Exploit allows for takeover of fleets of Unitree robots
61–70 of 88 posts
Re: Exploit allows for takeover of fleets of Unitree robots
#62Earlier quoted context omitted.
Why not tie the kitchen knife to the drone?
(I’m an engineer, but making assumptions) I think physics kind of blocks that from working, a DJI drone doesn’t have the weight and inertia to do serious damage, and they are hella noisy. Can’t open doors. Don’t have servos to do a proper swing or stab. Maybe theoretically possible… but I’m more scared of robots personally. By the same logic, autonomous cars are an even better murder weapon than robots because they a…
Re: Exploit allows for takeover of fleets of Unitree robots
#63Re: Exploit allows for takeover of fleets of Unitree robots
#64> We published the cryptographic keys in July Everyone should take a look at the SERP screenshot https://x.com/d0tslash/status/1969412224763498769 > The vulnerability combines multiple security issues: hardcoded cryptographic keys, trivial authentication bypass, and unsanitized command injection. What makes this particularly concerning is that it's completely wormable - infected robots can automatically compromise ot…
It’s just silly enough to be real.
Re: Exploit allows for takeover of fleets of Unitree robots
#65> We published the cryptographic keys in July Everyone should take a look at the SERP screenshot https://x.com/d0tslash/status/1969412224763498769 > The vulnerability combines multiple security issues: hardcoded cryptographic keys, trivial authentication bypass, and unsanitized command injection. What makes this particularly concerning is that it's completely wormable - infected robots can automatically compromise ot…
Could this level of incompetence be more easily explained by malice? Maybe the robots were meant to be exploited at a future time. The PRC subsidizes the robots, every US family buys one, a plausibly deniable exploit results in the robots subduing their owners with Kung Fu. America is vanquished in a bloodless coup. A 1000 year global Chinese imperium ensues. Forks and spoons hardest hit. It’s just silly enough to be…
Chinese phones, drones, action cams, robot vacuums, home security cams, smart bands, etc. all used to be insecure and vulnerable as hell. Not anymore.
Re: Exploit allows for takeover of fleets of Unitree robots
#66> We published the cryptographic keys in July Everyone should take a look at the SERP screenshot https://x.com/d0tslash/status/1969412224763498769 > The vulnerability combines multiple security issues: hardcoded cryptographic keys, trivial authentication bypass, and unsanitized command injection. What makes this particularly concerning is that it's completely wormable - infected robots can automatically compromise ot…
Re: Exploit allows for takeover of fleets of Unitree robots
#67Umm, robots need to be certified and regulated to hard coded robotic laws or something. Before criminals give them guns, or strap explosives to them, or remote takeover and untracibly murder people in their homes then burn the house down.
Re: Exploit allows for takeover of fleets of Unitree robots
#68Umm, robots need to be certified and regulated to hard coded robotic laws or something. Before criminals give them guns, or strap explosives to them, or remote takeover and untracibly murder people in their homes then burn the house down.
The US military has been using robots to murder people for over a decade now, the horse hasn't just bolted, it's won the Kentucky derby before you shut the stable door.
Re: Exploit allows for takeover of fleets of Unitree robots
#69> We published the cryptographic keys in July Everyone should take a look at the SERP screenshot https://x.com/d0tslash/status/1969412224763498769 > The vulnerability combines multiple security issues: hardcoded cryptographic keys, trivial authentication bypass, and unsanitized command injection. What makes this particularly concerning is that it's completely wormable - infected robots can automatically compromise ot…
Re: Exploit allows for takeover of fleets of Unitree robots
#70> We published the cryptographic keys in July Everyone should take a look at the SERP screenshot https://x.com/d0tslash/status/1969412224763498769 > The vulnerability combines multiple security issues: hardcoded cryptographic keys, trivial authentication bypass, and unsanitized command injection. What makes this particularly concerning is that it's completely wormable - infected robots can automatically compromise ot…
Robots walking around doing the EMF equivalent of coughing without covering your mouth.