I think I have a hacker on my network taking over devices at random and doing stuff while users are logged in and watching. I’m not as up-to-date on this security stuff as I used to be. Running Windows, Mac, and iOS. Any suggestions how I can detect and cut off take-overs like this?

    MAC whitelists on your router(s) and APs.
    Perhaps reset or rather reinstall (without restoring a full backup!) your OSs too, they might be RATed. Only take important data into the next installation.
