Vendor
high
advisory
Unitree G1 EDU Firmware BLE Authentication Bypass and RCE
2 TTPs 1 CVEUnitree G1 EDU firmware versions 1.5.2 and earlier contain a chained vulnerability in the BLE GATT server and WiFi provisioning stack, allowing unauthenticated proximate attackers to achieve root-level remote code execution.
G1 EDU firmware
iot
rce
vulnerability
bluetooth
2t
1c
high
advisory
Unauthenticated RCE in Unitree G1 EDU Firmware
3 TTPs 1 CVEUnitree G1 EDU firmware through 1.5.2 is susceptible to unauthenticated remote code execution allowing root-level command injection via a chained exploit targeting the WebRTC-to-DDS bridge, hardcoded credentials, and path traversal in the knowledge upload API.
G1 EDU
3t
1c
critical
advisory
Vulnerabilities in Unitree Embodied AI Systems
3 rules 7 TTPs 1 CVE 1 IOCCommercially available Unitree robots are susceptible to multiple vulnerabilities, including hardcoded keys and command injection, allowing attackers to gain root-level access, exfiltrate data, and potentially create physical botnets.
Go1 +8
embodied-ai
robot
iot
vulnerability
data-exfiltration
3r
7t
1c
1i