Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Summary

Security researcher Olivier Laflamme has revealed two vulnerabilities in the Unitree G1 EDU humanoid robot that allow for root remote code execution (RCE). One of these flaws is accessible via Bluetooth Low Energy (BLE), enabling an attacker to gain root access to the robot's Locomotion PC.

IFF Assessment

FOE

These vulnerabilities allow for unauthorized remote code execution and system compromise on a robot, posing a direct threat to the security and integrity of the device.

Severity

8.8 High

Defender Context

This disclosure highlights the critical need for robust security measures in IoT and robotics, especially for devices that can be controlled remotely. Defenders should be aware of potential vulnerabilities in connected devices and the risks associated with unsecured communication protocols like BLE.

Read Full Story →