Breaking
World leaders gather for emergency summit on climate crisis • Tech giants announce major breakthrough in fusion energy • Stocks reach all-time high as global trade recovers • Global News 24 launches premium news experience • Stay updated with real-time headlines •
BACK TO NEWS
Technology2 days ago

Yarbo says it will remove the intentional backdoor from its robot lawn mower

The Verge
The Verge

Verified Publisher

Yarbo says it will remove the intentional backdoor from its robot lawn mower

The company behind the robot lawn mower that ran me over has changed its tune. Yarbo now plans to completely remove the remote backdoor access that could have let bad actors reprogram the robot over the internet. Yarbo customers will be able to decide whether that feature even gets installed in the first place, co-founder […]

Tech News Yarbo says it will remove the intentional backdoor from its robot lawn mower We spoke to Kenneth Kohlmann, Yarbo co-founder.

We spoke to Kenneth Kohlmann, Yarbo co-founder.

The company behind the robot lawn mower that ran me over has changed its tune. Yarbo now plans to completely remove the remote backdoor access that could have let bad actors reprogram the robot over the internet. Yarbo customers will be able to decide whether that feature even gets installed in the first place, co-founder Kenneth Kohlmann pledges to The Verge .

Yarbo had already promised on Friday that it would tackle many security issues head-on, closing the holes that let security researcher Andreas Makris easily hijack any of the bladed robots from the other side of the globe, while also exposing email addresses and GPS locations. But when it came to the most concerning vulnerability, Yarbo stopped short at the time. The company said it would keep a remote backdoor open so “authorized internal company personnel” can help remotely troubleshoot devices — only now with more protections around it.

Shouldn’t Yarbo’s customers get to decide whether their robots have a persistent backdoor at all ? When we asked last week, the company initially suggested the answer was no. “Completely removing remote diagnostic capability would reduce our ability to help customers resolve safety, connectivity, and service issues quickly, especially in cases where physical inspection is not practical,” spokepeople Showan Hou and Maggie Zhou told us on Saturday .

The company suggested it was still considering solutions and might let users opt out.

But by Monday, when Kohlmann called me from the airport, the company had decided to go a step further. The company’s making it an opt-in feature that you can install if and only if you want remote help. “In the future there should be no remote backdoor unless the user decides to opt-in,” he tells The Verge .

Above: my original video about the Yarbo robot lawn mower.

Kohlmann warns it’ll take some time to remove the tunnel, and the required files to install a new version may still technically be loaded on each robot’s internal storage. “It would most likely be a setup script that sits on the machine and doesn’t do anything unless the user triggers it,” he says. “If the user triggers it, then it installs a temporary one-time tunnel.” You’d probably try uploading your log file to Yarbo tech support before going that far, he suggests. If that’s not enough to diagnose the problem, you could optionally install the remote access feature as well.

It may be difficult to tell if Yarbo keeps its promise to remove the remote access tunnel by default, because it’s already locking down its robots (as it should!) following our story. Kohlmann says every device should soon have a unique root password, one that Yarbo won’t provide to end users; firmware updates have already rolled out to the first 1,000 machines and are coming to additional waves of robots.

But Kohlmann says the company is now in touch with Makris, and it’s possible the security researcher will be able to validate the changes.

Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.

Sean Hollister News Tech Most Popular Most Popular Logitech’s tiny folding mouse improves upon the laptop trackpad Forza Horizon 6 has been leaked and cracked a week before its release Writers are fleeing the Substack Tax Samsung’s flagship laptop is a MacBook Pro clone gone horribly wrong Windows 11 is getting a macOS-like speed boost The Verge Daily A free daily digest of the news that matters most.

Email (required) Sign Up By submitting your email, you agree to our Terms and Privacy Notice .

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Advertiser Content From This is the title for the native ad

Read original story at The Verge

Continue reading this article on the publisher's website.

Visit Website

More from The Verge

Microsoft’s Edge Copilot update uses AI to pull information from across your tabs
Technology
The Verge
The Vergeabout 4 hours ago1 min read

Microsoft’s Edge Copilot update uses AI to pull information from across your tabs

Microsoft Edge is adding a new feature that will allow its Copilot AI chatbot to gather information from all of your open tabs. When you start a conversation with Copilot, you can ask the chatbot questions about what's in your tabs, compare the products you're looking at, summarize your open articles, and more. In its […]

Trump administration defends right to ban content moderation experts from US
Technology
The Verge
The Vergeabout 5 hours ago1 min read

Trump administration defends right to ban content moderation experts from US

The Trump administration is fighting for the right to keep some social media moderation advocates out of the US. On Wednesday, US District Court Judge James Boasberg heard arguments in a lawsuit between the nonprofit Coalition for Independent Technology Research (CITR) and Secretary of State Marco Rubio and other Trump administration officials. The suit concerns […]

YouTube is courting creators — and sponsors — with streaming shows
Technology
The Verge
The Vergeabout 5 hours ago1 min read

YouTube is courting creators — and sponsors — with streaming shows

In the ongoing fight for content and talent, YouTube is pitching itself as the connector between the creators and advertisers - and marketing its creators not just as the future of social media, but also of advertising, TV, streaming, and entertainment more broadly. At the company's annual advertiser event in New York on Wednesday, YouTube […]