Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth
Summary
Security researcher Olivier Laflamme has revealed two vulnerabilities in the Unitree G1 EDU humanoid robot that allow for root remote code execution (RCE). One of these flaws is accessible via Bluetooth Low Energy (BLE), enabling an attacker to gain root access to the robot's Locomotion PC.
IFF Assessment
These vulnerabilities allow for unauthorized remote code execution and system compromise on a robot, posing a direct threat to the security and integrity of the device.
Severity
Defender Context
This disclosure highlights the critical need for robust security measures in IoT and robotics, especially for devices that can be controlled remotely. Defenders should be aware of potential vulnerabilities in connected devices and the risks associated with unsecured communication protocols like BLE.