There were times I wasn’t sure the Rabbit R1 was even a real thing. The AI-powered, Teenage Engineering-designed device came out of nowhere to become one of the biggest stories at CES, promising a level of fun and whimsy that felt much better than some of the more self-serious AI companies out there. CEO Jesse Lyu practically promised the world in this $199 device.
Technology
A morning with the Rabbit R1: a fun, funky, unfinished AI gadget
Well, say this for Rabbit: it’s real. Last night, I went to the swanky TWA Hotel in New York City, along with a few hundred reporters, creators, and particularly enthusiastic R1 buyers. After a couple of hours of photo booths, specialty cocktails, and a rousing keynote and demo from Lyu — in which he made near-constant reference to and fun of the Humane AI Pin — we all got our R1s to take home. I’ve been using mine ever since, and I have some thoughts. And some questions.
From a hardware perspective, the R1 screams “kinda meh Android phone.” Here are the salient specs: it’s about three inches tall and wide and a half-inch thick. It weighs 115 grams, which is about two-thirds as much as the iPhone 15. It has a 2.88-inch screen, runs on a 2.3GHz MediaTek MT6765 processor, and has 128 gigs of storage and four gigs of RAM. It has a speaker on the back, two mics on the top, and a SIM card slot on the side right next to the USB-C charging port. It only comes in one color, a hue Rabbit calls “leuchtorange” but is often known as “brilliant orange” or “luminous orange.” It’s definitely orange, and it’s definitely luminous.
At this point, the best way I can describe the R1 is like a Picasso painting of a smartphone: it has most of the same parts, just laid out really differently. Instead of sitting on top or in the back, the R1’s camera sits in a cutout space on the right side of the device, where it can spin its lens to face both toward and away from you.
The R1 is like a Picasso painting of a smartphone
After spending a few hours playing with the device, I have to say: it’s pretty nice. Not luxurious, or even particularly high-end, just silly and fun. Where Humane’s AI Pin feels like a carefully sculpted metal gem, the R1 feels like an old-school MP3 player crossed with a fidget spinner. The wheel spins a little stiffly for my taste but smoothly enough, the screen is a little fuzzy but fine, and the main action button feels satisfying to thump on.
When I first got the device and connected it to Wi-Fi, it then immediately asked me to sign up for an account at Rabbithole, the R1’s web portal. I did that, scanned a QR code with the R1 to get it synced up, and immediately did a software update. I spent that time logging in to the only four external services the R1 currently connects to: Spotify, Uber, DoorDash, and Midjourney.
Once I was eventually up and running, I started chatting with the R1. So far, it does a solid job with basic AI questions: it gave me lots of good information about this week’s NFL draft, found a few restaurants near me, and knew when Herbert Hoover was president. This is all fairly basic ChatGPT stuff, and there’s some definite lag as it fetches answers, but I much prefer the interface to the Humane AI Pin — because there’s a screen, and you can see the thing working so the AI delays don’t feel quite so interminable.
Because there’s a screen, the AI delays don’t feel quite so interminable
Almost immediately, though, I started running into stuff the R1 just can’t do. It can’t send emails or make spreadsheets, though Lyu has been demoing both for months. Rabbithole is woefully unfinished, too, to the point I was trying to tap around on my phone and it was instead moving a cursor around a half-second after every tap. That’s a good reminder that the whole thing is running on a virtual machine storing all your apps and credentials, which still gives me security-related pause.
Oh, and here’s my favorite thing that has happened on the R1 so far: I got it connected to my Spotify account, which is a feature I’m particularly excited about. I asked for “Beyoncé’s new album,” and the device excitedly went and found me “Crazy in Love” — a lullaby version, from an artist called “Rockabye Baby!” So close and yet so far. It doesn’t seem to be able to find my playlists, either, or skip tracks. When I said, “Play The 1975,” though, that worked fine and quickly. (The speaker, by the way, is very much crappy Android phone quality. You’re going to want to use that Bluetooth connection.)
