Author name: Mike M.

off-roading-evs-find-a-home-at-king-of-the-hammers

Off-roading EVs find a home at King of the Hammers

A Rivian kicks up sand off-road

Enlarge / EVs are making in-roads at the annual King of the Hammers event in California.

Michael Teo Van Runkle

Electric vehicles are few and far between in the desert at King of the Hammers, a weeks-long off-roading event that often looks more like Burning Man than motorsport. Almost all EVs can be found at the Optima Oasis, a not-so-literal oasis of solar and hydrogen-powered chargers that the battery company erected smack-dab in the middle of nowhere for the past two years.

King of the Hammers takes place in Johnson Valley Off-Highway Vehicle Area, the nation’s largest OHV space by sheer acreage. But the vast expanse, about 100 miles as the crow flies from downtown Los Angeles, turns into a thriving metropolis once a year when a makeshift city dubbed “Hammertown” draws tens of thousands of four-wheeling enthusiasts to the sand and rocks.

I went to check out the festivities—especially the event’s EV-focused Unplugged rally.

Slow charging at King of the Hammers

This year’s attendance peaked at over 100,000, but that full number wasn’t quite present when I drove out on KoH’s first Sunday in an Audi Q8 e-tron to watch trophy trucks race at top speed across the desert. Range anxiety kicked in heavily on my 135-mile (217 km) commute, which included a few thousand vertical feet of climbing to truly test the Audi’s claimed 280 miles (450 km) of electric range.

Charging in the Optima Oasis.

Enlarge / Charging in the Optima Oasis.

Michael Teo Van Runkle

I arrived at the Optima Oasis with 78 miles (126 km) of range remaining and promptly plugged into a Level 2 charger, where I left the Audi charging for the rest of the day. I checked in a few times, noting that the charger, hooked into the KoH grid, managed to pump out an average of about 12 miles (19 km) worth of electrons per hour. At approximately 50 kilowatts, that rate would be enough to get me home later in the evening, but not if I’d been out four-wheeling in the car all day—and that slow rate certainly wouldn’t do the trick for the massive group of EVs that Optima expected later in the week as part of its second Unplugged rally. As the sun went down and I readied myself for the drive home, three massive tractor-trailers arrived with the solar and hydrogen setups to support EV owners for King of the Hammers’ main events.

The following Thursday, I drove back to Johnson Valley in a Ford Bronco Raptor, probably the greatest production vehicle ever built for the desert—if not the most fuel-efficient or eco-friendly. I planned to catch the home-built Every Man Challenge, as well as the most hardcore half-million-dollar-plus Ultra4 race that serves as the main event on the second Saturday. But first, I sheepishly pulled my gas guzzler back into the Optima Oasis to join a growing group of EV enthusiasts milling about the charging stations.

The sun began to warm us, the cars, and two massive solar arrays as more and more EVs pulled in—far more than I expected at an event that tilts heavily toward the joys of internal combustion. We’d definitely need faster chargers than I used on the Audi, I thought. Many owners topped up their batteries, while a team from Morrflate gave out lessons on airing down tires for better traction, a more comfortable ride, and reduced risk of flats while off-roading.

These solar arrays charge batteries in the trailer that can fast-charge four EVs at once.

Enlarge / These solar arrays charge batteries in the trailer that can fast-charge four EVs at once.

Michael Teo Van Runkle

And we needed that lesson, as Optima also chose a much more technical route than I expected—especially considering the smattering of bone-stock Kia and Toyota crossovers throughout the group, some of which wore eco tires or little more than all-seasons. But Rivian R1T and R1S owners made up the majority, and most of the vehicles still rode on factory Pirelli Scorpion All-Terrains. Optima allows plug-in hybrids into the Unplugged rally, too, and I spotted a few Jeep Wrangler 4xes and Toyota Tundra hybrids, plus one Cybertruck brought out for testing by Unplugged Performance.

I’m paranoid, and the weather forecast predicted heavy rain, so I packed my recovery gear and threw in a set of Maxtrax Lite recovery boards, a Yankum rope, and two soft shackles into the back of my borrowed R1T before we left Optima’s home base for the trail run. And not just for the “soft-roader” hybrids—also because I’d never actually driven a Rivian before and didn’t quite know what to expect.

Off-roading EVs find a home at King of the Hammers Read More »

max-confirms-2024-password-crackdown,-explores-adding-transactional-ads

Max confirms 2024 password crackdown, explores adding transactional ads

Monkey see, monkey do —

WBD looking for ways to grow newfound streaming business profitability.

Ellie in the HBO show

Enlarge / Max viewers will soon need their own account to watch Ellie in The Last of Us.

Warner Bros. Discovery (WBD) has confirmed that it will be cracking down on password sharing for its Max streaming service starting this year. The news follows streaming rivals, including Netflix and, soon, Disney-owned Disney+ and Hulu, in banning the sharing of account login information with people outside of the account holder’s household.

As spotted by TheWrap, while speaking at Morgan Stanley’s Technology, Media, and Telecom 2024 conference in San Francisco on Monday, JB Perrette, CEO and president of global streaming and games at WBD, said that WBD sees a password-sharing crackdown as a “growth opportunity.”

“Obviously Netflix has implemented [its password crackdown] extremely successfully. We’re gonna be doing that starting later this year and into ’25,” Perrette said.

Netflix famously launched the password crackdown trend in March 2022 and brought the rule changes to US subscribers in May 2023. Netflix had excused password sharing for years, but in 2022, it lost subscribers—about 200,000—for the first time since 2011. At the time, Netflix had 221.64 million subscribers; its most recent subscriber count was 260 million.

However, Max is unlikely to see the same subscriber surge as Netflix did. After all, Netflix’s ban on password sharing started after 17 years of gaining millions of subscribers. The Max streaming service has only been around for four years, a number that includes HBO Max, as Perrette pointed out, noting that banning account sharing is still a ”meaningful” financial prospect.

Perrette didn’t get into details about how Max’s password crackdown would work and how it might apply to the Discovery+ streaming service that WBD also owns.

New types of ads on Max

WBD is aiming to grow its streaming business with more subscribers and less churn as it expands to other markets and tries to boost content selection following a light year impacted by strikes.

On Monday, Perrette also discussed interest in changing the types of ads its streaming service shows. On the network side, HBO is known as a channel with very few commercials and a primary focus on its own content. Now that WBD is focusing on driving the streaming side of HBO through the Max app, it would prefer that the content be more synonymous with ads. Streaming services report making more money per user on average when they use a streaming subscription with ads rather than paying more for no commercials.

