logo

Researchers Hack Smart Grill Remotely Using Just a Mobile Device

ID: 4322ba4e-f632-5b2d-bb56-25a5959962fc

STIX ID: report--4322ba4e-f632-5b2d-bb56-25a5959962fc

Feed Name: Cyber Press

Threat Score
50/100

Date Published: 2024-07-09

Date Updated: 2026-04-13

Author: Kaaviya

...
...

Researchers discovered critical insufficient-authorization and information-disclosure vulnerabilities in the Traeger Grill D2 Wi‑Fi Controller that allowed attackers who obtain a grill's 48‑bit identifier (via captured pairing traffic or QR scanning) to register the device to an attacker-controlled AWS IoT instance and remotely issue commands (PoC showed temperature changes and shutdown); Traeger released a firmware update that auto-installs on internet-connected devices and disabled the vulnerable GraphQL operation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.