Connect with us

Tech

I’m a Smart-Home Addict, and These Are My Favorite Smart Displays

Published

on

I’m a Smart-Home Addict, and These Are My Favorite Smart Displays


Comparing Our Favorite Smart Displays

More Smart Displays We Like

Echo Hub for $180: The Echo Hub isn’t exactly a smart display. It lacks powerful speaker capabilities and doesn’t have a camera for calls or Amazon’s Drop-In video call feature. Instead, it focuses entirely on being a smart home dashboard with built-in Alexa, plus features like widgets and the photo frame. I think it takes the best, most easily used features of a smart display and cuts out the rest. But if you want a good speaker, don’t choose this one.

Echo Show 5 (3rd Gen, 2023) for $90: The smaller and cheaper third-gen Echo Show 5 has a 5.5-inch screen that works best on a desk or a bedside table. We think it’s a bit too small for the kitchen or living room, but that depends on how you plan to use it.

Echo Show 15 for $300: This is the largest of them all, with a 15.6-inch display, and it has customizable widgets so you can have smart-home device controls and calendar reminders available whenever. It’s made to be mounted on your wall like a TV (a stand is sold separately), and the Show 15 pairs with a Fire TV remote (you can use the app) to use the streaming features. With the new Alexa+ I’ve found myself liking it a lot more, and it’s much less distracting than the rotating slideshows you get on smaller Echo Shows. It’s a splurge, though, and I still wish the streaming capabilities were better.

Google Nest Hub for $100: Google’s second-gen Nest Hub is a great option if you don’t need a camera and don’t mind a smaller 7-inch screen. It has a wake-up alarm that emulates the rising sun for gentler mornings, though it’s not bright enough to qualify as a sunrise alarm clock. It also has sleep-tracking tech to track your sleep quality, though the quality of the results isn’t great. It also supports gestures—like playing or pausing a video with a hand movement—by using unique radar tech.

Google Pixel Tablet for $499: This tablet doubles as a smart speaker when placed on its speaker dock. It works well, but it’s not currently slated to get Google’s new assistant, Gemini for Home. If that changes, we’ll go back to recommending it. But we’re not sure it will: availability has been limited for the speaker base, and could point to this device being discontinued altogether.

Smart Displays to Skip

We don’t like every smart display. Here are the ones we’re skipping after trying them out.

Echo Show 10 (3rd Gen, 2021) for $250: This smart display is situated on top of a large cylindrical speaker, which makes it sound great. The screen physically swivels to follow you around the room as you use it, keeping you in frame while you video chat or keeping your streamed workout video in your line of sight as you move about. Because the screen moves around so much, you may have trouble positioning it in tighter spaces—especially in corners. It’s a unique model, and is still out of stock like it was this summer. I suspect the upcoming new Echo Show 11 ($220) might replace it, since it has a similar design (but leaves out the movement gimmick).

Third-Party Google Displays: Google is no longer updating software for some of the third-party smart displays we used to recommend in this guide. If you have one, it will still work, but some features will likely suffer or disappear entirely as time passes. This seems to be the fate of most third-party Google smart displays, which is why we don’t recommend them anymore. Google did say they’ll be working with partners to bring Gemini for Home to third-party devices, so we’ll see how that pans out.

What About Alexa+ and the New Echo Shows?

Amazon has been randomly rolling out its new version of Alexa, named Alexa+, in early access since the spring. This second generation of the Alexa voice assistant is more conversational, able to execute complex tasks and learn new information, and can be much more personalized. That’ll be due to its being powered by generative AI. Check out our hands-on with early access Alexa+ for more more about our experience.

Unlike the current Alexa, once it’s fully available, it’ll cost $20 a month or be free if you have an Amazon Prime membership. This is a big jump from the free assistant, but you can keep the current Alexa for free if you don’t wish for another subscription or have an Amazon Prime membership. Right now, it’s also only available in early access for Echo Show devices. You can sign up here for the wait list.

Alexa+ will be immediately available on its newest devices coming this fall, however. There will be two new smart displays, the Echo Show 8 (4th Gen) and Echo Show 11, and two new smart speakers, the Echo Dot Max and Echo Studio (2nd Gen). We’re curious how the new models will compare to our current favorites, and we will update this guide once we test them.

