LG to Ban Residential Proxies from Smart TV Apps
LG is taking a stand against apps that turn smart TVs into residential proxy nodes, a practice exposed by recent security research. This move sheds light on the hidden monetization schemes embedded in smart devices and sparks a wider discussion about consumer privacy, device security, and the murky ethics of residential proxies. Hacker News readers are both relieved by LG's action and engaged in a broader debate about how 'smart' devices exploit user networks.
The Lowdown
LG Electronics USA announced it will suspend smart TV apps that secretly transform user televisions into residential proxy nodes, following security research that revealed the widespread nature of this practice. The company is actively working with developers to remove these functionalities.
- Security firm Spur.us found that over 42% of apps on LG's webOS store and more than a quarter of Samsung's Tizen OS apps include SDKs that enable this proxy functionality.
- This allows third parties to route their internet traffic through a user's TV, effectively turning it into a component of a residential proxy network.
- Developers are compensated by proxy providers, such as Bright Data, for integrating these SDKs into their apps, which range from games like Pac-Man to screensavers.
- LG Senior VP John Taylor stated that this is not an intended use for their smart TVs and warned that non-compliant apps will face suspension.
- Spur argues that buried consent prompts are insufficient for such a significant privacy and security implication, especially considering potential use by minors.
- The announcement comes on the heels of another controversy for LG involving the unprompted installation of McAfee security software on its LCD monitors.
LG's decision marks a significant step toward improving user control and privacy on smart TV platforms, addressing a hidden practice that many consumers were likely unaware of, and highlighting the ongoing challenges of securing and regulating modern connected devices.
The Gossip
TV Trepidation & Tactical Takedowns
Many commenters expressed relief at LG's announcement, while others highlighted their existing strategies to mitigate smart TV privacy risks, such as not connecting their TVs to Wi-Fi or isolating them on separate network segments. There was a notable comparison to gaming consoles, where users felt console manufacturers (Sony, Microsoft) have a stronger incentive to maintain OS security due to DRM and piracy concerns, making them more trustworthy than generic smart TV vendors.
Proxy Predicament & Problematic Practices
The discussion delved into the ethics of residential proxy networks. Some argued that sharing internet bandwidth in exchange for value (e.g., ad-free usage) could be fair, provided there's prominently displayed, informed consent, an opt-out option, and clear benefits. However, others strongly condemned the practice, pointing out that such grey-market proxies are frequently used for malicious activities like bot spam, social media manipulation, and fraud, essentially turning user devices into unwitting botnet participants. Concerns were also raised about the lack of transparency regarding the type of traffic passing through a user's network and potential ISP terms of service violations.
Platform Peculiarities & Play Store Parallels
Commenters clarified that the issue primarily affects LG's webOS and Samsung's Tizen OS, neither of which are Android-based or use the Google Play Store. Initial assumptions that Google Play's terms of service would prevent such SDKs were corrected, with many pointing out that these proprietary TV operating systems operate independently. There was also speculation about the prevalence of similar proxy SDKs even within Google Play apps, suggesting the problem might not be exclusive to smart TVs.