Is public Wi‑Fi safe?
Public Wi‑Fi is convenient and often hostile: other clients share a broadcast domain where snooping and spoofing are easier than at home.
Why public networks feel different
On many café or hotel networks:
- Clients may see each other’s traffic more easily than on a well-isolated LAN
- Captive portals train people to click through warnings
- Fake hotspots can impersonate trusted SSIDs
HTTPS protects web content in transit to the site, but metadata, captive portals, and non-TLS apps still matter.
What a VPN helps with
A VPN encrypts the path from your device to the VPN server, so other Wi‑Fi users and the hotspot operator primarily see a tunnel, not every cleartext destination. Pair it with HTTPS and updated devices.
What still matters
- Phishing and malicious sites work the same on any network
- Endpoint malware ignores your tunnel
- A bad VPN simply relocates trust
Practical habits
- Prefer known networks or personal hotspot when stakes are high
- Avoid sensitive logins on unknown portals when possible
- Use a reputable VPN on travel networks—see how to choose a VPN
Public Wi‑Fi is not automatically doom; it is a place where local attackers are more plausible. Defense in depth beats a single myth.