Telepresence Robots? Hackable.
ID: befb8970-874c-5682-98c4-065a5825e683
STIX ID: report--befb8970-874c-5682-98c4-065a5825e683
Feed Name: Security Ledger
Threat Score
Rapid7 disclosed three vulnerabilities in Double Robotics telepresence robots that could expose device identifiers, GPS coordinates and installation keys, and enable remote takeover of robot drive units. The flaws stem from insecure session data storage (enumerable via URL), static session tokens that can be reused, and an insecure Bluetooth pairing process; the vendor was notified and released a patch.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
