cross-posted from: https://lemmy.world/post/51634640
A new Gamers Nexus investigation found a retail LG TV actively scanning the local network for phones, laptops, smartwatches and other connected devices, while also capturing microphone audio when the screen appeared to be in standby. The investigation found voice data being stored locally even after the TV was disconnected from the network, with the queued data uploaded once connectivity returned. Researchers also uncovered webOS vulnerabilities that could potentially turn the television into a remotely controlled surveillance device. The really unsettling part isn’t just the advertising angle. It’s the fact that a consumer television can sit inside your trusted network, enumerate other devices, access a microphone, store collected data locally and communicate with external infrastructure. Put that same device in a corporate office, hospital, hotel or conference room and the security implications become considerably more serious. I went through the investigation in detail, including the network scanning, microphone behavior, ACR, webOS attack surface, offline data collection and practical mitigations


Don’t connect TVs to your network.
So I should connect it to someone elses network?
And according to the article the data collection runs even if it’s disconnected. So, don’t ever connect it to the network. As soon as you do everything gets uploaded.
how is it collecting and sending data if not connected to a network?
i read the article, it still needs a connection
It’s not sending them, just collecting them. Then it sends them the moment you connect. They even transcribe speech to text via mic, according to GN they send about 4GB/month… IN TEXT FILES!
The person you are replying to said that the smart TV collects spy data onto a hard drive even when it’s not connected.
Then once the TV acquires a connection, it dumps the entire drive worth of spy data to the mothership.
The danger here is obvious, I think.
i just misread their post originally
You know how some people rent their wifi routers?
That’s the backbone
if it’s connecting without your explicit permission each time how us that not a worm
Because it is done by a wealthy corporation. See also: rootkits from Sony.
that shit should have been a jail term
but i stopped buying sony over it
This would’ve worked just a few years back but due to shitty “age verification” laws, even TV manufacturers willl force users to create an account the very least for the TV to even start up. They may also implement an always-online model and they’ll justify that it’s necessary to monitor users for “age verification purposes”. ATP better to get a good monitor and use it as TV cuz cable or satellite boxes are either way gonna be provided by the network companies so that’s there
Surely only for “smart” features but without enabling any of that shit, you shouldn’t get any age verification prompt.
I could see them doing it anyway as OTA broadcasts include rating data.
That said, if it’s a family TV, you’re never going to put everyone on it, just the oldest one anyway.
Impossible - no one would buy them, and that idea would die.
This is the only correct answer. Discussion over.
Works for now, but my fear is when that may not broadly be the case.
I wonder if any of such devices use nbiot or alike…