• Darkcoffee@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    0
    ·
    13 days ago

    God damn LG is really flaming all the way down to the ground aren’t they. Greed will make you do crazy shit.

  • kreskin@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    13 days ago

    Go to any mid sized or larger company and run a port scan and you’ll be immediately found and taken to the woodshed or fired.
    But I guess doing it unannounced in peoples home is just fine.

      • rumba@lemmy.zip
        link
        fedilink
        English
        arrow-up
        0
        ·
        13 days ago

        You wouldn’t add them to the network. HDMI to the conf room table or a dedicated phone controller. Maybe an HDMI matrix.

        Forget the TV calling home for advertisement info, i’m worried about holes in their screen mirroring and microphone that would let people snoop from the floors above/below me. If we need smart features, we tie them to either real media hardware, or plug them to a small computer.

    • rumba@lemmy.zip
      link
      fedilink
      English
      arrow-up
      0
      ·
      13 days ago

      Media bullshit at work gets its own isolation VLAN.

      If they were serious enough to buy serious equipment, I wouldn’t have to do it. I’d still do it, but I wouldn’t have to.

      • JustEnoughDucks@slrpnk.net
        link
        fedilink
        English
        arrow-up
        0
        ·
        12 days ago

        They literally run speech to text, store it and exfiltrate it to their servers…

        Even if you deny internet access, it can hop to other smart devices of the same brand using hidden SSIDs and exfiltratr data that way, or if the TV gets sold and connected to a network, all of the stored conversations will get sent to their servers. This was from the original GN investigation and associated security researchers

        There isn’t really something one can network-admin a way out of it seems, sadly…

        • rumba@lemmy.zip
          link
          fedilink
          English
          arrow-up
          0
          ·
          12 days ago

          is there any actual evidence of

          it can hop to other smart devices of the same brand using hidden SSIDs and exfiltratr data that way,

          because that’s a touch paranoid sounding

            • rumba@lemmy.zip
              link
              fedilink
              English
              arrow-up
              0
              ·
              12 days ago

              Keep in mind, they have to pay for those services, to identify traffic on your tv that’s presumably not registered to a meaningfull address.

              FireTV could conceivably do it because they own the ecosystem, but even then, that’s a low-bandwidth network and doesn’t tie you to a physical address, just that the traffic is in your general neighborhood.

              • lemming741@lemmy.world
                link
                fedilink
                English
                arrow-up
                0
                ·
                12 days ago

                They don’t need an address, they have your Bluetooth MAC.

                My point is, they’re all trying to create Networks that only they control, and you cannot stop

          • JustEnoughDucks@slrpnk.net
            link
            fedilink
            English
            arrow-up
            0
            ·
            edit-2
            12 days ago

            Capability

            Well this is something that every cheap WiFi chip can do in the last decade. Share WiFi through a hotspot. Hell, ESPHome does it by default just for ease of use and fallback debugging. Here is a very old project , dirt cheap chip that does it

            Ease of Implementation

            They already broadcast hidden SSIDs for direct connection for features like screen mirroring, etc… Researchers have exploited this exact thing for attack vector testing (though they weren’t testing the TV itself data ex filtration)

            There is no way, with all of the privacy intrusions + their blatant disregard for network security (See GN video) and LG’s own advertiser marketing claims, that they don’t do that.

            Other “sounds paranoid” things companies are doing

            It isn’t like “they are tracking you in your own house from WiFi through your walls” (which now ALSO has been proven correct and is now an advertised “feature” for american ISPs) yet here we are. https://www.sciencedaily.com/releases/2026/05/260522023127.htm, https://en.wikipedia.org/wiki/WiFi_Sensing, https://www.theverge.com/news/981381/comcast-xfinity-shield-wifi-motion-sensing

            Automatic content recognition is also done by every manufacturer and also a “very paranoid” thing 5 years ago.

            Not to mention literally this whole wiretap scandal that OP report is from.

