Who the hell would put an IoT device in the same VLAN with other network equipment? "Professionals" who cause these massive security issues and effectively shoot themselves in the foot deserve every second of pain and hardship they run into.
blame is partly on the "professionals" but that will never change. There will always be such incompetence in low level competency IT positions especially for inhouse in a none tech business and where budget for that stuff is low. Lost count of how many times I had to troubleshoot such idiocy from so called network professionals when management asked me to step in and sort the issues but management STILL don't listen despite admitting proof of the incompetence they wont change.
More needs to be done from the side of IoT vendors and others in the supply chain end to start making a dent in this issue or these stories wont go away no matter who installs them there will always be major weakness in the chain. Many don't even attempt to secure never mind harden the devices properly and they have no financial or legal incentive to... yet. IoT things wont go away and we need to start having proper encryption implementation plus authentication implementation so not just anyone who gets access can make changes to config (some devices send auth info cleartext so goes hand in hand with former point). System for patching and a way to push this, network isolation considerations both advising proper setup like this case didn't have as well as controlling what data they leak to EVERYTHING on home so less likely to be a weak link to own another device from within. The latter point sure some thigns need to communicate and be aware of each other but there is ways of doing that properly; such as proper handshake needed between such devices and way to determine and config what info what can share with what and when. Or making the requests go through a controller/smart hub as the middleman that is far more hardened with regard to such things. Sadly although this stuff will ocme I do not see it happening soon.