Researcher reveals wormable RCE exploit in Unitree G1 humanoid robot

evilsocket · x · 2026-08-22

Security researcher @olivierboschko announced a blog post detailing a 3-month research effort into the Unitree G1 humanoid robot. The findings reveal a critical, wormable Remote Code Execution (RCE) vulnerability: if one G1 is compromised, the exploit can propagate and pop all other G1 units in proximity.

Related event: Unitree Robots Hit by Wormable Remote Code Execution Flaws(4 posts)→

Original post →

More from Embodied

Embodied channel →