INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global phishing Multiple sectors HIGH 1h Global insider Cybersecurity Services CRITICAL 1h Global ransomware Multiple sectors (U.S. companies) CRITICAL 1h Global malware Financial Services, Cryptocurrency CRITICAL 2h Global malware Technology and Cloud Services HIGH 2h Global general Financial Services and E-commerce MEDIUM 2h Global data_breach Social Media and Communications CRITICAL 2h Global general Cybersecurity Operations HIGH 3h Global phishing Technology and Consumer Services HIGH 3h Global data_breach Multiple sectors HIGH 3h Global phishing Multiple sectors HIGH 1h Global insider Cybersecurity Services CRITICAL 1h Global ransomware Multiple sectors (U.S. companies) CRITICAL 1h Global malware Financial Services, Cryptocurrency CRITICAL 2h Global malware Technology and Cloud Services HIGH 2h Global general Financial Services and E-commerce MEDIUM 2h Global data_breach Social Media and Communications CRITICAL 2h Global general Cybersecurity Operations HIGH 3h Global phishing Technology and Consumer Services HIGH 3h Global data_breach Multiple sectors HIGH 3h Global phishing Multiple sectors HIGH 1h Global insider Cybersecurity Services CRITICAL 1h Global ransomware Multiple sectors (U.S. companies) CRITICAL 1h Global malware Financial Services, Cryptocurrency CRITICAL 2h Global malware Technology and Cloud Services HIGH 2h Global general Financial Services and E-commerce MEDIUM 2h Global data_breach Social Media and Communications CRITICAL 2h Global general Cybersecurity Operations HIGH 3h Global phishing Technology and Consumer Services HIGH 3h Global data_breach Multiple sectors HIGH 3h
Vulnerabilities

CVE-2026-27510

Critical
Unitree Go2 firmware versions 1.1.7 through 1.1.11, when used with the Unitree Go2 Android application (com.unitree.doggo2), are vulnerable to remote code execution due to missing integrity protection
CWE-345 — Weakness Type
Published: Feb 26, 2026  ·  Modified: Mar 5, 2026  ·  Source: NVD
CVSS v3
9.6
🔗 NVD Official
📄 Description (English)

Unitree Go2 firmware versions 1.1.7 through 1.1.11, when used with the Unitree Go2 Android application (com.unitree.doggo2), are vulnerable to remote code execution due to missing integrity protection and validation of user-created programmes. The Android application stores programs in a local SQLite database (unitree_go2.db, table dog_programme) and transmits the programme_text content, including the pyCode field, to the robot. The robot's actuator_manager.py executes the supplied Python as root without integrity verification or content validation. An attacker with local access to the Android device can tamper with the stored programme record to inject arbitrary Python that executes when the user triggers the program via a controller keybinding, and the malicious binding persists across reboots. Additionally, a malicious program shared through the application's community marketplace can result in arbitrary code execution on any robot that imports and runs it.

🤖 AI Executive Summary

Unitree Go2 robot firmware versions 1.1.7-1.1.11 contain a critical remote code execution vulnerability allowing attackers to inject arbitrary Python code executed as root through tampered programs stored in the Android application's SQLite database. An attacker with local device access can modify stored programs or distribute malicious code via the community marketplace, with persistence across reboots.

📄 Description (Arabic)

ثغرة في برامج Unitree Go2 الثابتة تسمح بتنفيذ أكواد Python عشوائية بصلاحيات جذر دون التحقق من السلامة أو صحة المحتوى. يمكن للمهاجمين الوصول محلياً إلى جهاز Android تعديل البرامج المخزنة في قاعدة البيانات أو نشر برامج ضارة عبر سوق المجتمع. البرامج الضارة تبقى نشطة حتى بعد إعادة تشغيل الروبوت.

🤖 ملخص تنفيذي (AI)

روبوتات Unitree Go2 بإصدارات البرامج الثابتة 1.1.7-1.1.11 تحتوي على ثغرة تنفيذ أكواد بعيدة حرجة تسمح للمهاجمين بحقن أكواد Python عشوائية يتم تنفيذها كمسؤول جذر من خلال برامج معدلة مخزنة في قاعدة بيانات SQLite لتطبيق Android. يمكن لمهاجم لديه وصول محلي إلى الجهاز تعديل البرامج المخزنة أو توزيع أكواد ضارة عبر سوق المجتمع مع استمرار التأثير عبر إعادة التشغيل.

🤖 AI Intelligence Analysis Analyzed: Apr 12, 2026 12:32
🇸🇦 Saudi Arabia Impact Assessment
Saudi Relevance: high
🏢 Affected Saudi Sectors
government energy healthcare
🎯 MITRE ATT&CK Techniques
⚖️ Saudi Risk Score (AI)
10.0
/ 10.0
🔧 Remediation Steps (English)
Immediately update Unitree Go2 firmware to version 1.1.12 or later. Implement code signing and integrity verification for all programs before execution. Restrict local access to Android devices running the Unitree Go2 application. Disable or moderate the community marketplace until validation mechanisms are implemented. Monitor robot activity logs for suspicious program execution patterns.
🔧 خطوات المعالجة (العربية)
قم بتحديث برنامج Unitree Go2 الثابت فوراً إلى الإصدار 1.1.12 أو أحدث. تطبيق التوقيع الرقمي والتحقق من سلامة جميع البرامج قبل التنفيذ. تقييد الوصول المحلي إلى أجهزة Android التي تقوم بتشغيل تطبيق Unitree Go2. تعطيل أو تنظيم سوق المجتمع حتى يتم تطبيق آليات التحقق. مراقبة سجلات نشاط الروبوت للكشف عن أنماط تنفيذ برامج مريبة.
📋 Regulatory Compliance Mapping
🟢 NCA ECC 2024
A.9.2.1 A.9.4.3 A.14.2.1
🔵 SAMA CSF
ID.SC-4 PR.DS-6 PR.IP-1
🟡 ISO 27001:2022
A.14.2.1 A.14.2.5 A.12.2.1
📊 CVSS Score
9.6
/ 10.0 — Critical
📊 CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Attack VectorN — None / Network
Attack ComplexityL — Low / Local
Privileges RequiredN — None / Network
User InteractionR — Required
ScopeC — Changed
ConfidentialityH — High
IntegrityH — High
AvailabilityH — High
📋 Quick Facts
Severity Critical
CVSS Score9.6
CWECWE-345
Exploit No
Patch ✓ Yes
Published 2026-02-26
Source Feed nvd
Views 2
🇸🇦 Saudi Risk Score
10.0
/ 10.0 — Saudi Risk
Priority: CRITICAL
🏷️ Tags
CWE-345
Share this CVE
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.