An Alexa Holdout Wants to Know Who’s Listening
nytimes.com
nytimes.com
Unfortunately, Alexa, Google Home/Assistant, Cortana, and Siri each fit none of those requirements.
I hear Mozilla is working on a speech recognition library. That might be workable.
It's crazy to me how much trust some people have in these systems. People on the whole seem to have totally given up on the idea of digital privacy, and I find that very concerning.
It's a simple but scary formula that doesn't make me optimistic for the future.
1. Fight DRM. DRM is a pipe-dream enforced by law (DMCA Section 1201
2. Promote Free Software. Proprietary software does not deserve our data.
But if we embrace surveillance, we can give that power to everyone. It's much harder to do selective enforcement when the same strategies can be turned on the prosecutor.
The tide may be far away, but it's rushing in and you can't stop it. We must embrace the water.
No.
Just because it seems inevitable does not mean I must embrace it. I refuse to embrace it.
While the things that are used to perform secret surveillance improve, the things that are used to uncover secret surveillance also improve.
I am not going to willingly give up my privacy.
Just like how "voting" gave everyone useful legislative influence? A society where everyone reports on each other is the canonical model for dystopia. Tom Scott's "Oversight"[1] is warning, not a recommendation.
> the same strategies can be turned on the prosecutor.
Having evidence about a prosecutor's misdeeds doesn't mean you have the power to enforce anything. We already have police walking away from from video evidence of murder without charges. That will change with a lot more active political involvement. More surveillance wouldn't help.
Or: Russian/Chinese Communism.
At some point we will have to embrace full loss of all rights. Today, only the rich and powerful can literally get away with murder...OK, that's stupid and over-dramatic, but only a little more absurd than what you said.
Living in a panopticon would just make society into more of a jail than it already is. That's not something we should embrace, even if it's difficult to fight against.
I don’t use any assistant apps. I can’t possibly imagine how my life would be better if I did.
Boycotts only work if a significant group is boycotting.
Oh, the dystopia.
And the power switch on the power strip it's attached to if, for some reason, I decide to suspect that the hard switch on the device is a lie.
The same reason why the fact that I'm worried enough sometimes (e.g., major lightning storms) to unplug various electronics does not mean I choose not to own such electronics in the first place: sometimes isn't all the time, and both the costs of potential vulnerability and the benefit of features (and thus the balance between those two things) can shift with context.
Though, in reality, I'm never actually that worried about my Google Home, I just recognize that this there are adequate existing hardware-based solutions that, should I be concerned at some time—which I can imagine being, though I haven't been—an adequate mitigation exists that doesn't involve not possessing the device.
With a closed-source platform, I can't have that.
I have a cell-phone in my pocket, and I am concerned about the privacy implications. Android is free software, but the driver blobs are not. I do hate that I am compromising for that. Hopefully, there will be more affordable options like the librem phone in the near future.
More realistically and already in the wild: ad fingerprinting.
https://arstechnica.com/information-technology/2017/05/there...
To me it's like someone with a camera attached to their shoe to look up ladies skirts. It's creepy and should be illegal. (Of course, they put in under the label: it's publicly available information... but anyone with privacy concerns will realise that it's not true)
Whenever you have a 'smart' device, there'll always be someone banging away looking for holes in it, especially with shodan.io.
To me, it seems to be the biggest perpetrator in enabling privacy loss.
Edit: typo.
It's not something that I am OK with. It's a compromise.
I am excited for the librem phone[0], but I can't afford something like that at the moment.
So nevermind privacy, the stupid thing needs connectivity all the time. Might as well go with DragonDictate.
Good for people who know how to set that up.
Particularly annoying are those devices that should be able to function without phoning home via an internet connection:
Security camera? Shouldn't need to phone home. Camera should turn on and stream directly to my display device. There's no need to connect to the mothership.
Thermostat? Shouldn't need to phone home. Device should let me control the temperature of my home and respond when I command it remotely. No need to connect to the mothership.
Media player? Shouldn't need to phone home. I have a library of files I'd like to play and don't care for any online services. No need to connect to the mothership.
I used to have a rule: If I don't have root on the device it goes on the guest network (no internal network access, only Internet). I still have that rule, but it's time to up the rule to "no internal or external network access without root".
I wrote this blog about the “groundhog day” comments back in September.
https://h4labs.wordpress.com/2017/09/27/groundhog-day-amazon...
I believe the most straightforward way to normalize something you believe is wrong is to simply give up and stop calling it out as wrong.
That said, if people think my viewpoint does not add to the conversation, I accept downvotes with grace.
Similar thing happen to cellphones: in the 80s, if you complained that you didn't like that they allowed the provider to track your position, you could just be told not to get one. Nowadays, that decision is not nearly as easy, since many jobs expect you to be reachable at all times (e.g. those with "dynamic" working hours).
A person building a DIY for personal use is fine. A company pushing a device to every home they can get it into can't be that easily ignored.
So no, you aren't "handing it over". You are being compensated in one fashion or another. Maybe that's not a good enough trade for you, and that's totally fine, but claiming there is no exchange of value is just nonsense.
> In the case of your Safeway card, you are exchanging your data for discounts,...
Does anyone not lie on those forms? Last time I checked, 234-567-8901 worked at Safeway, and someone else created it. Poisoning surveillance companies' databases costs you nothing, and hits them where it hurts.
