RobotRisk Autonomous Systems Incident & Risk Register
RobotRisk / DJI / 2018-03

Check Point Research discloses DJI account/data vulnerability

S2 · 03/2018 · DJI

Record

CompanyDJI
Categorydrones evtol
Typecyber
Date03/2018
Time of daynot documented
Locationno physical site (recall / fleet-wide / aggregate record)
SeverityS2 (minor injury or single-unit damage)
Scaleplatform-wide (patched, no confirmed exploitation)
Confidencehigh
VerificationCited source on file; not independently re-verified
SourceCheck Point Research

What happened

Security researchers at Check Point disclosed a vulnerability in DJI's web platform (forum/account system) that could have allowed attackers to access user accounts, flight logs, photos and live camera feeds; DJI patched the issue after disclosure.

DJI record context

Entries by year and severity

232017 S3: 11172018 S2: 11182025 S3: 22252026 S2: 12026 S3: 2326
S1S2S3S4S5

By incident type

By severity

DJI vs drones evtol alternatives

drones evtol context

drones evtol: entries by year

482016 S5: 11162017 S3: 11172018 S2: 11182019 S2: 22019 S3: 13192022 S2: 22022 S3: 12022 S4: 14222023 S2: 12023 S4: 12232024 S2: 12024 S3: 34242025 S3: 52025 S4: 12025 S5: 28252026 S2: 22026 S3: 42026 S4: 1726
S1S2S3S4S5

drones evtol: failure modes

drones evtol: most entries

cyber context

cyber: by category

cyber: by year

cyber: severity profile

Comparable cyber events in drones evtol

SevDateCompanyEvent
S32026-03-07DJIDJI Pays $30K Bug Bounty After Researcher Hacks 7,000 Robot Vacuums
S22026-02-11DJIDJI Cloud Authorization Bug Exposes Data From Nearly 7,000 Robot Vacuums

Other DJI entries

Also from Critical Systems Analysis: CSA - functional safety engineering · Company directory · FSTalent - functional safety jobs