Creepy or super creepy? That is the question Mozilla's throwing at IoT Christmas pressies

'Tis the season to be tracked by your connected water bottle


The FREDI baby monitor has been ranked creepiest connected home gadget on offer this festive season in a survey by Mozilla.

According to Mozilla, the babycam uses a default password of "123" that users aren't forced to change, it doesn't use encryption and has a history of being hacked – earning it a "super creepy" tag from the foundation.

Researchers at Mozilla probed 70 connected toys, games, smartphone kit and other gadgets for its second annual Privacy Not Included test, ahead of Black Friday and the Christmas gift-buying rush.

They asked five questions, including whether the device can spy on its owners, and how it is controlled or secured – concerns that are regularly raised about kids' toys that fail to protect the data they slurp on their owners.

Mozilla also assessed devices against a set of minimum security requirements, such as use of encryption and strong passwords if there is a point of contact for reporting a vulnerability.

The FREDI monitor was the only device ranked "super creepy" – researchers previously claimed a miscreant can remotely connect to it and use its built in camera without authentication.

Many more gadgets probed by Mozilla were branded "very creepy" – which doesn't necessarily mean they have bad security practices, since it also assesses the level of insight the device has into your life.

For instance, "very creepy" devices that meet the minimum security standards include Amazon devices Echo and Cloud Cam, and Google Home.

Broadly, these are classed as creepy because of the amount they "spy" on users, through cameras, microphones and location tracking. Mozilla also noted Amazon Echos don't delete the data stored on users.

Other "very creepy" but security-standard-meeting devices include the Furbo Dog Camera, Petcube Play and Petchatz HD. The sheer number of these kinds of devices on trial demonstrates just how much people love their pets.

"Somewhat creepy" pet surveillance options, according to Mozilla, are the Petzi treat cam and PetNet Smart Feeder, which we've covered before here.

Ranking is also given to a variety of watches and wearables, such as the Apple watch, Garmin Vivosport and the FitBit Charge 3.

On the plus side, a couple of entirely necessary devices that absolutely need to be connected to the internet, or controlled through your phone manage to scrape through as just "a little creepy".

Take the connected personalised coffee maker (what's wrong with a Teasmaid?) and a Wi-Fi and bluetooth-connected sous vide machine that lets you cook from another continent (after you've vacuum-packed your food, put it in a pot with water and stuck a cooking-stick in it).

But perhaps the most bizarre connected device – which is ranked "very creepy" – is the Hidrate Spark 2.0 Water Bottle. Yes, you read that right. It's a water bottle that pairs with an app on your phone and syncs with your fitness tracker to remind you to drink water. When you aren't drinking enough, it glows. Which is fine. ®

Similar topics

Narrower topics


Other stories you might like

  • Google keeps legacy G Suite alive and free for personal use
    Phew!

    Google has quietly dropped its demand that users of its free G Suite legacy edition cough up to continue enjoying custom email domains and cloudy productivity tools.

    This story starts in 2006 with the launch of “Google Apps for Your Domain”, a bundle of services that included email, a calendar, Google Talk, and a website building tool. Beta users were offered the service at no cost, complete with the ability to use a custom domain if users let Google handle their MX record.

    The service evolved over the years and added more services, and in 2020 Google rebranded its online productivity offering as “Workspace”. Beta users got most of the updated offerings at no cost.

    Continue reading
  • GNU Compiler Collection adds support for China's LoongArch CPU family
    MIPS...ish is on the march in the Middle Kingdom

    Version 12.1 of the GNU Compiler Collection (GCC) was released this month, and among its many changes is support for China's LoongArch processor architecture.

    The announcement of the release is here; the LoongArch port was accepted as recently as March.

    China's Academy of Sciences developed a family of MIPS-compatible microprocessors in the early 2000s. In 2010 the tech was spun out into a company callled Loongson Technology which today markets silicon under the brand "Godson". The company bills itself as working to develop technology that secures China and underpins its ability to innovate, a reflection of Beijing's believe that home-grown CPU architectures are critical to the nation's future.

    Continue reading
  • China’s COVID lockdowns bite e-commerce players
    CEO of e-tail market leader JD perhaps boldly points out wider economic impact of zero-virus stance

    The CEO of China’s top e-commerce company, JD, has pointed out the economic impact of China’s current COVID-19 lockdowns - and the news is not good.

    Speaking on the company’s Q1 2022 earnings call, JD Retail CEO Lei Xu said that the first two years of the COVID-19 pandemic had brought positive effects for many Chinese e-tailers as buyer behaviour shifted to online purchases.

    But Lei said the current lengthy and strict lockdowns in Shanghai and Beijing, plus shorter restrictions in other large cities, have started to bite all online businesses as well as their real-world counterparts.

    Continue reading
  • Foxconn forms JV to build chip fab in Malaysia
    Can't say when, where, nor price tag. Has promised 40k wafers a month at between 28nm and 40nm

    Taiwanese contract manufacturer to the stars Foxconn is to build a chip fabrication plant in Malaysia.

    The planned factory will emit 12-inch wafers, with process nodes ranging from 28 to 40nm, and will have a capacity of 40,000 wafers a month. By way of comparison, semiconductor-centric analyst house IC Insights rates global wafer capacity at 21 million a month, and Taiwanese TSMC’s four “gigafabs” can each crank out 250,000 wafers a month.

    In terms of production volume and technology, this Malaysian facility will not therefore catapult Foxconn into the ranks of leading chipmakers.

    Continue reading
  • NASA's InSight doomed as Mars dust coats solar panels
    The little lander that couldn't (any longer)

    The Martian InSight lander will no longer be able to function within months as dust continues to pile up on its solar panels, starving it of energy, NASA reported on Tuesday.

    Launched from Earth in 2018, the six-metre-wide machine's mission was sent to study the Red Planet below its surface. InSight is armed with a range of instruments, including a robotic arm, seismometer, and a soil temperature sensor. Astronomers figured the data would help them understand how the rocky cores of planets in the Solar System formed and evolved over time.

    "InSight has transformed our understanding of the interiors of rocky planets and set the stage for future missions," Lori Glaze, director of NASA's Planetary Science Division, said in a statement. "We can apply what we've learned about Mars' inner structure to Earth, the Moon, Venus, and even rocky planets in other solar systems."

    Continue reading
  • The ‘substantial contributions’ Intel has promised to boost RISC-V adoption
    With the benefit of maybe revitalizing the x86 giant’s foundry business

    Analysis Here's something that would have seemed outlandish only a few years ago: to help fuel Intel's future growth, the x86 giant has vowed to do what it can to make the open-source RISC-V ISA worthy of widespread adoption.

    In a presentation, an Intel representative shared some details of how the chipmaker plans to contribute to RISC-V as part of its bet that the instruction set architecture will fuel growth for its revitalized contract chip manufacturing business.

    While Intel invested in RISC-V chip designer SiFive in 2018, the semiconductor titan's intentions with RISC-V evolved last year when it revealed that the contract manufacturing business key to its comeback, Intel Foundry Services, would be willing to make chips compatible with x86, Arm, and RISC-V ISAs. The chipmaker then announced in February it joined RISC-V International, the ISA's governing body, and launched a $1 billion innovation fund that will support chip designers, including those making RISC-V components.

    Continue reading

Biting the hand that feeds IT © 1998–2022