Per Perrette:

On the ad format size, we’ve made lots of improvements from where we were, but we still have a lot of ad format enhancements that will give us more things that we can go to marketers with, [like] shoppable ads [and] other elements of the ad format side of the house that we can improve …

Again, Max isn’t starting a trend here. Amazon Prime Video, for example, is already looking at transactional ads. Disney+ announced beta testing for shoppable ads to advertisers in January. Hulu has worked with transactional ads for years. Peacock sells them, too. Apple TV+ still doesn’t have an ad tier for its streaming service, but recent hires have people suspecting that that may change.

Perrette also touched on scaling WBD’s streaming business by bundling with third-party services, as Max does with Verizon. Perrette said WBD is in discussions with other partners for potential bundles.

WBD’s strategies come as it tries to grow the profitability of its streaming businesses. In its earnings report shared on February 23, WBD said that its direct-to-consumer (DTC) business, which includes the Max and Discovery+ streaming services and HBO network, made a profit of $103 million in 2023. In 2022, WBD’s DTC business lost $2.1 billion. The company most recently reported having 97.7 million DTC subscribers, compared to the 95.8 million that it finished Q2 2023 with.

Outside of Max, WBD is planning to launch a joint sports-streaming app with Fox and Disney; some, including rival streamers, however, have challenged the proposed joint venture as monopolistic. This week, also at Morgan Stanley’s event, Fox CEO Lachlan Murdoch said he expects the future sports-streaming service to have 5 million subscribers five years after launch, Bloomberg reported.

But as streaming services like Max contemplate ways to make more money in the near term, subscribers are facing a pivotal point. Streaming is increasingly mirroring traditional cable companies in terms of being ad-driven, promoting long-term subscriptions, enacting price hikes, bundling, and threatening possible consolidation. While such moves might make sense from a business perspective, in many cases the result is unhappy subscribers.

Max confirms 2024 password crackdown, explores adding transactional ads Read More »

spacex-just-showed-us-what-every-day-could-be-like-in-spaceflight

SpaceX just showed us what every day could be like in spaceflight

A SpaceX Falcon 9 rocket streaks into orbit Sunday night from NASA's Kennedy Space Center in Florida, ferrying a crew of four to the International Space Station.

Enlarge / A SpaceX Falcon 9 rocket streaks into orbit Sunday night from NASA’s Kennedy Space Center in Florida, ferrying a crew of four to the International Space Station.

Between Sunday night and Monday night, SpaceX teams in Texas, Florida, and California supervised three Falcon 9 rocket launches and completed a full dress rehearsal ahead of the next flight of the company’s giant Starship launch vehicle.

This was a remarkable sequence of events, even for SpaceX, which has launched a mission at an average rate of once every three days since the start of the year. We’ve reported on this before, but it’s worth reinforcing that no launch provider, commercial or government, has ever operated at this cadence.

SpaceX has previously had rockets on all four of its active launch pads. But what SpaceX accomplished over a 24-hour period was noteworthy. Engineers inside at least four control centers were actively overseeing spacecraft and rocket operations simultaneously.

The sprawl of SpaceX

On Sunday night at the Starbase facility in South Texas, teams loaded more than 10 million pounds of methane and liquid oxygen propellants into the nearly 400-foot-tall (121-meter) Starship rocket slated to lift off as soon as this month on the third full-scale test flight of SpaceX’s next-generation launcher.

This was likely the final major test before SpaceX launches the third Starship test flight. The countdown rehearsal of the fully stacked rocket ended as planned at T-minus 10 seconds, just before the booster’s Raptor engines were ignited; SpaceX then drained the vehicle of propellant. SpaceX previously test-fired the Super Heavy booster and Starship upper stage separately.

The schedule for the next Starship launch hinges on approval from the Federal Aviation Administration, which is reviewing SpaceX’s actions to correct the malfunctions that occurred on the second Starship test flight in November. Last week, the FAA announced it closed its investigation into the second Starship test flight, which was largely successful in demonstrating significant progress on SpaceX’s privately funded rocket program. But the test flight ended with explosions of the Super Heavy booster and Starship upper stage, prompting an FAA investigation.

On the next Starship flight, SpaceX wants to perform some early-stage testing of the in-space refueling technology it will need for later Starship flights, such as missions to the Moon for NASA.

SpaceX's Super Heavy booster and Starship rocket undergo a countdown rehearsal Sunday night in South Texas.

Enlarge / SpaceX’s Super Heavy booster and Starship rocket undergo a countdown rehearsal Sunday night in South Texas.

At the same time that SpaceX’s team in Texas managed the Starship countdown rehearsal, another group of engineers and technicians on Florida’s Space Coast stepped through a Falcon 9 launch countdown Sunday night. Three NASA astronauts and one Russian cosmonaut strapped into their seats on SpaceX’s Crew Dragon Endeavour spacecraft on top of the Falcon 9 rocket, then waited for liftoff from Launch Complex 39A at NASA’s Kennedy Space Center at 10: 53 pm EST Sunday (03: 53 UTC Monday).

The Falcon 9 launch of NASA’s Crew-8 mission Sunday night was the first of three Falcon 9 launches over the next 20 hours. Next in line was a launch at 5: 05 pm EST (2205 UTC) Monday from Vandenberg Space Force Base in California with 53 small payloads on SpaceX’s 10th Transporter rideshare mission. The customer payloads on this Falcon 9 launch included MethaneSAT, an $88 million satellite funded primarily by philanthropic donations to monitor methane greenhouse gas emissions around the world.

Then, less than two hours later, at 6: 56 pm EST (2356 UTC), a Falcon 9 rocket took off from SpaceX’s most active launch pad at Cape Canaveral Space Force Station in Florida. This mission delivered 23 more Starlink broadband satellites into orbit for SpaceX’s commercial Internet network. At 1 hour and 51 minutes, this was the shortest time separation to date between two SpaceX launches.

All three Falcon 9 launches ended with landings of the rockets’ first-stage boosters.

A view of 53 small satellite payloads before encapsulation into the Falcon 9 rocket's payload fairing, ahead of liftoff on the Transporter 10 rideshare mission.

Enlarge / A view of 53 small satellite payloads before encapsulation into the Falcon 9 rocket’s payload fairing, ahead of liftoff on the Transporter 10 rideshare mission.

While controllers at Starbase, Cape Canaveral, and Vandenberg looked after these three Falcon 9 launches, SpaceX engineers at the company’s headquarters near Los Angeles tracked the performance and progress of the Crew Dragon Endeavour spacecraft on its way to the International Space Station, where it docked early Tuesday. Next week, another SpaceX capsule, Crew Dragon Endurance, will depart the station to bring a different four-person crew back to Earth.

SpaceX, which now has more than 13,000 employees, pulled off a similar rapid-fire launch cadence in mid-February with three Falcon 9 launches in approximately 23 hours, but this time included the additional complexity of operating a Dragon crew capsule en route to the ISS, plus the Starship countdown in Texas. While all this was going on, a handful of ground controllers also monitored the health of the Dragon spacecraft currently docked at the space station.

