logo

Telepresence Robots? Hackable.

ID: befb8970-874c-5682-98c4-065a5825e683

STIX ID: report--befb8970-874c-5682-98c4-065a5825e683

Feed Name: Security Ledger

Threat Score
60/100

Date Published: 2017-03-13

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

Rapid7 disclosed three vulnerabilities in Double Robotics telepresence robots that could expose device identifiers, GPS coordinates and installation keys, and enable remote takeover of robot drive units. The flaws stem from insecure session data storage (enumerable via URL), static session tokens that can be reused, and an insecure Bluetooth pairing process; the vendor was notified and released a patch.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.