Rabbit’s R1 AI gadget is embroiled in another controversy, this time due to a severe security flaw. A group called Rabbitude discovered hardcoded API keys in Rabbit’s codebase, compromising sensitive data. These keys allowed unauthorized access to Rabbit’s accounts with third-party services, including ElevenLabs and SendGrid, potentially exposing all responses generated by R1 devices. Despite Rabbitude notifying Rabbit over a month ago, the company was slow to act, only recently revoking most of the keys. However, Rabbitude still had access to the SendGrid key as of today. Rabbit’s spokesperson, Ryan Fenwick, stated that the company is investigating the issue but has not found any critical system compromises or customer data breaches yet. The R1’s launch, marred by poor battery life, limited features, and error-prone AI, already tarnished its reputation. This security lapse severely undermines public trust, putting Rabbit in a precarious position.

Source.

TOP STORIES

Big Tech's Trust Crisis Deepens with Anthropic Lawsuit
Sony Music and Warner Music have sued Anthropic, accusing it of copyright infringement in AI training …
Nvidia's AI Future - Jensen Huang's Vision for Record Growth
Huang believes Nvidia’s position in AI will lead to another year of record growth …
China's AI Companies Target US Models with Distillation Attacks
Anthropic’s report reveals a surge in distillation attacks by Chinese AI firms on U.S. models …
Cybersecurity Concerns Rise as AI Agents Break Boundaries
AI agents’ autonomy poses significant risks, as demonstrated by a recent breach …
IDScan Confirms Major Data Breach Affecting Driver's Licenses
IDScan has confirmed a data breach that exposed driver’s licenses of over 150 million individuals …
Matt Mullenweg's Abrupt Leave Sparks Controversy at Automattic
Matt Mullenweg has been placed on leave by Automattic’s board, stirring controversy …

latest stories