SpaceX just showed us what every day could be like in spaceflight Read More »

we-drive-mini’s-first-electric-crossover,-the-2025-countryman-se-all4

We drive Mini’s first electric crossover, the 2025 Countryman SE ALL4

better than the JCW —

The Countryman SE goes on sale later in 2024, starting at $45,200.

A blue-grey mini countryman SE

Enlarge / Mini has made a fully electric version of its Countryman compact crossover, replacing the outgoing plug-in hybrid Countryman.

Jonathan Gitlin

Over the last couple of weeks, we’ve brought you test drives of a pair of related small cars, the 2024 BMW X2 M35i and the 2025 Mini JCW Countryman. Today it’s time for the third member of the family destined for US sales, and the one that we think Ars readers will be most interested in—the fully electric Mini Countryman SE ALL4.

This is the third-generation Mini Countryman, replacing the plug-in hybrid version we last tested in 2017. It’s a little larger now, although not by much: at 174.5 inches (4,433 mm) long, 72.6 inches (1,843 mm) wide, and 65.2 inches (1,656 mm) tall, it is still a pretty small car by most standards. It’s also a pretty aero-efficient one; the drag coefficient is just 0.26.

As the ALL4 name might suggest, this is an all-wheel drive electric vehicle, with a combined 313 hp (230 kW) and 365 lb-ft (494 Nm), fed by a 66.5 kWh lithium-ion traction battery. That makes it nearly as peppy off the line as a Ferrari Testarossa, capable of reaching 62 mph (100 km/h) from a standing start in 5.6 seconds. (The Ferrari took 5.2 seconds to reach 60 mph.) Top speed is limited to 112 mph (180 km/h).

  • The Countryman SE ALL4 should have a range of just under 250 miles.

    Jonathan Gitlin

  • It really is still quite small

    Mini

  • Mini has ditched the union flag taillights.

    Jonathan Gitlin

  • The ride is noticeably better than the gasoline version we drove.

    Mini

  • Although it’s big for a Mini, it was the perfect size for small Portuguese villages.

    Mini

Although Mini doesn’t have an official EPA range estimate yet, it thinks the Mini Countryman SE ALL4 should be able to travel about 245 miles (394 km). There’s an onboard AC charger capable of rates up to 22 kW, although you’ll probably only encounter such powerful level 2 chargers in Europe, where they can take advantage of three-phase electricity. DC fast charging tops out at 130 kW, which should take the battery from 10–80 percent state of charge in 30 minutes.

The styling is virtually identical to the JCW Countryman we wrote about a couple of weeks ago. The differences are subtle—a filled-in grille, no quad exhaust pipes (for this is a Mini, not a Dodge), and bronzish-goldish accents here and there. The 20-inch alloy wheels are made from 70 percent recycled aluminum, Mini told us.

The interior uses a different mix of materials than the JCW Countryman, but it has the same layout and the same pluses and minuses. The interior makes heavy use of recycled polyester, which Mini says significantly reduces the carbon emissions of its supply chain and also uses less water than cotton.

There’s the same bright, circular OLED infotainment display with the same user interface that is again hobbled by what feels like an underpowered graphics chip. There are still a smattering of physical controls, and I still think the cubby between the driver and passenger seats could be larger.

On the road, the Mini Countryman SE ALL4 feels noticeably different to drive than the gasoline-powered JCW version. Some of that is down to the steering, which is geared differently to the JCW car and feels slightly less direct. The suspension also contributes to the SE ALL4 feeling different, as it’s better damped against bumps and jolts—no doubt as a result of having to control a heavier car thanks to the battery pack. (Mini has not given us a curb weight for either JCW or SE ALL4, however.)

  • The interior is stylish and tactile.

    Jonathan Gitlin

  • The augmented reality view for navigation is very useful on unfamiliar roads.

    Jonathan Gitlin

  • Spike is rather cute.

    Jonathan Gitlin

  • This cubby is too small to be very useful.

    Mini

  • Recycled aluminum for the alloy wheels helps Mini keep the Countryman SE’s carbon footprint as small as possible.

    Jonathan Gitlin

Perhaps my highlight of the Countryman SE ALL4 was the synthetic driving sounds it makes in the cabin, which are rather over the top. I’m also quite aware many of our readers will dislike this aural exuberance and will be glad to know that it can be turned off.

Mini says the 2025 Countryman SE ALL4 will be available in the US this fall, starting at $45,200.

We drive Mini’s first electric crossover, the 2025 Countryman SE ALL4 Read More »

after-collecting-$22-million,-alphv-ransomware-group-stages-fbi-takedown

After collecting $22 million, AlphV ransomware group stages FBI takedown

A ransom note is plastered across a laptop monitor.

The ransomware group responsible for hamstringing the prescription drug market for two weeks has suddenly gone dark, just days after receiving a $22 million payment and standing accused of scamming an affiliate out of its share of the loot.

The events involve AlphV, a ransomware group also known as BlackCat. Two weeks ago, it took down Change Healthcare, the biggest US health care payment processor, leaving pharmacies, health care providers, and patients scrambling to fill prescriptions for medicines. On Friday, the bitcoin ledger shows, the group received nearly $22 million in cryptocurrency, stoking suspicions the deposit was payment by Change Healthcare in exchange for AlphV decrypting its data and promising to delete it.

Representatives of Optum, the parent company, declined to say if the company has paid AlphV.

Honor among thieves

On Sunday, two days following the payment, a party claiming to be an AlphV affiliate said in an online crime forum that the nearly $22 million payment was tied to the Change Healthcare breach. The party went on to say that AlphV members had cheated the affiliate out of the agreed-upon cut of the payment. In response, the affiliate said it hadn’t deleted the Change Healthcare data it had obtained.

A message left in a crime forum from a party claiming to be an AlphV affiliate. The post claims AlphV scammed the affiliate out of its cut.

Enlarge / A message left in a crime forum from a party claiming to be an AlphV affiliate. The post claims AlphV scammed the affiliate out of its cut.

vxunderground

On Tuesday—four days after the bitcoin payment was made and two days after the affiliate claimed to have been cheated out of its cut—AlphV’s public dark web site started displaying a message saying it had been seized by the FBI as part of an international law enforcement action.

The AlphV extortion site as it appeared on Tuesday.

Enlarge / The AlphV extortion site as it appeared on Tuesday.

The UK’s National Crime Agency, one of the agencies the seizure message said was involved in the takedown, said the agency played no part in any such action. The FBI, meanwhile, declined to comment. The NCA denial, as well as evidence the seizure notice was copied from a different site and pasted into the AlphV one, has led multiple researchers to conclude the ransomware group staged the takedown and took the entire $22 million payment for itself.

