Aug 28 2026
Researcher discloses UniBLEed, a wormable unauthenticated root exploit on Unitree's G1 humanoid over Bluetooth
SAFETYPOLICY
Original reporting
No source was cited for this one in the issue that logged it. The link above searches for it instead of guessing at a URL.
Two chained CVEs give root access from within Bluetooth range and spread from one G1 to the next, exposing the weak firmware security of being deployed into factories and labs.
Named in this event
Unitree
Open calls that touch this
- Unitree trades below its IPO price within 90 days of listing · 60%, resolves November 30th 2026
- Two more Chinese humanoid makers file or list by year-end · 75%, resolves December 31st 2026
- Unitree closes its first day above the offer price · 85%, resolves August 19th 2026
Issues that mention Unitree
- Daily brief, August 10th 2026
- Daily brief, August 11th 2026
- Daily brief, August 12th 2026
- Daily brief, August 14th 2026
- Daily brief, August 15th 2026
- Daily brief, August 16th 2026
Around the same time