Hacker Exploits Security Flaws in Yarbo Robot Lawnmowers, Demonstrates Physical and Privacy Risks

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

Security researcher Andreas Makris remotely hacked Yarbo robot lawnmowers, demonstrating their severe vulnerabilities. He controlled the robots from Germany, nearly running over a Verge editor in the US, and accessed sensitive data. The incident highlights risks of physical harm and privacy breaches due to poor AI security design.[AI generated]

Why's our monitor labelling this an incident or hazard?

The robot lawn mowers are AI systems as they autonomously navigate and perform complex tasks like mowing, using onboard computing and sensors. The event involves the use and malfunction (security vulnerabilities) of these AI systems, which have directly led to harms: physical danger to a person (the researcher lying in the mower's path), privacy violations (unauthorized access to cameras, GPS, Wi-Fi credentials), and potential broader harms (botnet formation, network intrusion). The article documents actual exploitation and demonstration of these harms, not just potential risks. Hence, it meets the criteria for an AI Incident rather than a hazard or complementary information.[AI generated]
AI principles
Privacy & data governanceRobustness & digital security

Industries
Robots, sensors, and IT hardwareConsumer products

Affected stakeholders
ConsumersGeneral public

Harm types
Physical (injury)Human or fundamental rights

Severity
AI incident

AI system task:
Recognition/object detectionGoal-driven organisation


Articles about this incident or hazard

Thumbnail Image

A hacker ran me over with a robot lawn mower

2026-05-07
The Verge
Why's our monitor labelling this an incident or hazard?
The robot lawn mowers are AI systems as they autonomously navigate and perform complex tasks like mowing, using onboard computing and sensors. The event involves the use and malfunction (security vulnerabilities) of these AI systems, which have directly led to harms: physical danger to a person (the researcher lying in the mower's path), privacy violations (unauthorized access to cameras, GPS, Wi-Fi credentials), and potential broader harms (botnet formation, network intrusion). The article documents actual exploitation and demonstration of these harms, not just potential risks. Hence, it meets the criteria for an AI Incident rather than a hazard or complementary information.
Thumbnail Image

Attack Of The Killer Lawnmowers: Security Flaw Let Hackers Control These Landscaping Robots - SlashGear

2026-05-07
SlashGear
Why's our monitor labelling this an incident or hazard?
The robotic lawnmower is an AI system with autonomous navigation and internet connectivity. The security flaw allows unauthorized control, which directly leads to potential harms including physical injury, privacy breaches, and illegal network activity. The hacker's ability to control the fleet and access sensitive data shows the AI system's malfunction has directly led to significant harm or risk thereof. This meets the criteria for an AI Incident rather than a hazard because the vulnerability is actively exploitable and the harms are concrete and immediate risks, not just plausible future harms.
Thumbnail Image

Hacker Takes Over Robot Lawnmower, Runs Over Innocent Man

2026-05-08
Futurism
Why's our monitor labelling this an incident or hazard?
The robot lawnmower qualifies as an AI system because it is an autonomous robot performing complex tasks such as navigation and operation of blades. The hacker's ability to take control and manipulate the robot demonstrates a malfunction or misuse of the AI system. The event directly reveals a risk of physical injury (harm to a person) and privacy breaches (harm to property and personal data). While no injury happened, the demonstrated exploit shows a credible and immediate risk of harm, making this an AI Incident rather than just a hazard. The company's initial denial and slow response further emphasize the seriousness of the issue.
Thumbnail Image

Hacker Takes Over Robot Lawnmower, Runs Over Innocent Man (Futurism article, 5/8, based on a 5/7 Verge srticle)

2026-05-09
Democratic Underground
Why's our monitor labelling this an incident or hazard?
The robot lawnmower qualifies as an AI system due to its autonomous navigation and multifunctional capabilities. The hacking event is a misuse of the AI system, leading directly to physical harm to a person, which is a clear harm to health. The presence of hardcoded passwords and backdoors shows a failure in the system's security design, contributing to the incident. Therefore, this event is classified as an AI Incident because the AI system's malfunction and malicious use directly caused harm.
Thumbnail Image

Risky robots: German researcher exposes 11,000 robot lawnmowers that could be hacked and controlled worldwide

2026-05-10
The Times of India
Why's our monitor labelling this an incident or hazard?
The robot lawnmowers are AI systems because they operate autonomously with remote control and diagnostics, involving AI components. The vulnerabilities directly led to potential physical harm (spinning blades controlled remotely) and privacy violations (access to personal data and cameras). The incident is not merely a potential hazard but an actual security breach demonstrated live, affecting thousands of devices globally. The company's response is complementary information but does not change the classification of the event as an AI Incident. Hence, the event meets the criteria for an AI Incident due to realized harm from the AI system's malfunction and insecure use.
Thumbnail Image

Dangerous robots: German researchers reveal 11,000 robot lawn mowers around the world could be hacked and controlled World News - THE LOCAL REPORT ARTICLES

2026-05-10
THE LOCAL REPORT ARTICLES
Why's our monitor labelling this an incident or hazard?
The robotic lawn mowers are AI systems because they operate autonomously with rotating blades and remote control capabilities. The security flaws allow malicious actors to take control remotely, directly threatening physical safety (harm to persons) and privacy (violation of rights). The live demonstration of remote control toward a person confirms realized harm potential. The vulnerabilities in credential management, backdoors, and communication protocols are malfunctions or design flaws in the AI system's development and use. The incident meets the criteria for an AI Incident as it involves direct harm or risk of harm caused by the AI system's malfunction and misuse.
Thumbnail Image

China-linked New York robotics firm issues fix after hacker remotely hijacks thousands of lawn mowers

2026-05-11
Cybernews
Why's our monitor labelling this an incident or hazard?
The robotic lawn mowers are AI systems as they autonomously navigate and operate using AI-assisted mapping and sensors. The hacker's remote hijacking exploits a security flaw in the AI system's design and deployment, directly leading to harm including unauthorized access to personal data (email, WiFi passwords, GPS locations), invasion of privacy (spying via cameras), and potential physical harm (remote control of heavy autonomous machines). The company's partial remediation does not negate the fact that harm has occurred and the AI system's malfunction was pivotal. Hence, this is an AI Incident involving direct harm caused by the AI system's use and malfunction.