“Since people continue to fall for the ALPHV/BlackCat cover up: ALPHV/BlackCat did not get seized,” Fabian Wosar, head of ransomware research at security firm Emsisoft, wrote on social media. “They are exit scamming their affiliates. It is blatantly obvious when you check the source code of the new takedown notice.”

After collecting $22 million, AlphV ransomware group stages FBI takedown Read More »

2024-porsche-911-s/t-review:-threading-the-needle

2024 Porsche 911 S/T review: Threading the needle

yet another 911 review —

The S/T celebrates the 60th anniversary of the 911 and is limited to just 1963 examples.

A porsche 911 S/T

Enlarge / I wouldn’t blame you if you lost track of all the different variations on the Porsche 911. This is the latest, and currently, the most desirable.

Bradley Iger

Although Porsche is in the midst of taking its BEV technology mainstream, the company hasn’t lost sight of the fact that its high-performance reputation was built on the 911.

Over the past few years, the automaker has developed a myriad of different versions of the iconic sports car, resulting in offerings that currently range from plush open-top cruisers to hardcore track monsters, along with special edition models like the off-road-tuned Dakar and heritage-inspired Sport Classic. You might be wondering, then, if there’s really an opportunity for a new performance-focused model to stand out in the 911 lineup.

On the surface, the S/T seems to tread much of the same ground already occupied by the GT3 Touring, an iteration of the track-ready GT3 that ditches the large fixed rear wing for the smaller, aesthetically subtler active rear spoiler found on Carrera models. But as lovely to drive as the GT3 Touring is, it feels like a conceptual afterthought.

Because of its reduced downforce, Porsche has always considered the Touring to be a GT3 intended for the street rather than the track, yet the model’s tuning has otherwise remained unchanged from the standard GT3. This, along with a number of other crucial updates, allows the S/T to stand out from the crowd not just among fast 911s but among sports cars in general.

The canyon roads around Los Angeles are natural hunting territory for the S/T.

Enlarge / The canyon roads around Los Angeles are natural hunting territory for the S/T.

Bradley Iger

The name is a nod to a racing version of the 911 S from the late 1960s: Internally known as the ST, the package included modifications to the chassis, engine, and body to improve performance. But unlike the iconic Carrera RS 2.7 that would debut a few years down the road, the ST lacked the aggressive aerodynamic elements that would later come to define the look of track-tuned 911s.

The core hardware involved is an interesting amalgamation of components from the current GT division lineup. In a purposely old-school approach not unlike the Sport Classic, the S/T pairs the GT3 RS’s naturally aspirated 518 hp (386 kW) 4.0-liter flat-six engine with the GT3’s six-speed manual gearbox—a combination that can’t be had in any other factory-produced 911.

Like the GT3 RS, the S/T’s hood, front fenders, doors, and roof are made from carbon fiber, and thanks to its magnesium wheels, fixed-back carbon bucket seats, and other weight-reducing components that are equipped as standard, it manages to tip the scales at a svelte 3,056 lbs (1,390 kg), making this the lightest 911 of the current generation.

No ducktail for the S/T. But there is plenty of lightweighting.

Enlarge / No ducktail for the S/T. But there is plenty of lightweighting.

Bradley Iger

Adding power and cutting weight are certainly welcome developments for performance enthusiasts, but it’s the raft of subtle, less quantifiable changes that make the S/T such an incredibly compelling sports car. Porsche’s goal was to create the ultimate canyon carver rather than an apex-hunting track machine, and as such, it has tossed the GT3’s rear axle steering system and retuned the suspension dampers for the less-than-perfect tarmac that’s typical of twisty backroads.

To further ratchet up driver engagement, engineers reduced the height of the shift lever by 10 mm, resulting in even shorter, more precise throws. The transmission’s gear ratios were shortened by 8 percent to allow the engine to climb to its searing 9,000 rpm redline more rapidly, resulting in more frequent shifting. There’s a new lightweight clutch and single mass flywheel on board, too.

The latter plays a surprisingly big role in the S/T’s distinctive character, allowing the engine to sweep through the revs with a level of manic urgency that makes the GT3 Touring seem almost lazy by comparison. And thanks to the S/T’s reduced sound deadening compared to the GT3 (which already has significantly less sound deadening than a 911 Carrera), every mechanical process that normally takes place behind the scenes is brought to the forefront. It can equate to noisy steady-state driving at times, but the soundtrack that the S/T delivers when you’re rowing through the gears easily makes up for it.

2024 Porsche 911 S/T review: Threading the needle Read More »

researchers-create-ai-worms-that-can-spread-from-one-system-to-another

Researchers create AI worms that can spread from one system to another

There’s always a downside —

Worms could potentially steal data and deploy malware.

Researchers create AI worms that can spread from one system to another

Jacqui VanLiew; Getty Images

As generative AI systems like OpenAI’s ChatGPT and Google’s Gemini become more advanced, they are increasingly being put to work. Startups and tech companies are building AI agents and ecosystems on top of the systems that can complete boring chores for you: think automatically making calendar bookings and potentially buying products. But as the tools are given more freedom, it also increases the potential ways they can be attacked.

Now, in a demonstration of the risks of connected, autonomous AI ecosystems, a group of researchers has created one of what they claim are the first generative AI worms—which can spread from one system to another, potentially stealing data or deploying malware in the process. “It basically means that now you have the ability to conduct or to perform a new kind of cyberattack that hasn’t been seen before,” says Ben Nassi, a Cornell Tech researcher behind the research.

Nassi, along with fellow researchers Stav Cohen and Ron Bitton, created the worm, dubbed Morris II, as a nod to the original Morris computer worm that caused chaos across the Internet in 1988. In a research paper and website shared exclusively with WIRED, the researchers show how the AI worm can attack a generative AI email assistant to steal data from emails and send spam messages—breaking some security protections in ChatGPT and Gemini in the process.

The research, which was undertaken in test environments and not against a publicly available email assistant, comes as large language models (LLMs) are increasingly becoming multimodal, being able to generate images and video as well as text. While generative AI worms haven’t been spotted in the wild yet, multiple researchers say they are a security risk that startups, developers, and tech companies should be concerned about.

Most generative AI systems work by being fed prompts—text instructions that tell the tools to answer a question or create an image. However, these prompts can also be weaponized against the system. Jailbreaks can make a system disregard its safety rules and spew out toxic or hateful content, while prompt injection attacks can give a chatbot secret instructions. For example, an attacker may hide text on a webpage telling an LLM to act as a scammer and ask for your bank details.

To create the generative AI worm, the researchers turned to a so-called “adversarial self-replicating prompt.” This is a prompt that triggers the generative AI model to output, in its response, another prompt, the researchers say. In short, the AI system is told to produce a set of further instructions in its replies. This is broadly similar to traditional SQL injection and buffer overflow attacks, the researchers say.

