https://securityaffairs.com/198085/hacking/hack-one-robot-reach-the-next-unitree-g1-security-flaws.html
Unitree G1 flaws enable remote root access and robot-to-robot spread A security researcher chained two Unitree G1 vulnerabilities , CVE-2026-76639 and CVE-2026-76640, to gain unauthenticated root access within Bluetooth range. The chain abused an unpaired BLE path, a cloud decryption workflow lacking ownership checks, and a firmware-level buffer overflow.