The R1’s Vision feature, which uses the camera to identify things in the scene around you, seems to work fine as long as all you want is a list of objects in the scene. The device can’t take a photo or video and doesn’t seem to be able to do much else with what it can see.
When you’re not doing anything, the screen shows the time and that bouncing rabbit-head logo. When you press and hold the side button to issue a command, the time and battery fade away, and the rabbit’s ears perk up like it’s listening. It’s very charming! The overall interface is simple and text-based, but it’s odd in spots: it’s not always obvious how to go back, for instance, and you only get to see a line or two of text at a time at the very bottom of the screen, even when there’s a whole paragraph of answer to read.
Rabbit’s roadmap is ambitious: Lyu has spent the last few months talking about all the things the R1’s so-called “Large Action Model” can do, including learning apps and using them for you. During last night’s event, he talked about opening up the USB-C port on the device to allow accessories, keyboards, and more. That’s all coming… eventually. Supposedly. For now, the R1’s feature set is much more straightforward. You can use the device to play music, get answers to questions, translate speech, take notes, summon an Uber, and a few other things.
That means there’s still an awful lot the R1 can’t do and a lot I have left to test. (Anything you want to know about, by the way, let me know!) I’m particularly curious about its battery life, its ability to work with a bad connection, whether it heats up over time, and how it handles more complex tasks than just looking up information and ordering chicken nuggets. But so far, this thing seems like it’s trying to be less like a smartphone killer and more like the beginnings of a useful companion. That’s probably as ambitious as it makes sense to be right now — though Lyu and the Rabbit folks have a lot of big promises to eventually live up to and not a lot of time to do so.
Photography by David Pierce / The Verge
Technology
North Korea linked to crypto heists of over $650 million in 2024 alone
Hackers in North Korea stole a total of $659 million in crypto across several heists in 2024, according to a joint statement issued today by the US, Japan, and South Korea. The report specified five such incidents, like the $235 million theft from the Indian crypto exchange WazirX that is being newly attributed to the Lazarus Group. That organization is estimated to have stolen billions across previous attacks over the last decade, including $625 million stolen from Axie Infinity in 2022.
As recently as September 2024, the United States government observed aggressive targeting of the cryptocurrency industry by the DPRK with well-disguised social engineering attacks that ultimately deploy malware, such as TraderTraitor, AppleJeus and others. The Republic of Korea and Japan have observed similar trends and tactics used by the DPRK.
A warning issued by the FBI last September noted that their methods to gain access for delivering these payloads include “individualized fake scenarios,” such as enticing victims with prospective jobs and business opportunities. All three countries advised businesses in the industry to check out the latest warning to reduce their risk of “inadvertently hiring DPRK IT workers,” as described in this recent report by CoinDesk.
They’ve also used long-time common phishing tactics against employees of crypto firms, such as convincing impersonations of trusted contacts or prominent people of interest in related industries, with realistic photos and information likely lifted from public social media accounts of known connections.
Technology
Hackers claim massive breach of company that tracks and sells Americans' location data
When we talk about data privacy, tech giants like Google and Facebook are often blamed for using personal data to show ads and recommendations. Less discussed are the businesses whose entire business model revolves around collecting your data and selling it to other companies and governments. These companies often operate in legal gray areas, with the consent required to collect user data buried deep in the fine print.
What’s even more concerning is that these data brokers fail to adequately protect the data they collect. Last year, National Public Data made headlines for failing to secure 2.7 billion records of individuals whose data it had harvested. Now, hackers have reportedly stolen data from Gravy Analytics, the parent company of Venntel, which has sold vast amounts of smartphone location data to the U.S. government.
I’M GIVING AWAY THE LATEST & GREATEST AIRPODS PRO 2
Enter the giveaway by signing up for my free newsletter.
What you need to know about the breach
Hackers claim to have breached Gravy Analytics, a major location data broker and parent company of Venntel, a firm known for selling smartphone location data to U.S. government agencies. The compromise is massive, including sensitive location data that tracks precise smartphone movements, customer information and even internal infrastructure, according to a 404 Media report.