To show how the worm can work, the researchers created an email system that could send and receive messages using generative AI, plugging into ChatGPT, Gemini, and open source LLM, LLaVA. They then found two ways to exploit the system—by using a text-based self-replicating prompt and by embedding a self-replicating prompt within an image file.

In one instance, the researchers, acting as attackers, wrote an email including the adversarial text prompt, which “poisons” the database of an email assistant using retrieval-augmented generation (RAG), a way for LLMs to pull in extra data from outside its system. When the email is retrieved by the RAG, in response to a user query, and is sent to GPT-4 or Gemini Pro to create an answer, it “jailbreaks the GenAI service” and ultimately steals data from the emails, Nassi says. “The generated response containing the sensitive user data later infects new hosts when it is used to reply to an email sent to a new client and then stored in the database of the new client,” Nassi says.

In the second method, the researchers say, an image with a malicious prompt embedded makes the email assistant forward the message on to others. “By encoding the self-replicating prompt into the image, any kind of image containing spam, abuse material, or even propaganda can be forwarded further to new clients after the initial email has been sent,” Nassi says.

In a video demonstrating the research, the email system can be seen forwarding a message multiple times. The researchers also say they could extract data from emails. “It can be names, it can be telephone numbers, credit card numbers, SSN, anything that is considered confidential,” Nassi says.

Although the research breaks some of the safety measures of ChatGPT and Gemini, the researchers say the work is a warning about “bad architecture design” within the wider AI ecosystem. Nevertheless, they reported their findings to Google and OpenAI. “They appear to have found a way to exploit prompt-injection type vulnerabilities by relying on user input that hasn’t been checked or filtered,” a spokesperson for OpenAI says, adding that the company is working to make its systems “more resilient” and saying developers should “use methods that ensure they are not working with harmful input.” Google declined to comment on the research. Messages Nassi shared with WIRED show the company’s researchers requested a meeting to talk about the subject.

While the demonstration of the worm takes place in a largely controlled environment, multiple security experts who reviewed the research say that the future risk of generative AI worms is one that developers should take seriously. This particularly applies when AI applications are given permission to take actions on someone’s behalf—such as sending emails or booking appointments—and when they may be linked up to other AI agents to complete these tasks. In other recent research, security researchers from Singapore and China have shown how they could jailbreak 1 million LLM agents in under five minutes.

Sahar Abdelnabi, a researcher at the CISPA Helmholtz Center for Information Security in Germany, who worked on some of the first demonstrations of prompt injections against LLMs in May 2023 and highlighted that worms may be possible, says that when AI models take in data from external sources or the AI agents can work autonomously, there is the chance of worms spreading. “I think the idea of spreading injections is very plausible,” Abdelnabi says. “It all depends on what kind of applications these models are used in.” Abdelnabi says that while this kind of attack is simulated at the moment, it may not be theoretical for long.

In a paper covering their findings, Nassi and the other researchers say they anticipate seeing generative AI worms in the wild in the next two to three years. “GenAI ecosystems are under massive development by many companies in the industry that integrate GenAI capabilities into their cars, smartphones, and operating systems,” the research paper says.

Despite this, there are ways people creating generative AI systems can defend against potential worms, including using traditional security approaches. “With a lot of these issues, this is something that proper secure application design and monitoring could address parts of,” says Adam Swanda, a threat researcher at AI enterprise security firm Robust Intelligence. “You typically don’t want to be trusting LLM output anywhere in your application.”

Swanda also says that keeping humans in the loop—ensuring AI agents aren’t allowed to take actions without approval—is a crucial mitigation that can be put in place. “You don’t want an LLM that is reading your email to be able to turn around and send an email. There should be a boundary there.” For Google and OpenAI, Swanda says that if a prompt is being repeated within its systems thousands of times, that will create a lot of “noise” and may be easy to detect.

Nassi and the research reiterate many of the same approaches to mitigations. Ultimately, Nassi says, people creating AI assistants need to be aware of the risks. “This is something that you need to understand and see whether the development of the ecosystem, of the applications, that you have in your company basically follows one of these approaches,” he says. “Because if they do, this needs to be taken into account.”

This story originally appeared on wired.com.

Researchers create AI worms that can spread from one system to another Read More »

cdc-ditches-5-day-covid-isolation,-argues-covid-is-becoming-flu-like

CDC ditches 5-day COVID isolation, argues COVID is becoming flu-like

New phase —

The agency released a unified “practical” guidance for respiratory viruses.

A view of the Centers for Disease Control and Prevention headquarters in Atlanta.

Enlarge / A view of the Centers for Disease Control and Prevention headquarters in Atlanta.

COVID-19 is becoming more like the flu and, as such, no longer requires its own virus-specific health rules, the Centers for Disease Control and Prevention said Friday alongside the release of a unified “respiratory virus guide.”

In a lengthy background document, the agency laid out its rationale for consolidating COVID-19 guidance into general guidance for respiratory viruses—including influenza, RSV, adenoviruses, rhinoviruses, enteroviruses, and others, though specifically not measles. The agency also noted the guidance does not apply to health care settings and outbreak scenarios.

“COVID-19 remains an important public health threat, but it is no longer the emergency that it once was, and its health impacts increasingly resemble those of other respiratory viral illnesses, including influenza and RSV,” the agency wrote.

The most notable change in the new guidance is the previously reported decision to no longer recommend a minimum five-day isolation period for those infected with the pandemic coronavirus, SARS-CoV-2. Instead, the new isolation guidance is based on symptoms, which matches long-standing isolation guidance for other respiratory viruses, including influenza.

“The updated Respiratory Virus Guidance recommends people with respiratory virus symptoms that are not better explained by another cause stay home and away from others until at least 24 hours after both resolution of fever AND overall symptom are getting better,” the document states. “This recommendation addresses the period of greatest infectiousness and highest viral load for most people, which is typically in the first few days of illness and when symptoms, including fever, are worst.”

“Residual risk”

The CDC acknowledged that the eased isolation guidance will create “residual risk of SARS-CoV-2 transmission,” and that most people are no longer infectious only after 8 to 10 days. As such, the agency urged people to follow additional interventions—including masking, testing, distancing, hygiene, and improving air quality—for five additional days after their isolation period.

“Today’s announcement reflects the progress we have made in protecting against severe illness from COVID-19,” CDC Director Dr. Mandy Cohen said in a statement. “However, we still must use the commonsense solutions we know work to protect ourselves and others from serious illness from respiratory viruses—this includes vaccination, treatment, and staying home when we get sick.”