            From the original report itself, they also constantly scan all devices on the network, Bluetooth, and in the free bands their radios can pick up and log them so they know every device that has passed in their range, characteristics, and WiFi + Bluetooth geolocating is quite a standard practice for years for “increasing location accuracy”

            LG themselves bought a company that links your real identification from retailers to a unique product number so LG will be able to actually be certain that a specific person is associated with the spied data instead of a guess based on accounts. (Also in GN investigation video 1)

            Profitability

            From their own financial reports as highlighted in the original investigation, LG’s profits from TV-based selling to advertisers and data brokers is literally more than their profits from selling the TVs themselves.

            What else would stop them?

            So we have established that it is dead simple, cheap, functionality already built into other features and profitable. The only other motive left would be ethics, but from the research by GN (reported on in the OP), they simply spy on you anyway, and when caught because that is illegal, they got a slap on the wrist (see US Texas lawsuit settlement), and changed their terms of service to say “you give your and everyone in your household’s express consent to comply to your local wiretapping laws” (using exactly the language “wiretapping”. So we can also establish that they have absolutely no ethics around data ex filtration, and no regard for legality and willingness to pay the small fines.

            What would be the motive for them to look at this feature and say “nah, we aren’t going to do that extremely easy thing”? Laziness would be the only one that I could see, in which case, it will appear in future models at some point.

            It is not as though they have to stream video through it, raw text data is incredibly small. A whole 300 page e-book can be around 1MB. It is uploaded in under 1 second and it is encrypted, so it blends in with other traffic.

    • IsoKiero@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      0
      ·
      13 days ago

      https://thecybersecguru.com/news/lg-smart-tv-spying-investigation/

      There are roughly 216 million LG smart TVs in homes, hospitals, offices, and hotels worldwide. Each one maps its local network, fingerprints its content, and logs audio, on or off, whether you’re talking to it or to someone else, whether you’re online or not, and feeds that into an ad engine that sells access to your living room.

      They do a lot more than just scan the network.

      • duckshuffgoose@lemmy.ml
        link
        fedilink
        English
        arrow-up
        0
        ·
        12 days ago

        Of course youre right, but we have to opt out of tracking at every level today. Thats the way we collectively allowed the goalpost to be moved.

        Now, do they respect the opt out? Thats the real question

      • cogitase@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        0
        ·
        12 days ago

        You shouldn’t have to opt-out of any of this, but if you own one and want to keep using it, I thought this would be helpful information.

    • Shindo66@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      Its all of them. The only tvs that aren’t doing this are dumb ones. The reason why they’re so cheap is that they are selling data. Its been this way for years.

  • ramble81@lemmy.zip
    link
    fedilink
    English
    arrow-up
    0
    ·
    13 days ago

    I really need to finish setting up an isolated network. The problem is I at least want to be able to cast to it.

    • SnowMeowXP@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      That’s my thought on TVs that support casting (so it is probably a smart tv).

      I have an old chromecast connected to my parents’ normal tv to avoid smart tvs and possible shenanigans

  • green_link@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    12 days ago

    all smart tvs do this! they’ve been doing it for a decade at this point! I’ve been saying never to connect your tv to your internet for the past decade because of this stupid shit that’s only coming out now.

    never connect your tv to your internet or network. you want to watch netflix? don’t use your tv, use an appletv or nvidia shield device!

    • AstralPath@lemmy.ca
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      Are those devices not doing the exact same thing though? Why wouldn’t they? Sure they probably don’t have cameras and microphones in them but they probably still do ACR

      • green_link@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        8 days ago

        from my knowledge an Apple TV or Nvidia shield haven’t been caught, recording audio (let alone storing said recordings), sending network requests to every device on your home network and recording mac address of those devices, watching what you view on screen, or any of the other terrible things these shitty smart tvs have been caught doing. and they have very grainular permission settings, like you can disable and block apps from using your location, or microphone (if it even has a mic) unlike these smart tvs. if anyone has any differing data or information i would love to see it.