It’s also important to note that Alexa+ has forced a privacy change for all Echo devices. Echo devices used to be able to process voice recordings locally on your device, but the “Do Not Send Voice Recordings” privacy feature was killed in March. Now all voice recordings will be sent to Amazon to be processed in order to make Alexa+ function, but even if you don’t end up using Alexa+, the feature is gone.

What About Gemini for Home and Google’s Smart Displays?

Amazon isn’t the only one rolling out a new version of its assistant. Gemini for Home is Google’s similarly AI-powered smart assistant that will replace Google Assistant in just about all of its available speakers. Unlike Amazon’s new assistant, Gemini for Home will be free, but Google is changing its Nest Aware subscription to become a subscription that’s both for video storage and for more powerful assistant features.

Google is also rolling out a new speaker in the spring, but no new smart display is slated yet. The new assistant will come to all of Google’s existing lineup except for the Google Pixel Tablet, which we no longer recommend since it’s not currently planned to get support with the new assistant. Google did say they plan to work with third-party partners to bring Gemini for Home to more devices, so we might see new third-party displays that we can recommend again. We’ll update this guide as we learn more, but for now, Google’s Nest Hub Max and Nest Hub are the best smart displays to purchase if you want access to Google’s new assistant.

FAQs

Do You Need a Smart Display?

Smart displays are helpful, acting as hubs for your smart home devices, walking you through recipes while you chop away in the kitchen, and in some cases allowing you to video chat hands-free too. But we’re not sure how long they’ll be worth it, or even exist, in their current form. Companies have been experimenting and doing away with smart displays again and again; Meta discontinued its Portal devices, Google might be discontinuing the Pixel Tablet we favored, and Apple still has yet to even make a smart display.

Amazon has continued to make new smart displays, even after losing $10 billion in 2022 thanks to failures around the Alexa voice assistant. The Alexa team was reportedly hit hard by layoffs in 2022 and 2023, but new smart displays continued to come out since then and more are slated to come out later this fall: the Echo Show 8 (4th Gen) and Echo Show 11.

The future of these smart home devices isn’t clear right now, but if you’re going to get one, we suggest sticking with devices directly from the brand whose voice assistant you prefer. Otherwise, consider one of our favorite tablets instead.

Does Apple Have a Smart Display?

So far, Apple has yet to launch its own dedicated smart display. Apple iPhones have a StandBy Mode included in iOS that activates when an iPhone is on its side and charging, using stands like this one from Twelve South. I had hoped this feature would feel similar to a smart display, but StandBy Mode is limited to customizable clock faces, showing your photos, and having your texts pop up in large text that fills the screen. It doesn’t scratch the itch of all the features you get in a smart display and instead feels like a fancy alarm clock.

What About Digital Calendars?

There’s a growing market of digital calendars that look a bit like smart displays, but instead of being able to respond to voice commands and stream a video call, these digital screens are designed to have one shared calendar for the entire family to see and view. Skylight, a maker of one of our favorite digital photo frames, makes the Skylight Calendar (starting at $170) that comes in 10 inches, 15 inches, and 27 inches, while I tested the Hearth Display ($699) that comes exclusively in a 27-inch size. Cozyla also makes the Cozyla Calendar+ that starts at 15 inches but goes all the way up to a 36-inch screen.

There are some differences in these calendars, but you’ll find a similar roadblock to them: memberships. Hearth Display encourages using the display to create routines with your family, specifically kids, though you’ll want a kid older than my 2-year-old to use it properly (though the Hearth does have icons designed for kids who can’t read yet), and to sign up for the Family Membership. The Skylight touts a photo screensaver and meal planning tools if you sign up for the monthly Plus Plan.

You could find these devices are for you, but it’s either another device for one parent to manage or something you’ll have to teach your entire family to make into a habit to really get the most out of. You’re likely better off just teaching everyone in your family to share their Google Calendar.

Power up with unlimited access to WIRED. Get best-in-class reporting and exclusive subscriber content that’s too important to ignore. Subscribe Today.



Source link

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Tech

Pebble Is Making a $75 Smart Ring

Published

on

Pebble Is Making a  Smart Ring


There’s no way to recharge the ring. Migicovsky says he didn’t want yet another gadget to charge every day, so instead, the Pebble Index has non-rechargeable silver oxide hearing aid batteries designed to last 2 years with average use. Once the device’s battery is nearly dead, users will receive a notification in the app, and the idea is you’ll buy a new Pebble Index—an idea that’s easier to get behind knowing the ring costs just $75, though the price will jump to $99 after the first batch. (You’ll also be able to send your old Index to the company for recycling.)