Overall, the agency argued that a shorter isolation period would be inconsequential. Other countries and states that have similarly abandoned fixed isolation times did not see jumps in COVID-19 emergency department visits or hospitalizations, the CDC pointed out. And most people who have COVID-19 don’t know they have it anyway, making COVID-19-specific guidance moot, the agency argued. In a recent CDC survey, less than half of people said they would test for SARS-CoV-2 if they had a cough or cold symptoms, and less than 10 percent said they would go to a pharmacy or health care provider to get tested. Meanwhile, “The overall sensitivity of COVID-19 antigen tests is relatively low and even lower in individuals with only mild symptoms,” the agency said.

The CDC also raised practical concerns for isolation, including a lack of paid sick leave for many, social isolation, and “societal costs.”

The points are likely to land poorly with critics.

“The CDC is again prioritizing short-term business interests over our health by caving to employer pressure on COVID guidelines. This is a pattern we’ve seen throughout the pandemic,” Lara Jirmanus, Clinical Instructor of Medicine at Harvard Medical School, said in a press release last month after the news first broke of the CDC’s planned isolation update. Jirmanus is a member of the People’s CDC, a group that advocates for more aggressive COVID-19 policies, which put out the press release.

Another member of the group, Sam Friedman, a professor of population health at NYU Grossman School of Medicine, also blasted the CDC’s stance last month. The guidance will “make workplaces and public spaces even more unsafe for everyone, particularly for people who are high-risk for COVID complications,” he said.

COVID and flu

But, the CDC argues that the threat of COVID-19 is fading. Hospitalizations, deaths, prevalence of long COVID, and COVID-19 complications in children (MIS-C) are all down. COVID-19 vaccines are safe and effective at preventing severe disease, death, and to some extent, long COVID—we just need more people to get them. Over 95 percent of adults hospitalized with COVID-19 in the 2023–2024 respiratory season had no record of receiving the seasonal booster dose, the agency noted. Only 22 percent of adults got the latest shot, including only 42 percent of people ages 65 and older. In contrast, 48 percent of adults got the latest flu shot, including 73 percent of people ages 65 and older.

But even with the crummy vaccination rates for COVID-19, a mix of past infection and shots have led to a substantial protection in the overall population. The CDC even went as far as arguing that COVID-19 deaths have fallen to a level that is similar to what’s seen with flu.

“Reported deaths involving COVID-19 are several-fold greater than those reported to involve influenza and RSV. However, influenza and likely RSV are often underreported as causes of death,” the CDC said. In the 2022–2023 respiratory virus season, there were nearly 90,000 reported COVID-19 deaths. For flu, there were 9,559 reported deaths, but the CDC estimates the true number to be between 18,000 and 97,000. In the current season, there have been 32,949 reported COVID-19 deaths to date and 5,854 reported flu deaths, but the agency estimates the real flu deaths are between 17,000 and 50,000.

“Total COVID-19 deaths, accounting for underreporting, are likely to be higher than, but of the same order of magnitude as, total influenza deaths,” the agency concluded.

In all, the CDC was ready to fold SARS-CoV-2 into the gang of common seasonal respiratory viruses, with most cases mild and undiagnosed. “Viruses cause most acute respiratory illnesses, but it is rarely possible to determine the type of virus without testing, and oftentimes testing does not change clinical management,” the agency wrote.

CDC ditches 5-day COVID isolation, argues COVID is becoming flu-like Read More »

report:-boeing-may-reacquire-spirit-at-higher-price-despite-hating-optics

Report: Boeing may reacquire Spirit at higher price despite hating optics

Still up in the air —

Spirit was initially spun out from Boeing Commercial Airplanes in 2005.

Report: Boeing may reacquire Spirit at higher price despite hating optics

Amid safety scandals involving “many loose bolts” and widespread problems with Boeing’s 737 Max 9s, Boeing is apparently considering buying back Spirit AeroSystems, the key supplier behind some of Boeing’s current manufacturing problems, sources told The Wall Street Journal.

Spirit was initially spun out from Boeing Commercial Airplanes in 2005, and Boeing had planned to keep it that way. Last year, Boeing CEO Dave Calhoun sought to dispel rumors that Boeing might reacquire Spirit as federal regulators launched investigations into both companies. But now Calhoun appears to be “softening that stance,” the WSJ reported.

According to the WSJ’s sources, no deal has formed yet, but Spirit has initiated talks with Boeing and “hired bankers to explore strategic options.” Sources also confirmed that Spirit is weighing whether to sell its operations in Ireland, which manufactures parts for Boeing rival Airbus.

Perhaps paving the way for these talks, Spirit replaced its CEO last fall with a former Boeing executive, Patrick Shanahan. In a press release noting that Spirit relies “on Boeing for a significant portion of our revenues,” Spirit touted Shanahan as a “seasoned executive” with 31 years at Boeing, and Shanahan promised to “stabilize” Spirit’s operations.

If Boeing reacquired Spirit, it might help reduce backlash over Boeing outsourcing manufacturing of its planes, but it likely wouldn’t help Boeing escape the ongoing scrutiny. While the WSJ reported that “Spirit parts frequently arrive” at the Boeing factory “with defects,” it was “a snafu at Boeing’s factory” that led Alaska Airlines to ground 65 Boeing aircraft over safety concerns after a mid-aircraft door detached mid-flight, endangering passengers and crew.

Sources later revealed that it was Boeing employees who failed to put bolts back in when they reinstalled a door plug, reportedly causing the malfunction that forced Alaska Airlines to make an emergency landing. As a result, Boeing withdrew from a safety exemption that it had requested “to prematurely allow the 737 Max 7 to enter commercial service.” At that time, US Sen. Tammy Duckworth (D-Ill.) accused Boeing of a “bold-face attempt to put profits over the safety of the flying public.”

Purchasing Spirit would appear to be a last resort for Boeing, the WSJ reported, noting that so far, “Boeing has done everything short of acquiring Spirit in an effort to gain control over the supplier.”

But Reuters confirmed the WSJ’s report with an industry source, so it seems like perhaps Boeing increasingly feels it has no other options left despite working closely with Shanahan for the past few months to keep Spirit’s troubles from impacting Boeing’s bottom line. One industry source told Reuters that in the time since Boeing spun off Spirit, “the optics of buying at a higher price were among the factors that discouraged such a move.”

For Spirit, which attributes nearly two-thirds of its revenues to Boeing, the WSJ reported, being brought back into the Boeing fold could be the only way to survive these turbulent times. Currently valued at about $3.3 billion, Spirit has struggled for months to shore up a commercial agreement with Airbus and notably failed to stabilize after receiving a “$100 million cash infusion from Boeing” last year, the WSJ reported.

But for Boeing, the obvious downside of the purchase would be taking on Spirit’s mess at the same time Boeing is trying to clean up its own image.

Report: Boeing may reacquire Spirit at higher price despite hating optics Read More »

us-prescription-market-hamstrung-for-9-days-(so-far)-by-ransomware-attack

US prescription market hamstrung for 9 days (so far) by ransomware attack

RX CHAOS —

Patients having trouble getting lifesaving meds have the AlphV crime group to thank.

