Any IoT Device Can Be Hacked, Even Grills
ID: 100555e3-9072-50af-aa92-71dffd279d7e
STIX ID: report--100555e3-9072-50af-aa92-71dffd279d7e
Feed Name: Dark Reading
Date Published: 2024-07-03
Date Updated: 2026-04-21
Author: Fahmida Y. Rashid, Managing Editor, Features, Dark Reading
Researchers at Bishop Fox discovered multiple vulnerabilities in Traeger grills using the D2 Wi‑Fi controller that could allow remote actors to query device details and issue commands (for example, shutting down a grill or changing the temperature up to 500°F) due to insufficient authorization in the registration API. Exploitation requires the grill's unique 48‑bit identifier (obtainable during pairing or by scanning a QR code), which limits attacker scope, and Traeger has mitigated the issue via automatic firmware updates.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