When your audio is sent to your phone, an open source speech-to-text AI model processes it locally to convert your voice notes to text. Then, an on-device large language model will categorize the audio, deciding whether it’s a reminder, a timer, or a general note. A feed shows all your memory logs, and you scroll through it to find and listen to each clip. None of this data is ever sent to the cloud; it all stays on your phone. “These are your innermost thoughts,” Migicovsky says. “You don’t want to send them anywhere.”

By default, all of your musings with the ring are handled by the Pebble app. So if you had it set a reminder, you’ll get one from the Pebble app. However, you can customize the destination if you prefer to use your own service. If you use the Notion app for notes and tasks, for example, you can set it up so that your reminders and thoughts will be sent there.

Broad Strokes

Wear the Index on your index finger.

Courtesy of Pebble

The open source nature of the Pebble app means there’s no limit to customization. You press and hold the button to log a note, but you can have a single press trigger an action. Migicovsky says he set his to play or pause music, and a double-press switches tracks. But you can set it to take a photo remotely or activate a smart home routine. There will be an actions category in the Pebble app store where folks can publish their custom actions.



Source link

Continue Reading

Tech

Why bug bounty schemes have not led to secure software | Computer Weekly

Published

on

Why bug bounty schemes have not led to secure software | Computer Weekly


Governments should make software companies liable for developing insecure computer code. So says Katie Moussouris, the white hat hacker and security expert who first persuaded Microsoft and the Pentagon to offer financial rewards to security researchers who found and reported serious security vulnerabilities.

Bug bounty schemes have since proliferated and have now become the norm for software companies, with some, such as Apple, offering awards of $2m or more to those who find critical security vulnerabilities.

Moussouris likens security vulnerability research to working for Uber, only with lower pay and less job security. The catch is that people only get paid if they are the first to find and report a vulnerability. Those who put in the work but get results second or third get nothing.

“Intrinsically, it is exploitative of the labour market. You are asking them to do speculative labour, and you are getting something quite valuable out of them,” she says.

Some white hat hackers, motivated by helping people fix security problems, have managed to make a living by specialising in finding medium-risk vulnerabilities that may not pay as well as the high-risk bugs, but are easier to find.

But most security researchers struggle to make a living as bug bounty hunters.

“Very few researchers are capable of finding those elite-level vulnerabilities, and very few of the ones that are capable think it is worth their while to chase a bug bounty. They would rather have a nice contract or a full-time role,” she says.

Ethical hacking comes with legal risks

Its not just the lack of a steady income. Security researchers also face legal risks from anti-hacking laws, such as the UK’s Computer Misuse Act and the US’s draconian Computer Fraud and Abuse Act.

When Moussouris joined Microsoft in 2007, she persuaded the company to announce that it would not prosecute bounty hunters if they found online vulnerabilities in Microsoft products and reported them responsibly. Other software companies have since followed suit.

The UK government has now recognised the problem and promised to introduce a statutory defence for cyber security researchers who spot and share vulnerabilities to protect them from prosecution.

Another issue is that many software companies insist on security researchers signing a non-disclosure agreement (NDA) before paying them for their vulnerability disclosures.

This flies against the best practices for security disclosures, which Moussouris has championed through the International Standards Organisation (ISO).

When software companies pay the first person to discover a vulnerability a bounty in return for signing an NDA, that creates an incentive for those who find the same vulnerability to publicly disclose it, increasing the risk that a bad actor will exploit it for criminal purposes.

Worse, some companies use NDAs to keep vulnerabilities hidden but don’t take steps to fix them, says Moussouris, whose company, Luta Security, manages and advises on bug bounty and vulnerability disclosure programmes.

“We often see a big pile of unfixed bugs,” she says. “And some of these programmes are well funded by publicly traded companies that have plenty of cyber security employees, application security engineers and funding.”

Some companies appear to regard bug bounties as a replacement for secure coding and proper investment in software testing.

“We are using bug bounties as a stop-gap, as a way to potentially control the public disclosure of bugs, and we are not using them to identify symptoms that can diagnose our deeper lack of security controls,” she adds.

Ultimately, Moussouris says, governments will have to step in and change laws to make software companies liable for errors in their software, in much the same way car manufacturers are responsible for safety flaws in their vehicles.