I don't care if I go to a friend's house and he or she has an Alexa or Home or what-have-you. Their house, their privacy, their rules. But we're keeping them out of ours.
(Yes, both of us have disabled Siri and the utility of a mobile phone existing and being indoors with us is higher than the seemingly unlikely trade-off of Apple listening all of the time. "Unlikely" because that's not their business model, so far as I can tell, while All Data Collection Everywhere Always does seem to be the case for Google and Amazon.)
That's not the problem; it doesn't matter if your particular device is listening at any particular time. Using an always-on microphone normalizes the expectation that audio in the home might be sent to a 3rd party's remote server. This is important because Kyllo v United States created[1] a bright line test for when a technology is a "search".
Normalizing audio eavesdropping technology in previously private areas will eventually mean use of that technology is not a search, and thus the police/etc can use their own device with similar technology without a warrant to see "details of a private home that would previously have been unknowable without physical intrusion"[2].
For example, the CIA developed and deployed a program to use the built-in microphone on Samsung "smart" TVs to spy on targets, even when it looks like it's off: https://www.theverge.com/2017/3/7/14841556/wikileaks-cia-hac...
It's already happened (accidentally, in this case): http://money.cnn.com/2017/10/11/technology/google-home-mini-...
And it will continue to happen, because "prevent this from happening at all cost" isn't a development mandate for the device, and won't be, because they would prefer to capture everything. Google famously captured wifi network and street view data after they were specifically instructed not to by the court -- why would they fail to avail themselves of information that's right there in this case?
Voice as a user interface is a real goal. Let’s hope Amazon vs Google increases functionality.
“Alexa, open the garage door, turn on the lights, and set the oven to 350”
What is insane about that? It seems like a great business idea, even if you don’t personally like it
It’s better to think of it as a new UI that’s always on but without a physical device you need to touch.
Also keep in mind it's not a 'conversation' interface... it's query/answer. It also doesn't allow me to do multiple things at once, so if I were to inspect my fridge and order a bunch at once it'd go like this:
Me: "Alexa"
Alexa: "<ding>"
Me: "Order a honey crisp apple medium sized"
Alexa: ".... ok ordering you a medium sized honey crisp apple"
Me: "Alexa"
Alexa: "<ding>"
Me: "Order peanut butter ummmmmm norm-"
Alexa: "... what kind of peanut butter do you want? You can say <18 options>"
... it's a pretty crap experience compared to instacart on your phone, which is worse than instacart on your desktop, which is worse than being inside the grocery store on your way home from work.
I've got Google, Apple, and Microsoft phones around, but none are set to answer to wake words. Cortana on my laptop is as shut-off as possible. They all need to be manually-initiated. Transmitting voice without taking a direct, physical action is basically where I draw the line. After all, typing something into a search engine needs a sequence of specific actions. I think that the extra barrier provides the psychological comfort I need.
It's easy to sound like a luddite nutter worrying about some vague conspiracy. On the other hand, it feels like a lot of companies are getting good practice at boiling frogs, slowly re-framing what most of society thinks of as its comfort zone, concerning technology like this.
I'm thinking of a repurposed Amazon Dash button[0] embedded in a watch, perhaps in a smartwatch app, or glasses, or key fob.
The general flow of "doing things" has almost always had a specific turn-on function -- starting a car, opening a browser, kicking off a work project, and so on. Rarely should things maintain a holding pattern.
[0] https://www.digikey.com/en/maker/blogs/amazon-dash-button-te...
Not everything needs a button.
That said, for the button... if it takes more than a few minutes to reconfigure a dash button, consider an IoT button https://aws.amazon.com/iotbutton/ that already does the arbitrary integration.
No easy way to replace power supply with something USB rechargeable either.
Privacy...not attained.
I shouldn't have to ask Google to open a local file for me.
I think part of their documentation said that you can skip that part, if you want. Ah, found it. Their github Readme has a section titled "Using Mycroft Without Home": https://github.com/MycroftAI/mycroft-core#using-mycroft-with...
Apparently, various groups are using some open speech engines (CMUSphinx and Kaldi) to work on internationalization support: https://community.mycroft.ai/t/are-there-any-plans-to-move-f...
> Privacy...not attained.
> I shouldn't have to ask Google to open a local file for me.
I agree.
Mycroft seems to be oriented around using their account system by default, and it looks like it's built around Google STT too. I feel like I'd need to do a code audit...or more likely find a way to replace the STT system.
Almost 20 years ago, I had a mostly-working speech recognition system on my 400MHZ PC. We ought to have enough functionality in open software now to built a decent assistant without turning to software outside of our control.
But then, this is 2017 and batteries are light, tiny, and very powerful, so you would still want to take apart the physical device that got shipped to you to verify that it doesn't have batteries in there.
Open it up. Check to see if there is a signal from the microphone to the main board when the mute button is enabled. Or trust one of the tear down videos. https://www.reddit.com/r/amazonecho/comments/5lc5q5/effectiv...
Is there an example in human history of a people giving up a fundamental right such as privacy for their short term gain? Did the Romans face a similar temptation? Are we breaking new ground or are we walking into a swamp?
https://www.amazon.com/26x80-Geared-Engine-Lathe-8-inch/dp/B...