are now increasingly reliant on cloud-based tools and remote access platforms, from Microsoft 365 and Slack to enterprise CRM systems. This has brought major flexibility gains, but it has also raised the stakes when it comes to endpoint security. For example, a compromised login from a hotel room abroad could open the door to serious breaches back home.

The UK’s Information Commissioner’s Office (ICO) warns that data breaches involving personal or client information (even if caused by insecure Wi-Fi use) can lead to investigations and fines under the UK GDPR regime. For regulated sectors such as legal, healthcare and finance, this risk is even more acute.

Reputational Damage Risk

There’s also reputational damage to consider. In one documented incident investigated by FireEye, a consultant’s credentials were stolen via a compromised hotel Wi-Fi network linked to the Russian espionage group APT28 (also known as Fancy Bear). The attackers exploited hotel routers to harvest guest login details, and those credentials were later used to access corporate systems remotely. Although no malware was installed on the consultant’s device, the breach led to serious trust issues for the consultancy firm involved, who were forced to issue apologies to clients and implement stricter travel security protocols.

Simple Precautions That Reduce the Risk for Everyone

Despite the risks, public Wi-Fi use isn’t going away anytime soon, but business travellers can take control with a combination of awareness and simple protective tools. In addition to using a VPN or mobile tethering, businesses should ensure that staff understand how to recognise suspicious networks and what to do if they think a device has been compromised.

MFA

The NCSC also recommends that all business devices use multi-factor authentication (MFA) and endpoint security tools to minimise exposure. Organisations should also maintain clear reporting lines in the event of a suspected breach so that action can be taken quickly.

Whether on a short-haul trip to Brussels or checking emails from a hotel bar in Singapore, a few small changes in behaviour can significantly reduce the likelihood of an attack. With cyber criminals becoming more sophisticated each year, secure connectivity is now essential travel kit.

What Does This Mean For Your Business?

Cyber security on the move is no longer a niche concern for IT teams. As this summer’s travel season gathers pace, the reality is that every employee logging on from a hotel, airport or conference centre is a potential entry point for a wider breach. Public Wi-Fi remains widely used but poorly understood, and attackers continue to exploit that gap with tactics that are cheap to deploy but costly to recover from.

For UK businesses, the stakes are clear. A single compromised login can lead to regulatory consequences, reputational damage and financial loss. This is especially true in sectors where client confidentiality, personal data or financial systems are involved. Relying on convenience over security, particularly during travel, risks undermining all the investment made in other parts of the company’s digital infrastructure. However, as this article has shown, the tools to mitigate that risk already exist. VPNs, mobile tethering, MFA, and well-informed staff are not just best practice, they are now baseline requirements for secure hybrid working.

What matters next is awareness and consistency. Companies must ensure that secure connection policies are more than a tick-box exercise, especially as international travel becomes routine again.

Tech News : Google Unveils AI-Powered Holiday Planning Features

Google is rolling out a suite of new features (many powered by generative AI) across its core platforms to help users plan their summer holidays with greater ease and personalisation.

Tools For Inspiration and Planning

It appears that the update spanning Search, Maps, Lens, and Gemini, is designed to keep Google front and centre as more travellers begin to explore AI tools like ChatGPT for trip inspiration and planning.

With updates that offer real-time itinerary suggestions, hotel price tracking, custom trip planners and even the ability to turn screenshots into mapped-out adventures, Google is doubling down on AI’s potential to redefine how we prepare for getaways.

Smarter Search With AI Overviews for Trip Planning

At the heart of the rollout is the expansion of AI Overviews in Google Search, which is now capable of generating detailed travel itineraries based on simple queries.

For example, a search like “create an itinerary for Costa Rica with a focus on nature” will generate a multi-day schedule, featuring activity suggestions, restaurant recommendations, and key places to visit. Users will also be able to see user-contributed photos and reviews, all displayed on an expandable map.

These AI Overviews, which are powered by a customised Gemini model, are currently only available to all U.S.-based users in English, on both mobile and desktop (with no need to sign up for Search Labs). Once an itinerary is generated, users can export it to Docs, Gmail, or save it as a custom list in Google Maps for easy access on the go.

Increased User Engagement

This feature builds on Google’s AI Search experiments in Search Labs, which the company says have already generated billions of AI Overviews. According to Google, these overviews have increased user engagement with Search and boosted traffic to a wider range of websites. As Google says on its blog: “People like that they can get both a quick overview of a topic and links to learn more,” and that “We’ve found that with AI Overviews, people use Search more, and are more satisfied with their results.”

Hotel Price Tracking Goes Global

Another standout update from Google is the launch of hotel price tracking, which appears to be a logical expansion of the popular Google Flights alerts.

For example, users browsing google.com/hotels can now toggle on a price tracking option for specific dates and destinations. Once activated, Google will send an email alert if hotel prices drop significantly, based on your chosen filters (such as star rating, amenities or beach proximity).

The feature is now live globally across mobile and desktop browsers, thereby offering a new way for those planning holidays and getaways to (hopefully) save money during the booking process.

