2 hrs ago
LG TV Security Flaw Raises Privacy Concerns Over Standby Listening
Researchers showed that a hacked LG smart TV could become a tool for spying.
An attacker might turn on its microphone even when the TV appears to be off or is in standby mode.
The TV could record sounds and save them until it reconnects to the internet.
It may also identify Wi-Fi networks and other devices in the home.
These devices could include phones, computers, printers, and smart-home equipment.
The TV may collect information about what people watch and use it with advertising data.
The researchers said the problem may affect smart TVs more broadly, not only LG models.
Users should update their TVs, check privacy settings, turn off features they do not need, and consider using a separate network.
Gamers Nexus reported that a compromised LG smart TV running webOS could be used to spy on users and map private home networks.
Attackers may remotely activate the TV’s built-in microphone to record audio, including while the television is turned off or in standby mode.
Audio may be stored while the TV is offline and retrieved after its internet connection is restored.
The TV may collect viewing data, Wi-Fi network details, signal information, advertising IDs, and information about connected household devices.
Researchers recommend installing updates, reviewing privacy settings, disabling unnecessary tracking features, and placing smart TVs on a separate network.
- Who
- Gamers Nexus and other researchers reported risks involving LG smart TVs and their users.
- What
- A compromised smart TV could enable microphone recording, network discovery, data collection, and unauthorized code execution.
- Where
- In users’ homes and on their private networks.
- When
- Why
- Remote-code-execution and other security weaknesses could allow attackers to control the TV and access information about the household.
Key facts
- Affected platform
- LG smart TVs running webOS
- Microphone risk
- A compromised TV may remotely activate its built-in microphone, including in standby mode.
- Offline storage
- Recorded audio may be stored while the TV is disconnected from the internet and retrieved after reconnection.
- Potentially collected data
- Viewing information, Wi-Fi network names and signal data, advertising IDs, and details about connected devices.
- Reported vulnerabilities
- Researchers reported remote-code-execution weaknesses that could let attackers run commands or code without permission.
- Recommended protections
- Install firmware and security updates, review privacy settings, and disable ACR, viewing-information collection, personalized advertising, and voice recognition where possible.
- Network recommendation
- Place smart TVs and other IoT devices on a separate guest or IoT network.