“All governments have pretty much held off on holding software companies responsible and legally liable, because they wanted to encourage the growth of their industry,” she says. “But that has to change at a certain point, like automobiles were not highly regulated, and then seatbelts were required by law.”

AI could lead to less secure code

The rise of artificial intelligence (AI) could make white hat hackers redundant altogether, but perhaps not in a way that leads to better software security.

All of the major bug bounty platforms in the US are using AI to help with the triage of vulnerabilities and to augment penetration testing.

An AI-powered penetration testing platform, XBow, recently topped the bug bounty leaderboard by using AI to focus on relatively easy-to-find vulnerabilities and testing likely candidates in a systematic way to harvest security bugs.

“Once we create the tools to train AI to make it appear to be as good, or better in a lot of cases, than humans, you are pulling the rug out of the market. And then where are we going to get the next bug bounty expert?” she asks.

The current generation of experts with the skills to spot when AI systems are missing something important is in danger of disappearing.

“Bug bounty platforms are moving towards an automated, driverless version of bug bounties, where AI agents are going to take the place of human bug hunters,” she says.

Unfortunately, it’s far easier for AI to find software bugs than it is to use AI to fix them. And companies are not investing as much as they should in using AI to mitigate security risks.

“We have to figure out how to change that equation very quickly. It is easier to find and report a bug than it is for AI to write and test a patch,” she says.

Bug bounties have failed

Moussouris, a passionate and enthusiastic advocate of bug bounty schemes, is the first to acknowledge that bug bounty schemes have, in one sense, failed.

Some things have improved. Software developers have shifted to better programming languages and frameworks that make it harder to introduce particular classes of vulnerability, such as cross-site scripting errors.

But there is, she suggests, too much security theatre. Companies still address faults because they are visible, but hold off fixing things that the public can’t see, or use non-disclosure agreements to buy silence from researchers to keep vulnerabilities from the public.

Moussouris believes that AI will ultimately take over from human bug researchers, but says the loss of expertise will damage security.

The world is on the verge of another industrial revolution, but it will be bigger and faster than the last industrial revolution. In the 19th century, people left agriculture to work long hours in factories, often in dangerous conditions for poor wages.

As AI takes over more tasks currently carried out by people, unemployment will rise, incomes will fall and economies risk stagnation, Moussouris predicts.

The only answer, she believes, is for governments to tax AI companies and use the proceeds to provide the population with a universal basic income (UBI). “I think it has to, or literally there will be no way for capitalism to survive,” she says. “The good news is that human engineering ingenuity is still intact for now. I still believe in our ability to hack our way out of this problem.”

Growing tensions between governments and bug bounty hunters

The work of bug bounty hunters has also been impacted by moves to require software technology companies to report vulnerabilities to governments before they fix them.

It began with China in 2021, which required tech companies to disclose new vulnerabilities within 48 hours of discovery.

“It was very clear that they were going to evaluate whether or not they were going to use vulnerabilities for offensive purposes,” says Moussouris.

In 2020, the European Union (EU) introduced the Cyber Resilience Act (CRA), which introduced similar disclosure obligations, ostensibly to allow European government to prepare their cyber defences.

Moussouris is a co-author of the ISO standard on vulnerability disclosure. One of its principles is to limit the knowledge of security bugs to the smallest number of people before they are fixed.

The EU argues that its approach will be safe because it is not asking for a deep technical explanation of the vulnerabilities, nor is it asking for proof-of-concept code to show how vulnerabilities can be exploited.

But that misses the point, says Moussouris. Widening the pool of people with access to information about vulnerabilities will make leaks more likely and raises the risk that criminal hackers or hostile nation-states will exploit them for crime or espionage.

Risk from hostile nations

Moussouris does not doubt that hostile nations will exploit the weakest links in government bug notification schemes to learn new security exploits. If they are already using those vulnerabilities for offensive hacking, they will be able to cover their tracks.

“I anticipate there will be an upheaval in the threat intelligence landscape because our adversaries absolutely know this law is going to take effect. They are certainly positioning themselves to learn about these things through the leakiest party that gets notified,” she says.

“And they will either start targeting that particular software, if they weren’t already, or start pulling back their operations or hiding their tracks if they were the ones using it. It’s counterproductive,” she adds.