The hackers are threatening to make the stolen data public. The files contain precise latitude and longitude coordinates of the phone and the time at which the phone was there. Some even indicate what country the data has been collected from.
Hackers have claimed access to Gravy’s systems since 2018. If true, this represents a serious security lapse on the company’s part. It is baffling how companies that collect and sell user data (a practice that arguably shouldn’t be allowed in the first place) failed to protect it from being leaked.
404 Media also suggests that the hackers gained deep access to the company’s infrastructure, including Amazon S3 buckets and server root access. The exposed customer list reportedly includes major companies like Uber, Apple and Equifax as well as government contractors like Babel Street.
HERE’S WHAT RUTHLESS HACKERS STOLE FROM 110 MILLION AT&T CUSTOMERS
What this breach means for people
This data breach highlights the serious security flaws in the location data industry. Companies like Gravy Analytics and Venntel have been profiting from collecting and selling sensitive location data, often without proper user consent. They’ve prioritized profit over security, and now the privacy of millions is at risk. This data could end up on black markets, endangering individuals, especially those in vulnerable situations, by making them targets for harassment or worse.
The FTC’s recent crackdown on Gravy, announced in December, underscores their negligence. The proposed order will prohibit these companies from selling or using location data, except in specific cases like national security or law enforcement. The implications are worrying. Sensitive locations like schools and workplaces could become easy targets for those with malicious intent.
BEWARE OF ENCRYPTED PDFs AS THE LATEST TRICK TO DELIVER MALWARE TO YOU
5 ways to stay safe in the age of data breaches
The Gravy Analytics breach serves as a sobering reminder of the vulnerabilities in the digital age. While it’s impossible to control how every company handles data, you can take steps to minimize your exposure and protect your privacy. Here are five actionable tips to stay safe.
1) Limit app permissions: Many apps request access to location data, contacts and more, even when it’s not necessary for their functionality. Regularly review the permissions for apps on your smartphone and revoke access to anything that feels excessive. For instance, a weather app doesn’t need access to your microphone or camera.
2) Use a VPN: Virtual private networks (VPNs) can mask your IP address and encrypt your internet activity, making it harder for data brokers and hackers to track your online behavior. A good VPN adds an extra layer of security, especially when using public Wi-Fi networks. For the best VPN software, see my expert review of the best VPNs for browsing the web privately on your Windows, Mac, Android and iOS devices.
3) Opt out of data sharing where possible: Some companies allow you to opt out of having your data collected or shared. Services like Your Ad Choices and privacy settings within platforms like Google can help you reduce the amount of data collected. Check for opt-out options with any apps or services you use frequently.
4) Avoid free apps that monetize data: Free apps often generate revenue by selling user data. Instead, consider paid versions of apps that explicitly prioritize privacy. Research the company behind the app to understand its data handling policies before downloading.
5) Invest in data removal services: Data removal services can help you regain some control over your personal information by identifying and removing it from people-search websites, data broker platforms and other online databases. Check out my top picks for data removal services here.
WHAT TO DO IF YOUR BANK ACCOUNT IS HACKED
Kurt’s key takeaway
Companies that collect and sell user data pose a significant threat to privacy, and when they fail to protect this data, it often ends up in the hands of even worse actors. Cybercriminals, and even some governments, can exploit this information to target individuals. It is crucial to implement stringent repercussions for these companies when they fail in their duty to safeguard user data. A mere slap on the wrist is not enough. We need real accountability to deter negligence and protect individual privacy rights.
Should companies face stronger penalties for failing to protect personal data? Let us know by writing us at Cyberguy.com/Contact.
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.
Ask Kurt a question or let us know what stories you’d like us to cover.
Follow Kurt on his social channels: Answers to the most asked CyberGuy questions:
New from Kurt:
Copyright 2024 CyberGuy.com. All rights reserved.
Technology
DJI Flip official: the unique bicycle spoke folding drone starts at $439
At $439, the DJI Flip could be a good starting point for people who don’t typically buy drones at all. You can unfold it, launch it from your hand with a single button, land it on your hand again, or optionally use joysticks, all while capturing higher quality photos and video than the immediate competition.
