# Researchers disclose two root-code-execution paths in Unitree G1 EDU

_Wednesday, August 26, 2026 at 8:00 PM EDT · Security, Robotics · Latest · Tier 1 — Major_

![Researchers disclose two root-code-execution paths in Unitree G1 EDU — Primary](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiKqNVrCXSaUDXfrGPJkoRoXBPQW4qwhdYqm2SMVaunZNwBrQ4FbURK-gtVawzaje20fK_m9q2dKepfj-dxmkvfKL4se3ZQ1YAI3iogqCft1UjVadJa_uBoQxFuoBpWfx2Dh3S4-jQLa7c4E9OOyQfVAT5BVKVShPykiPWEuYcchIPHFC4e5GduyW4iBio/s1700-e365/Humanoid.jpg)

Security researcher Olivier Laflamme disclosed two root remote-code-execution chains affecting Unitree's G1 EDU humanoid robot, including one that begins through Bluetooth Low Energy and reaches the robot's Locomotion PC. The flaws are tracked as CVE-2026-76639 and CVE-2026-76640. Unitree patched a cloud account-to-robot ownership check in July, which breaks the demonstrated cloud-assisted route, but no exact fixed firmware release has been verified for either vulnerability.

## Sources

- [The Hacker News](https://thehackernews.com/2026/08/two-unitree-g1-edu-humanoid-robot-flaws.html)

---
Canonical: https://techandbusiness.org/newswire/Y05toVd8hB3UTVe_WSZMeO
Retrieved: 2026-08-28T15:47:39.964Z
Publisher: Tech & Business (techandbusiness.org)