US prescription market hamstrung for 9 days (so far) by ransomware attack

Getty Images

Nine days after a Russian-speaking ransomware syndicate took down the biggest US health care payment processor, pharmacies, health care providers, and patients were still scrambling to fill prescriptions for medicines, many of which are lifesaving.

On Thursday, UnitedHealth Group accused a notorious ransomware gang known both as AlphV and Black Cat of hacking its subsidiary Optum. Optum provides a nationwide network called Change Healthcare, which allows health care providers to manage customer payments and insurance claims. With no easy way for pharmacies to calculate what costs were covered by insurance companies, many had to turn to alternative services or offline methods.

The most serious incident of its kind

Optum first disclosed on February 21 that its services were down as a result of a “cyber security issue.” Its service has been hamstrung ever since. Shortly before this post went live on Ars, Optum said it had restored Change Healthcare services.

“Working with technology and business partners, we have successfully completed testing with vendors and multiple retail pharmacy partners for the impacted transaction types,” an update said. “As a result, we have enabled this service for all customers effective 1 pm CT, Friday, March 1, 2024.”

AlphV is one of many syndicates that operates under a ransomware-as-a-service model, meaning affiliates do the actual hacking of victims and then use the AlphV ransomware and infrastructure to encrypt files and negotiate a ransom. The parties then share the proceeds.

In December, the FBI and its equivalent in partner countries announced they had seized much of the AlphV infrastructure in a move that was intended to disrupt the group. AlphV promptly asserted it had unseized its site, leading to a tug-of-war between law enforcement and the group. The crippling of Change Healthcare is a clear sign that AlphV continues to pose a threat to critical parts of the US infrastructure.

“The cyberattack against Change Healthcare that began on Feb. 21 is the most serious incident of its kind leveled against a US health care organization,” said Rick Pollack, president and CEO of the American Hospital Association. Citing Change Healthcare data, Pollack said that the service processes 15 billion transactions involving eligibility verifications, pharmacy operations, and claims transmittals and payments. “All of these have been disrupted to varying degrees over the past several days and the full impact is still not known.”

Optum estimated that as of Monday, more than 90 percent of roughly 70,000 pharmacies in the US had changed how they processed electronic claims as a result of the outage. The company went on to say that only a small number of patients have been unable to get their prescriptions filled.

The scale and length of the Change Healthcare outage underscore the devastating effects ransomware has on critical infrastructure. Three years ago, members affiliated with a different ransomware group known as Darkside caused a five-day outage of Colonial Pipeline, which delivered roughly 45 percent of the East Coast’s petroleum products, including gasoline, diesel fuel, and jet fuel. The interruption caused fuel shortages that sent airlines, consumers, and filling stations scrambling.

Numerous ransomware groups have also taken down entire hospital networks in outages that in some cases have threatened patient care.

AlphV has been a key contributor to the ransomware menace. The FBI said in December the group had collected more than $300 million in ransoms. One of the better-known victims of AlphV ransomware was Caesars Entertainment and casinos owned by MGM, which brought operations in many Las Vegas casinos to a halt. A group of mostly teenagers is suspected of orchestrating that breach.

US prescription market hamstrung for 9 days (so far) by ransomware attack Read More »

whatsapp-finally-forces-pegasus-spyware-maker-to-share-its-secret-code

WhatsApp finally forces Pegasus spyware maker to share its secret code

In on the secret —

Israeli spyware maker loses fight to only share information on installation.

WhatsApp finally forces Pegasus spyware maker to share its secret code

WhatsApp will soon be granted access to explore the “full functionality” of the NSO Group’s Pegasus spyware—sophisticated malware the Israeli Ministry of Defense has long guarded as a “highly sought” state secret, The Guardian reported.

Since 2019, WhatsApp has pushed for access to the NSO’s spyware code after alleging that Pegasus was used to spy on 1,400 WhatsApp users over a two-week period, gaining unauthorized access to their sensitive data, including encrypted messages. WhatsApp suing the NSO, Ars noted at the time, was “an unprecedented legal action” that took “aim at the unregulated industry that sells sophisticated malware services to governments around the world.”

Initially, the NSO sought to block all discovery in the lawsuit “due to various US and Israeli restrictions,” but that blanket request was denied. Then, last week, the NSO lost another fight to keep WhatsApp away from its secret code.

As the court considered each side’s motions to compel discovery, a US district judge, Phyllis Hamilton, rejected the NSO’s argument that it should only be required to hand over information about Pegasus’ installation layer.

Hamilton sided with WhatsApp, granting the Meta-owned app’s request for “information concerning the full functionality of the relevant spyware,” writing that “information showing the functionality of only the installation layer of the relevant spyware would not allow plaintiffs to understand how the relevant spyware performs the functions of accessing and extracting data.”

WhatsApp has alleged that Pegasus can “intercept communications sent to and from a device, including communications over iMessage, Skype, Telegram, WeChat, Facebook Messenger, WhatsApp, and others” and that it could also be “customized for different purposes, including to intercept communications, capture screenshots, and exfiltrate browser history.”

To prove this, WhatsApp needs access to “all relevant spyware”—specifically “any NSO spyware targeting or directed at WhatsApp servers, or using WhatsApp in any way to access Target Devices”—for “a period of one year before the alleged attack to one year after the alleged attack,” Hamilton concluded.

The NSO has so far not commented on the order, but WhatsApp was pleased with this outcome.

“The recent court ruling is an important milestone in our long running goal of protecting WhatsApp users against unlawful attacks,” WhatsApp’s spokesperson told The Guardian. “Spyware companies and other malicious actors need to understand they can be caught and will not be able to ignore the law.”

But Hamilton did not grant all of WhatsApp’s requests for discovery, sparing the NSO from sharing specific information regarding its server architecture because WhatsApp “would be able to glean the same information from the full functionality of the alleged spyware.”

Perhaps more significantly, the NSO also won’t be compelled to identify its clients. While the NSO does not publicly name the governments that purchase its spyware, reports indicate that Poland, Saudi Arabia, Rwanda, India, Hungary, and the United Arab Emirates have used it to target dissidents, The Guardian reported. In 2021, the US blacklisted the NSO for allegedly spreading “digital tools used for repression.”

In the same order, Hamilton also denied the NSO’s request to compel WhatsApp to share its post-complaint communications with the Citizen Lab, which served as a third-party witness in the case to support WhatsApp’s argument that “Pegasus is misused by NSO’s customers against ‘civil society.’”

It appeared that the NSO sought WhatsApp’s post-complaint communications with Citizen Lab as a way to potentially pressure WhatsApp into dropping Citizen Lab’s statement from the record. Hamilton quoted a court filing from the NSO that curiously noted: “If plaintiffs would agree to withdraw from their case Citizen Lab’s contention that Pegasus was used against members of ‘civil society’ rather than to investigate terrorism and serious crime, there would be much less need for this discovery.”