In August, my colleague Thomas Ricker told you how DJI rival Hover had changed the game by selling a $349 flying camera that doesn’t require people to learn joysticks; with the $199 DJI Neo, DJI looked poised to muscle in on that in a big way. But the $439 Flip not only lets you launch and film basic dronies, orbits, and follow-me shots from the drone itself, it dramatically increases camera quality, flight stability, battery life (a quoted 31 minutes), and lets you launch it faster. You just won’t be able to fly it FPV like some of us were hoping.
Not only is the Flip the first DJI drone to look like a Star Wars AT-AT walker or a penny-farthing bicycle when folded, it’s also the first to automatically power on when you unfold it, saving two button presses. And when you flip out each of its four spoke-filled full-coverage propeller guards — which DJI says are a first for its folding drones — they join an auto-braking, forward-facing 3D infrared sensor to protect the camera from any front impacts as well.
1/9
And while that camera isn’t quite as impressive as the 1.0-inch type found on DJI’s Osmo Pocket 3, I was impressed by my first results in good light! It’s smaller 1/1.3-inch 4K60 sensor with 4:3 aspect ratio is capable of taking 2.7K vertical video or 48 megapixel stills behind a fast f/1.7 aperture lens. Here are a couple of my unedited early flights, a drone selfie, and a photo, to give you an idea:
Frankly, the DJI Neo — which costs less than half as much — can’t come close to this level of performance; over the same lake and the same park, the Neo couldn’t even maintain a smooth level shot as the breeze blew its lighter frame around, and its images were muddy and washed out by comparison. The Flip has a three-axis gimbal to help maintain that stability. Also, pros can record in 10-bit D-Log M.
But other, pricier DJI drones could offer better performance still, plus true vertical shooting by rotating the gimbal — and it’d be hard to imagine a drone enthusiast picking the Flip instead of waiting to see what DJI’s unannounced Mini 5 might bring to the table.
“There are currently no plans to retire the Mini Series. The DJI Flip is a new entry-level drone series that will be offered alongside the DJI Neo and DJI Mini. Each of these drones are designed to meet the needs of different types of beginners,” DJI spokesperson Daisy Kong confirms to The Verge.
I am continually surprised by how large the Flip is; while it stays under the 249-gram weight limit that typically triggers government compliance standards like publicly broadcasting your location. Despite its folding arms, it doesn’t fold down smaller than a Mini so there’s no way I’m fitting it into any but the biggest cargo pants pockets I own. It’s also quite loud despite its ducted propellers — absolutely not among the quieter drones that the company sells.
And despite costing more than the $199 DJI Neo, it doesn’t support any FPV headsets to let you virtually soar like a bird.
But the Flip does cost just $439 complete with a basic RC-N3 joystick controller that lets you use your phone as a screen, plus the launch-it-from-your-hand modes; a $779 kit comes with three batteries, a carrying case, and a more capable DJI RC 2 controller with a built-in daylight visible 700-nit screen. The DJI Mini 4 Pro versions of each of same kits cost $959 and $1,099 respectively, a $320 difference.
The DJI Flip should be available to buy and ship today, from DJI’s website.
Photography and video by Sean Hollister / The Verge
-
Politics1 week ago
Who Are the Recipients of the Presidential Medal of Freedom?
-
Health1 week ago
Ozempic ‘microdosing’ is the new weight-loss trend: Should you try it?
-
Technology5 days ago
Meta is highlighting a splintering global approach to online speech
-
Science3 days ago
Metro will offer free rides in L.A. through Sunday due to fires
-
Technology7 days ago
Las Vegas police release ChatGPT logs from the suspect in the Cybertruck explosion
-
Movie Reviews1 week ago
‘How to Make Millions Before Grandma Dies’ Review: Thai Oscar Entry Is a Disarmingly Sentimental Tear-Jerker
-
Health1 week ago
Michael J. Fox honored with Presidential Medal of Freedom for Parkinson’s research efforts
-
Movie Reviews1 week ago
Movie Review: Millennials try to buy-in or opt-out of the “American Meltdown”