Not wanting to try and predict an 'I am your father' moment in the next Star Wars film, it turns out that there is a security flaw in this year's hottest tech toy.
Fear not though, it's a very small vulnerability, that would require a 'perfect storm' to put you at any risk.
I'm sure it's safe to ignore. Just like the unprotected 2m wide exhaust port on the Death Star...
Ken Munro at Pen Test Partners has been having a lot of fun playing with his BB-8 droid toy, paired via Bluetooth to the bundled app running on his Android smartphone, and after a little digging found that it suffers a fundamental security flaw: "If you force a firmware update, it goes over HTTP. No SSL. Fail!"