DEV Community

Cover image for Critical Vulnerabilities in Gardyn Home Kit Allow Remote Device Takeover
BeyondMachines for BeyondMachines

Posted on • Originally published at beyondmachines.net

Critical Vulnerabilities in Gardyn Home Kit Allow Remote Device Takeover

Summary

Gardyn patched four critical vulnerabilities in its Home Kit ecosystem, including OS command injection and hard-coded credentials, which allowed unauthenticated attackers to hijack smart gardening devices and access cloud data.

Take Action:

If you are using Gardyn devices, time to update quickly. It should be fairly easy. Treat smart home and IoT devices as potential entry points into your network. Keep them isolated from access from the internet and on a separate network. Always change default passwords and ensure automatic updates.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)