Maps Gets Smarter with Screenshot Integration

Google Maps is also getting a clever new upgrade. A common bugbear by travellers using Google Maps up until now has been the difficulty in managing the dozens of screenshots we take while researching holidays, from must-visit restaurants to hotel options and quirky local attractions. However, it seems that this new update means Maps can turn that visual clutter into something that may be genuinely useful.

For example, using Gemini’s image recognition capabilities, Google Maps will identify landmarks, businesses and attractions in users’ screenshots (provided the user grants the app access to their photos). From there, users can review and save these locations to a travel list, which will appear as pins on the user’s map. This feature is rolling out this week on iOS in English in the U.S., with Android support “coming soon,” according to Google.

The Gemini Gems Personal Trip Planner Is Now Free for All

Gemini, Google’s AI assistant, is being positioned as a travel buddy in its own right. A new feature called Gems allows users to create personalised AI agents, or “Gems”, that can help with specific tasks, such as trip planning, itinerary curation, or packing lists.

For example, a user could create a Gem that specialises in budget-friendly European trips, or one that only recommends dog-friendly hotels. Users can set up these Gems via the “Gems manager” on desktop, and they’re now available free of charge.

Also, if users aren’t sure where to start, Gemini can help in drafting the setup using a “magic wand” tool that expands on a basic idea. As Google says about the feature on its blog: “Now you have a travel guide at your fingertips to help you pick a destination, find restaurants in a new city or even suggest what to pack”.

Lens As A Pocket Tour Guide

Also in the new mix is an update to Google Lens, the company’s AI-powered visual search tool. While it’s long been able to translate signs and menus, Lens now supports AI Overviews too.

For example, if users point their phone’s camera at a building, landmark or mysterious object and ask questions like “what is this?”, the tool will deliver AI-generated insights, along with links to relevant online resources.

This may be particularly useful for cultural tourism, e.g. spotting unusual architectural features in city streets or identifying historical plaques while wandering through old European towns.

Lens’ new AI Overviews are already available for English users and will soon expand to languages including Japanese, Korean, Portuguese, and Spanish, in most countries where AI Overviews are active.

Why Now? Google’s Bid to Stay Ahead

It seems it’s no coincidence that Google is launching these travel-focused AI features just ahead of the summer rush, and at a time when travellers are increasingly turning to generative AI platforms like ChatGPT for itinerary building, travel hacks and destination research.

By integrating Gemini deeply into Search, Maps and Lens, Google appears to be aiming to maintain its dominance as the go-to tool for everyday planning. There’s also likely to be a broader strategic play where, in a world where large language models can provide well-rounded answers to complex queries, Google needs to prove it can do more than just return links.

Google’s generative AI push, particularly through the custom Gemini model embedded in Search, may therefore be an attempt to leapfrog competitors by offering deeper context, personalisation and functionality, all while keeping users within Google’s ecosystem.

What It Means for Users and Google’s Competitors

From the user’s perspective, the appeal is clear, i.e. less time spent bouncing between tabs and apps, and more coherent, streamlined planning experiences. For travellers in particular, it removes much of the friction that can turn holiday prep into a chore.

However, the rollout is heavily U.S.-centric for now, with many features restricted to English queries and limited platforms. Google has promised broader global access “soon,” but it remains to be seen how quickly that happens, and how seamlessly these tools will translate to other markets and languages.

For competitors like OpenAI, Expedia and other travel-focused apps, Google’s integration of AI into Search and Maps could be seen as setting a new bar. In other words, the battle is no longer just about who can answer your questions, but who can help you do something with those answers, from booking flights to building shareable, actionable itineraries.

What Does This Mean For Your Business?

By weaving AI more tightly into the platforms people already us (i.e. Search, Maps, Lens and Gemini), Google is effectively trying to become not just the place you go to find information, but the place you go to do something with it. For travellers, the convenience is likely to be attractive but for Google, the strategic value runs deeper. This isn’t just about helping you book a hotel or plan a day out but is more about keeping you inside Google’s ecosystem from inspiration to itinerary, thereby strengthening its role as your go-to AI assistant.

That said, the rollout raises some questions around accessibility and reach. For example, at present, many of the most powerful new features are only available in the U.S. (and just in English), meaning UK users will need to wait a little longer to take full advantage. There’s also the wider concern of how this affects travel publishers, bloggers and third-party platforms that have long relied on Google Search traffic. While Google insists AI Overviews are increasing clicks to a broader range of sites, the company’s tighter grip on the journey from question to action inevitably puts pressure on other players in the space.

For UK businesses, particularly those in travel, hospitality and tourism, the implications are twofold. On the one hand, it opens up new opportunities to reach audiences earlier in their decision-making journey, especially if their content is well-optimised and engaging enough to surface within AI Overviews. However, on the other, it places more power in Google’s hands, with brands having to work harder to stand out in a results page that may be increasingly curated by AI rather than traditional search rankings.

It seems, therefore, that Google’s summer AI upgrades represent more than a seasonal refresh, i.e. they’re more of a sign of the company’s wider ambition to redefine search, streamline planning, and keep pace with the generative AI boom. For users, the trade-off is between ease and control. For businesses, it’s a question of visibility and adaptability. Either way, the travel planning landscape just got a lot more intelligent, and a lot more competitive.