AI gadget Rabbit R1 saved correspondence with users without the ability to delete it

The electronic assistant with artificial intelligence Rabbit R1 saved correspondence with users on the device without the ability to delete it, the gadget manufacturer admitted. The bug was fixed with the release of a software update that added a new Factory Reset feature in Settings to erase all data from the device. Previously, you could unlink your account from the device, but the user data was not deleted.

Image source: rabbit.tech

Along with the new ability to completely delete all user data, the software update eliminated another dubious feature of the Rabbit R1: external devices previously connected to the gadget with permission to add data to the Rabbithole log could also read it. That is, a stolen or hacked Rabbit R1 exposed all requests, photos and other user data to a potential attacker.

With the update, devices lost access to reading the log, and the volume of the log stored on the device was reduced. According to the company, “there is no evidence that the connection data was used to read Rabbithole log data belonging to the former owner.” The risk of such abuse at Rabbit was assessed as negligible.

In June, hard-coded API keys for accessing third-party services were discovered in the device code. They gave a potential attacker access to any answer that the device gave to the user. Rabbit said the employee who made the mistake was identified, fired, and is now being investigated. The company has vowed to improve its security practices to prevent similar errors from happening in the future, with a detailed review of device log practices underway to ensure they meet standards “set in other areas.”

admin

Share
Published by
admin

Recent Posts

Alibaba Cloud Reduces Data Center Assembly Time by 50% Using Modular Architecture

Alibaba Cloud presented at its annual Apsara conference a modular data center architecture called “CUBE…

12 mins ago

The release has crept up unnoticed: the classic version of Resident Evil 3 will appear on GOG very soon

The original Resident Evil 3: Nemesis turned 25 years old yesterday, and the digital distribution…

42 mins ago

Biden and Modi agreed to build a chip factory in India

The United States and India have reached an agreement under which a new semiconductor manufacturing…

1 hour ago

An insider has revealed the main source of inspiration for the multiplayer Assassin’s Creed Invictus – Fall Guys

Image Source: Mediatonic Among the available formats are team deathmatch, every man for himself, and…

3 hours ago

Seasonic has released a PRIME PX-2200 power supply with a power of 2200 W for $500

Seasonic has released the PRIME PX-2200 2200 W power supply. The new product was first…

3 hours ago