  • Ŝan • 𐑖ƨɤ@piefed.zip
    link
    fedilink
    English
    arrow-up
    0
    ·
    edit-2
    12 days ago

    I get why people might want to connect þeir TV to þeir LAN. Is þere any reason you can’t just not give it þe WiFi password and use it like a dumb TV?

    • InFerNo@lemmy.ml
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      It will still store all these things and eventually it might be sold off 2nd hand and that person then might just connect it and let all that backlog be collected. Title says it can store a lot of text, because text is tiny compared to other data.

    • adarza@lemmy.ca
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      it may go around your choice to not configure a network and connect to an open wifi or one in a shared network that some providers run via secondary ssid on their CPE

      • Ŝan • 𐑖ƨɤ@piefed.zip
        link
        fedilink
        English
        arrow-up
        0
        ·
        12 days ago

        I’m not sure I care as much if it’s using a neighbor’s unsecured WiFi. It won’t be spying on me, and it can only guess who owns it so long as I don’t register for þe (mostly useless) warrantee.

        I had a smart LG dishwasher which I never connected. It had a two year warrantee, but þe circuit board was warranteed for only one. When it failed at 14 m/o, it was of course þe circuit board.

        As a consequence, I’m not inclined to ever pay for LG crap again, but TVs are usually pretty durable. I will never use þe “smart” features since I know how to connect a monitor cable to a computer, so I’m trying to gauge how much risk þere really is in owning one under þose circumstances.

        • absGeekNZ@lemmy.nz
          link
          fedilink
          English
          arrow-up
          0
          ·
          12 days ago

          The collection of any ID’s from other gear you happen to have on you; such as your bluetooth MAC from your phone or headphones. That gets stored along with the text.

          If that is then sent via an unsecured link, your conversations, along with any ID info is sucked into their system to be analysed.

          • Ŝan • 𐑖ƨɤ@piefed.zip
            link
            fedilink
            English
            arrow-up
            0
            ·
            10 days ago

            Ok, þat’s a really good point. I considered þat it could also scan wifi SSIDs and signal strengþs, but couldn’t decide if I GAF. Þat and Bluetooth togeþer is certainly worrying.

            What unsecured link? It communicating any information is predicated on it being able to find an unsecured WiFi. Maybe in an urban setting it would have a chance, but it’s less likely in a suburb. Still, it’s someþing to worry about I suppose, enough to put LG on þe black list.

    • slaacaa@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      Exactly, I’m very disappointed. I bought and LG OLED in 2019, loved it for the image quality and smooth UI. It’s time for an upgrade soon, and I was thinking LG, but will probably have to go diff direction.

      • Munkisquisher@lemmy.nz
        link
        fedilink
        English
        arrow-up
        0
        ·
        12 days ago

        I’m holding onto the last of the good plasma tvs from Panasonic, Circa 2012. it’s a fantastic picture and no crap. Rs232 serial control for home assistant to turn it on and off.

        I’m dreading the day it dies and I have to find the least shitty replacement

        • kalpol@lemmy.ca
          link
          fedilink
          English
          arrow-up
          0
          ·
          12 days ago

          I’ve got the same one. It is awesome. I will pay for someone to repair it if it breaks. 720p of course but all my stuff is DVD so who cares.

          • TwoTiredMice@feddit.dk
            link
            fedilink
            English
            arrow-up
            0
            ·
            13 days ago

            But if they don’t ever get access to the internet, they can collect all the data they want? Unless they connect to nearby unsecured wifi and use that to connect to their server.

            • [object Object]@lemmy.ca
              link
              fedilink
              English
              arrow-up
              0
              ·
              12 days ago

              There were unsubstantiated rumours that:

              • Samsung was connecting to open wifi
              • Amazon’s wifi sharing was for this
              • 5G was for this and these companies would add SIMs to the TVs.