Ultimately, Hamilton denied the NSO’s request because “the court fails to see the relevance of the requested discovery.”

As discovery in the case proceeds, the court expects to receive expert disclosures from each side on August 30 before the trial, which is expected to start on March 3, 2025.

WhatsApp finally forces Pegasus spyware maker to share its secret code Read More »

huge-funding-round-makes-“figure”-big-tech’s-favorite-humanoid-robot-company

Huge funding round makes “Figure” Big Tech’s favorite humanoid robot company

They’ve got an aluminum CNC machine, and they aren’t afraid to use it —

Investors Microsoft, OpenAI, Nvidia, Jeff Bezos, and Intel value Figure at $2.6B.

The Figure 01 and a few spare parts. Obviously they are big fans of aluminum.

Enlarge / The Figure 01 and a few spare parts. Obviously they are big fans of aluminum.

Figure

Humanoid robotics company Figure AI announced it raised $675 million in a funding round from an all-star cast of Big Tech investors. The company, which aims to commercialize a humanoid robot, now has a $2.6 billion valuation. Participants in the latest funding round include Microsoft, the OpenAI Startup Fund, Nvidia, Jeff Bezos’ Bezos Expeditions, Parkway Venture Capital, Intel Capital, Align Ventures, and ARK Invest. With all these big-name investors, Figure is officially Big Tech’s favorite humanoid robotics company. The manufacturing industry is taking notice, too. In January, Figure even announced a commercial agreement with BMW to have robots work on its production line.

“In conjunction with this investment,” the press release reads, “Figure and OpenAI have entered into a collaboration agreement to develop next generation AI models for humanoid robots, combining OpenAI’s research with Figure’s deep understanding of robotics hardware and software. The collaboration aims to help accelerate Figure’s commercial timeline by enhancing the capabilities of humanoid robots to process and reason from language.”

With all this hype and funding, the robot must be incredible, right? Well, the company is new and only unveiled its first humanoid “prototype,” the “Figure 01,” in October. At that time, the company said it represented about 12 months of work. With veterans from “Boston Dynamics, Tesla, Google DeepMind, and Archer Aviation,” the company has a strong starting point.

  • Ok, it’s time to pick up a box, so get out your oversized hands and grab hold.

    Figure

  • Those extra-big hands seem to be the focus of the robot. They are just incredibly complex and look to be aiming at a 1:1 build of a human hand.

    Figure

  • Just look at everything inside those fingers. It looks like there are tendons of some kind.

    Figure

  • Not impressed with this “pooped your pants” walk cycle, which doesn’t really use the knees or ankles.

    Figure

  • A lot of the hardware appears to be waiting for software to use it, like the screen that serves as the robot’s face. It only seems to run a screen saver.

    Figure

The actual design of the robot appears to be solid aluminum and electrically actuated, aiming for an exact 1:1 match for a human. The website says the goal is a 5-foot 6-inch, 130-lb humanoid that can lift 44 pounds. That’s a very small form-over-function package to try and fit all these robot parts into. For alternative humanoid designs, you’ve got Boston Dynamics’ Atlas, which is more of a hulking beast thanks to the function-over-form design. There’s also the more purpose-built “Digit” from Agility Robotics, which has backward-bending bird legs for warehouse work, allowing it to bend down in front of a shelf without having to worry about the knees colliding with anything.

The best insight into the company’s progress is the official YouTube channel, which shows the Figure 01 robot doing a few tasks. The last video, from a few days ago, showed a robot doing a “fully autonomous” box-moving task at “16.7 percent” of normal human speed. For a bipedal robot, I have to say the walking is not impressive. Figure has a slow, timid shuffle that only lets it wobble forward at a snail’s pace. The walk cycle is almost entirely driven by the hips. The knees are bent the entire time and always out in front of the robot; the ankles barely move. It seems only to be able to walk in a straight line, and turning is a slow stop-and-spin-in-place motion that has the feet peddling in place the entire time. The feet seem to move at a constant up-and-down motion even when the robot isn’t moving forward, almost as if foot planning just runs on a set timer for balance. It can walk, but it walks about as slowly and awkwardly as a robot can. A lot of the hardware seems built for software that isn’t ready yet.

Figure seems more focused on the hands than anything. The 01 has giant oversized hands that are a close match for a human’s, with five fingers, all with three joints each. In January, Figure posted a video of the robot working a Keurig coffee maker. That means flipping up the lid with a fingertip, delicately picking up an easily crushable plastic cup with two fingers, dropping it into the coffee maker, casually pushing the lid down with about three different fingers, and pressing the “go” button with a single finger. It’s impressive to not destroy the coffee maker or the K-cup, but that Keurig is still living a rough life—a few of the robot interactions incidentally lift one side or the other of the coffee maker off the table thanks to way too much force.

  • For some very delicate hand work, here’s the Figure 01 making coffee. They went and sourced a silver Keurig machine so this image only contains two colors, black and silver.

    Figure

  • Time to press the “go” button. Also is that a wrist-mounted lidar puck for vision? Occasionally, flashes of light shoot out of it in the video.

    Figure

  • These hand close-ups are just incredible. I really do think they are tendon-actuated. You can also see all sorts of pads on the inside of the hand.

    Figure

  • I love the ridiculous T-pose it assumes while it waits for coffee.

    Figure

The video says the coffee task was performed via an “end-to-end neural network” using 10 hours of training time. Unlike walking, the hands really feel like they have a human influence when it comes to their movement. When the robot picks up the K-cup via a pinch of its thumb and index finger or goes to push a button, it also closes the other three fingers into a fist. There isn’t a real reason to move the three fingers that aren’t doing anything, but that’s what a human would do, so presumably, it’s in the training data. Closing the lid is interesting because I don’t think you could credit a single finger with the task—it’s just kind of a casual push using whatever fingers connect with the lid. The last clip of the video even shows the Figure 01 correcting a mistake—the K-cup doesn’t sit in the coffee maker correctly, and the robot recognizes this and can poke it around until it falls into place.

A lot of assembly line jobs are done at a station or sitting down, so the focus on hand dexterity makes sense. Boston Dynamics’ Atlas is way more impressive as a walking robot, but that’s also a multi-million dollar research bot that will never see the market. Figure’s goal, according to the press release, is to “bring humanoid robots into commercial operations as soon as possible.” The company openly posts a “master plan” on its website, which reads, “1) Build a feature-complete electromechanical humanoid. 2) Perform human-like manipulation. 3) Integrate humanoids into the labor force.” The robots are coming for our jobs.

Huge funding round makes “Figure” Big Tech’s favorite humanoid robot company Read More »