CES 2026 in Las Vegas showcased a dizzying array of new technologies, from AI-powered gadgets to innovative display technologies. While the consumer-facing narratives focused on convenience and immersion, a security professional like myself views these advancements through a more cautious lens. The rush to integrate AI and connectivity introduces new attack vectors that must be carefully considered.

Robots and the Expanding Attack Surface

Switchbot's Onero H1 robot, lauded as "Best Robot" by Engadget, exemplifies the expanding attack surface. While a household robot capable of doing chores sounds appealing, consider the security implications. These devices, like the Onero H1, connect to home networks and potentially collect sensitive data about user habits and routines. A compromised robot could be used for reconnaissance, physical intrusion, or as a stepping stone to infiltrate other devices on the network. "We saw a lot of robots showing off intriguing and useful capabilities at CES 2026," Karissa Bell of Engadget notes, yet few companies demonstrated a commitment to securing these devices.

Beyond robots, the proliferation of IoT devices – exemplified by IKEA's Matter-compatible smart home lineup – introduces similar challenges. While Matter (https://csa-iot.org/) aims to standardize communication and improve security, the sheer number of devices and manufacturers involved creates opportunities for vulnerabilities. A $6 smart bulb might seem innocuous, but a flaw in its firmware could expose an entire network. We must push for rigorous security testing and patching protocols for all IoT devices, regardless of their price point.

AI and the Illusion of Security

The hype around AI at CES 2026 was palpable, with many companies incorporating AI into their products. Subtle's Voicebuds, recognized as "Best AI Hardware" by Engadget, are a prime example. These earbuds use AI to transcribe speech accurately in noisy environments. However, the reliance on internet access and a subscription-based app raises privacy concerns. Where is the transcribed data stored? How is it protected? What security measures are in place to prevent unauthorized access? Without clear answers to these questions, users are essentially trusting a startup with their sensitive voice data.

Furthermore, the increasing reliance on AI in devices like Samsung's Micro RGB TVs and LG's OLED TVs presents opportunities for adversarial attacks. An attacker could potentially manipulate the AI algorithms used for image processing or audio enhancement to introduce subtle distortions or extract sensitive information. The complexity of these AI systems makes them difficult to audit and secure, highlighting the need for robust security testing and monitoring. The potential for compromise in systems that are designed to enhance fidelity opens new doors to threat actors.

"The excitement of new gadgets should not overshadow the imperative for security."

— Dr. Maya Okonkwo, Automatica Press

The Human Factor Remains Critical

Despite the technological advancements on display, the human factor remains a critical vulnerability. Devices like Eyebot's vision test booth, while promising to make eye care more accessible, also introduce new risks. If not secured properly, these kiosks could be used to collect biometric data or compromise patient privacy. Similarly, innovations like IXI's autofocusing glasses, while improving vision, also raise concerns about data collection and potential surveillance. As Android Authority reports, consumers are excited to adopt new technologies. However, security must be paramount during development and deployment, not a reactive afterthought. We need robust security awareness training to educate users about the risks associated with these new technologies and empower them to make informed decisions about their use. The excitement of new gadgets should not overshadow the imperative for security. Ultimately, the security of these technologies depends on the people who design, deploy, and use them.