We use cookies to analyze site traffic and improve your experience. Privacy Policy

Research & Signals19 May 2026
Universal Robots patches critical command injection flaw in cobot OS
Universal Robots has patched CVE-2026-8153, a critical command injection vulnerability in its PolyScope 5 operating system that powers collaborative industrial robots. The flaw allows unauthenticated attackers with network access to execute arbitrary commands on the underlying Linux OS, potentially ...
RoboticsIndustrial AutomationVulnerabilityHigh Risk
Universal Robots patches critical command injection flaw in cobot OS
Research & Signals7 May 2026
Yarbo robotic lawnmowers contain hardcoded backdoor and bypass emergency stop
Security researcher Andreas Makris discovered critical vulnerabilities in Yarbo's modular robotic lawnmowers and snow blowers that allow remote takeover, emergency stop bypass, and extraction of owner data including Wi-Fi passwords and GPS coordinates. All 11,000+ deployed devices share a hardcoded ...
RoboticsVulnerabilityHigh RiskPoC
Research & Signals26 Feb 2026
Unitree robots vulnerable to firmware poisoning via hard-coded encryption keys
Security researchers have disclosed CVE-2026-1442, a critical vulnerability in Unitree's firmware update system that uses hard-coded encryption keys. The flaw allows anyone with physical or remote access to create and deploy malicious firmware packages that Unitree robots — including models deployed...
RoboticsDefenseVulnerabilityHigh Risk
Unitree robots vulnerable to firmware poisoning via hard-coded encryption keys
Research & Signals24 Feb 2026
Engineer accesses 7,000 robot vacuums via DJI backend flaw
Software engineer Sammy Azdoufal reverse-engineered his DJI Romo vacuum cleaner and discovered a backend vulnerability granting access to live camera feeds, microphone audio, and floor plans from nearly 7,000 devices globally. The disclosure highlights systemic security weaknesses in consumer IoT ro...
RoboticsSensorsComputer VisionVulnerability
Engineer accesses 7,000 robot vacuums via DJI backend flaw
Research & Signals29 Dec 2025
Researcher breaks Tegra X2 secure boot, exposing Tesla Autopilot hardware
Security researcher Elise Amber Katze disclosed multiple vulnerabilities in NVIDIA's Tegra X2 SoC, including an unpatchable BootROM exploit affecting Tesla Autopilot 2 and 2.5 hardware. The research, presented at 39C3, demonstrates complete secure boot chain bypass via USB recovery mode. Since the v...
Autonomous SystemsComputer VisionVulnerabilityHigh Risk
Researcher breaks Tegra X2 secure boot, exposing Tesla Autopilot hardware
Research & Signals25 Sep 2025
UniPwn exploit allows remote takeover of Unitree robot fleets
Security researchers disclosed UniPwn, a critical Bluetooth Low Energy vulnerability in Unitree's Go2, B2, G1, and H1 robots that enables root-level takeover via hardcoded encryption keys. The exploit is wormable — infected robots can autonomously scan for and compromise other Unitree units in range...
RoboticsHumanoidsVulnerabilityHigh Risk
UniPwn exploit allows remote takeover of Unitree robot fleets