Moussouris is concerned that the US will likely follow the EU by introducing its own bug reporting scheme. “I am just holding my breath, anticipating that the US is going to follow, but I have been warning them against it.”

The UK’s equities programme

In the UK, GCHQ regulates government use of security vulnerabilities for spying through a process known as the equities scheme.

That involves security experts weighing up whether the UK would place its own critical systems at risk if it failed to notify software suppliers of potential exploits against the potential value of the exploit for gathering intelligence.

The process has a veneer of rationality, but it falls down because, in practice, government experts can have no idea how widespread vulnerabilities are in the critical national infrastructure. Even large suppliers like Microsoft have trouble tracking where their own products are used.

“When I was working at Microsoft, it was very clear that while Microsoft had a lot of visibility into what was deployed in the world, there were tonnes of things out there that they wouldn’t know about until they were exploited,” she says.

“The fact that Microsoft, with all its telemetry ability to know where its customers are, struggled means there is absolutely no way to gauge in a reliable way how vulnerable we are,” she adds.

Kate Moussouris spoke to Computer Weekly at the SANS CyberThreat Summit.



Source link

Continue Reading

Tech

Alcatel-Lucent, Nokia team to deliver end-to-end enterprise network services | Computer Weekly

Published

on

Alcatel-Lucent, Nokia team to deliver end-to-end enterprise network services | Computer Weekly


Looking to help modernise and future-proof campus networks across a range of use cases and industries, Alcatel-Lucent Enterprise (ALE) and Nokia have strengthened their strategic partnership to deliver an end-to-end portfolio of network services designed to support the digital transformation of critical industries such as transportation, smart cities, energy and utilities, healthcare, and hospitality.

The joint networking services have been deployed by Ikos Resorts in Greece, Pantai Jerudong Hospital in Brunei and Wembley Park in the UK in deployments designed to help establish campus-wide fibre-based LAN networks capable of delivering multi-gigabit data speeds to customers.

Nokia and ALE say the wins mark a significant milestone in the five-year partnership, and add to a long list of successful deployments at some of the world’s most demanding projects, such as Grand Paris Express, Montreal Railways and Okada Manila Resort. 

By integrating their respective networking portfolios, the two companies say that they are “uniquely positioned” to meet the evolving demands of complex environments such as hospitality segments where resorts like Ikos are using their combined offering to connect hundreds of bedrooms across their luxury all-inclusive sites. With Nokia and ALE, Ikos was able to run its guest services, CCTV, voice, Wi-Fi and building safety sensors through a single, high-availability network architecture.

The fibre infrastructure also helped to save space and reduce the number of network layers. Boasting a legacy in delivering optical fibre services and being a trusted integrator in enterprise communications, Nokia and ALE have deployed their joint offering into more than 100 enterprises globally.

At the heart of the infrastructures is Nokia’s Optical LAN, which is designed to provide enterprises and campuses with a high-capacity fibre-based network capable of supporting the growing bandwidth needs for all in-campus devices and applications.

The optical LAN includes network performance with 10 gigabit speeds; “significantly” reduced power consumption, making operations more sustainable and cost-effective; and a light infrastructure in which the network can be simplified with minimal hardware requirements, reducing complexity and enhancing reliability. It is also attributed with lower total cost of ownership through efficient design and reduced maintenance, maximising return on investment.

Integrated into ALE’s network offering for enterprise in-building and campus connectivity, the technology is said to offer significant advantages, including lower energy consumption and total cost of ownership. ALE’s LAN and Wi-Fi also see use in providing an automated service that is claimed to be able to onboard devices efficiently while securing the network thanks to asset discovery and classification, virtual segmentation and continuous monitoring. Features include Layer 2 services, HPOE and optional redundant uplinks. 

“By combining ALE’s agile enterprise networking solutions with Nokia’s carrier-grade infrastructure, we offer a comprehensive portfolio that addresses the unique needs of critical industries,” said Sandrine El Khodry, Alcatel-Lucent Enterprise’s executive vice-president of global sales and marketing. “Our partnership is built on trust, innovation and a shared commitment to customer success.”

Matthieu Bourguignon, senior vice-president and head of Europe at Nokia, added: “Our collaboration with Alcatel-Lucent Enterprise allows us to deliver end-to-end, mission-critical solutions that go beyond traditional boundaries. We are proud of the joint successes we’ve achieved and look forward to enabling even more transformative projects together.”



Source link

Continue Reading

Trending