Skip to main content

You may want to stop using the Rabbit R1

Someone holding the Rabbit R1 outside.
Joe Maring / Digital Trends

After it was launched in late April 2024, the Rabbit R1 got a mixed bag of reviews, with many reviewers describing it as an unhelpful gadget or only scarcely more useful than Humane’s AI Pin. Digital Trends’ Joe Maring rated it a single star, writing, “The Rabbit R1 was supposed to be one of the hottest AI gadgets of the year. Instead, it’s a buggy, flawed, and unsuccessful mess in every way imaginable.”

As if launching a product flop wasn’t bad enough, Rabbit is now facing reports of a data breach that may have revealed sensitive user data. Rabbitude, a reverse engineering project for the Rabbit R1, is reporting it was able to gain access to the Rabbit codebase and found several hardcoded API keys in its codes.

The below isn’t an exhaustive list, but it allows anyone to do any of the following:

  • Read every response every R1 has ever given, including ones containing personal information
  • Brick all R1s
  • Alter the responses of all R1s
  • Replace every R1’s voice

The following services also had their API keys exposed:

  • ElevenLabs (for text-to-speech)
  • Azure (for an old speech-to-text system)
  • Yelp (for review lookups)
  • Google Maps (for location lookups)
The Settings page on the Rabbit R1.
Joe Maring / Digital Trends

Rabbitude notes that the API keys for Elevenlabs give full privileges. These include getting a history of all past text-to-speech messages, changing voices, adding custom text replacements, deleting voices, and crashing the rabbitOS backend, essentially bricking all Rabbit R1 devices. Rabbit did, however, revoke the Elevenlabs API key, which also broke Rabbit devices for a period of time.

This is a fairly worrying set of permissions to allow on any device, but it’s extra troubling when it’s for an always-on voice-activated AI gadget loaded with cameras. Rabbitude says it reached out to the Rabbit Team, which is aware of the leaked API keys, but they “have chosen to ignore it,” and the API keys continue to be valid as of this writing.

all rabbit r1 responses could be read by us for the past month and rabbit knew about it and did nothing to fix it.https://t.co/r6NmhZJY5W

— xyzeva (@xyz3va) June 25, 2024

Endgadget similarly reached out to the company and received confirmation that Rabbit is aware of the “alleged” data breach as of June 25. “Our security team immediately began investigating it,” the company said. “As of right now, we are not aware of any customer data being leaked or any compromise to our systems. If we learn of any other relevant information, we will provide an update once we have more details.”

As far as security failures go, this seems to be a fairly serious one. While the Rabbit R1 is a neat device, it’s also heavily flawed, and the security issues are sufficient enough that we recommend that you stop using it, at least for now. After all, there’s nothing your $199 Rabbit R1 (separate data plan required) can do that your smartphone can’t.

Ajay Kumar
Freelance Writer, Mobile
Ajay has worked in tech journalism for more than a decade as a reporter, analyst, and editor.
AT&T just made it a lot easier to upgrade your phone
AT&T Storefront with logo.

Do you want to upgrade your phone more than once a year? What about three times a year? Are you on AT&T? If you answered yes to those questions, then AT&T’s new “Next Up Anytime” early upgrade program is made for you. With this add-on, you’ll be able to upgrade your phone three times a year for just $10 extra every month. It will be available starting July 16.

Currently, AT&T has its “Next Up” add-on, which has been available for the past several years. This program costs $6 extra per month and lets you upgrade by trading in your existing phone after at least half of it is paid off. But the new Next Up Anytime option gives you some more flexibility.

Read more
How to turn vibrate on and off on your iPhone
Someone holding an iPhone that shows the haptic setup screen for text tones.

Your iPhone, a device designed to keep you connected, offers a range of alert methods for new messages, phone calls, and notifications. Among these, the vibration function stands out. When activated, your phone will discreetly notify you by vibrating upon receiving an alert, a feature that can be particularly useful in certain situations.

The vibration feature on your iPhone, called "haptics," serves a variety of practical purposes. For instance, it can receive notifications discreetly when noise is inappropriate, like during meetings. Moreover, it’s a valuable tool for accessibility, aiding individuals with hearing impairments in staying connected. Additionally, it’s a handy feature when your iPhone is in Silent Mode, ensuring you don’t miss important calls or texts without needing a ringtone.

Read more
Quick! Best Buy cut the price of the 5th Gen iPad by $220 today only
A person using the 5th Gen iPad Air.

If you’ve been looking around for solid iPad deals, look no more! Best Buy offers some of the best markdowns on Apple’s mobile tech, and right now you can purchase the 10.9-inch iPad Air (5th Gen) with Apple’s M1 chip for $530. That’s a $220 discount compared to the tablet’s normal pricing. 

Why you should buy the 10.9-inch iPad Air
The iPad is far more than a run-of-the-mill tablet. In fact, one could argue that this mobile Apple tech is an all-hands-on-deck portable workstation. While the M1 was the company’s first stab at in-house processors, it produces some impressive results. You can expect blistering-fast performance from browsing to apps; all of which will be experienced on the 10.9-inch Liquid Retina display with sRGB colors and True Tone capabilities.

Read more