© 2025 Western New York Public Broadcasting Association

140 Lower Terrace
Buffalo, NY 14202

Toronto Address:
130 Queens Quay E.
Suite 903
Toronto, ON M5A 0P6


Mailing Address:
Horizons Plaza P.O. Box 1263
Buffalo, NY 14240-1263

Buffalo Toronto Public Media | Phone 716-845-7000
BTPM NPR Newsroom | Phone: 716-845-7040
Play Live Radio
Next Up:
0:00
0:00
0:00 0:00
Available On Air Stations
red and white text reading OPPOSE RESCISSION PACKAGE CONTACT SENATE NOW 202-224-3121 against a blue background

Your Pricey Peloton Has Another Problem For You To Sweat Over

Hackers can access a Peloton user's bike camera, microphone and screen, security company McAfee reports.
Shannon Stapleton
/
Reuters
Hackers can access a Peloton user's bike camera, microphone and screen, security company McAfee reports.

Peloton users have something new to worry about.

In a new report, security company McAfee says hackers with direct access to Peloton bikes can gain control of the camera and microphone and can monitor users. The attackers can also add apps disguised as Netflix and Spotify to encourage users to input login credentials for later malicious use.

McAfee originally notified Peloton of the security issue in March. Peloton's head of global information security, Adrian Stone, said: "We pushed a mandatory update in early June."

This is just the latest headache for Peloton users. Just last month, Peloton recalled some of its treadmills following reports of over 70 injuries and the death of a 6-year-old child. Around the same time, the company issued an update after another security company revealed that hackers can snoop on Peloton users and find out their age, gender, location and even workout stats.

Pelotons have been one of the biggest fitness success stories of the pandemic. As gyms shuttered their doors and people were stuck at home, Peloton sales soared despite their huge price tag — stationary Peloton bikes can set you back by about $1,900, and its treadmills can cost upwards of $4,000. Last year, Peloton's revenue doubled to $1.8 billion.

The report warned that an attacker could interfere with the equipment at any point in the supply chain from construction to delivery. Peloton said in a statement that the equipment isn't available in public spaces, like gyms, where they're vulnerable to the bug.

Savannah Sicurella is an intern on the NPR Business Desk.

Copyright 2021 NPR. To see more, visit https://www.npr.org.

Savannah Sicurella