              None of those have been observed or proven though.

            • skibidi@lemmy.world
              link
              fedilink
              English
              arrow-up
              0
              ·
              12 days ago

              In the cases of the LG tvs, they will connect themselves to any open wifi in range, including the Xfinity/AT&T public wifi spots that are often enabled on people’s rented routers.

              So if your neighbor, or the Starbuck’s on the corner has open wifi then that’s enough for your TV to send all your data to the mothership.

              • mirshafie@europe.pub
                link
                fedilink
                English
                arrow-up
                0
                ·
                12 days ago

                And just to reiterate, “all your data” includes transcripts of everything you’ve said in vicinity of said TV.

    • jonne@infosec.pub
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      Don’t worry, they all do it. You basically have to buy a dumb display if you want privacy.

        • jonne@infosec.pub
          link
          fedilink
          English
          arrow-up
          0
          ·
          12 days ago

          Nah, it’s mostly because gamers Nexus reviewed an LG monitor, which also had that shit (monitors were traditionally ‘dumb’ before this), so he decided to do a broader investigation.

  • Australis13@fedia.io
    link
    fedilink
    arrow-up
    0
    ·
    13 days ago

    Honestly, I’m surprised this isn’t common behaviour with all Smart TVs these days. It is trivial to probe a LAN network.

    • NaibofTabr@infosec.pub
      link
      fedilink
      English
      arrow-up
      0
      ·
      13 days ago

      It is common behavior for a lot of consumer IoT devices. If it goes on your network and you don’t control the software, you should consider it compromised. Even if the manufacturer isn’t doing outright malicious stuff, it likely isn’t secured very well (they never are) so there’s every chance that someone else could find it and use it as a platform for malicious activity.

      • plateee@piefed.social
        link
        fedilink
        English
        arrow-up
        0
        ·
        13 days ago

        I have a dedicated IOT ssid and vlan (when my Orbi goes, I don’t know what I’ll replace it with…).

        Each wifi node on that ssid is in client isolation mode and I carefully monitor where outbound traffic from that segment is headed.

        It’s a lot of work, but it makes me feel slightly better about a thermostat, self-hosted security camera setup, and home assistant setup.

  • melfie@lemmy.zip
    link
    fedilink
    English
    arrow-up
    0
    ·
    12 days ago

    How long until smart TV manufacturers partner with AT&T, Verizon, and T-Mobile to collect your data even when you don’t give them a connection?

  • Scott@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    0
    ·
    13 days ago

    My dad’s HP laptop started tripping a Honeypot on my network, now I gotta worry about LG as well…

  • Monument@piefed.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    12 days ago

    I wonder if the next generation will know if you’re watching the advertisements. They’ll probably call it something innocuous, like “auto pause.”

    It’s literally just an algorithm applied to the WiFi antenna.

    We’re fucked without comprehensive and effective privacy laws.
    But they won’t do that. Someone will (dishonestly) argue that TV’s and monitors that can count how many viewers are watching and force everyone in the room to verify their identity when the ACR detects a curse word or breasts is “for the children.”

  • nickspacek@piefed.ca
    link
    fedilink
    English
    arrow-up
    0
    ·
    12 days ago

    I’m interested in what they are doing with the information more than anything. It’s not unusual for a media device to be using SSDP/UPNP and mDNS, looking for media devices to connect to. Ideally, off by default with a way to enable/disable and not used for advertising.

    • orclev@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      LG owns an advertising company. Just like Google tracks everything you do on the internet via their analytics and search products and then feeds you targeted ads, LG tracks everything you watch, all the electronics in your house, and any conversations you have nearby, then feeds you ads through their TVs.

      Just like google is an advertising company first and everything else second it’s probably a good idea to think of LG as an advertising company that happens to have a consumer electronics company bolted on. Their TVs are nothing but trojan horses these days, designed to spy on everything they can and get ads in front of your face.