Slashdot Mirror


Keurig 2.0 Genuine K-Cup Spoofing Vulnerability

An anonymous reader writes A security researcher has released a humorous vulnerability description for the Keurig 2.0 coffee maker, which includes DRM designed to only brew Keurig brand coffe pods (K-Cups): "Keurig 2.0 Coffee Maker contains a vulnerability in which the authenticity of coffee pods, known as K-Cups, uses weak verification methods, which are subject to a spoofing attack through re-use of a previously verified K-Cup." The vulnerability description even includes mitigating controls, such as keeping the Keurig in a locked cabinet when not in use. Also at Hackaday.

2 of 270 comments (clear)

  1. But does it report artificially low ink levels? by pla · · Score: 5, Insightful

    Why in the hell would anybody buy a coffee maker that uses DRM to prevent using "non-genuine" coffee?

  2. Re:Someone has by Zontar+The+Mindless · · Score: 5, Insightful

    I use a French press, beans, and a grinder. Zero waste other than the grounds (and if I had a yard, I could compost them). The grinder's a hand-cranked model, so the only power used is to heat the water.

    I've been making coffee this way for years, but never thought about the fact that it's also very conservative of resources until now.

    And I despise the capsule-style makers on general principles; as for Keurig--if I won't accept DRM for my music and video, I sure am as fuck not going to accept it for my coffee.

    --
    Il n'y a pas de Planet B.