🟡 Medium  |  Source: Krebs on Security


Over 42% of apps on LG’s webOS smart TV platform were found to be silently routing third-party internet traffic through users’ televisions, effectively turning them into residential proxy nodes without consent. LG has announced it will suspend any apps that exploit this capability. This matters because residential proxies are frequently abused to bypass fraud detection, conduct credential stuffing attacks, and obscure malicious traffic origins.

Security Architect’s Take: Review your organisation’s network egress policies and threat intelligence feeds to flag traffic originating from known residential proxy networks, including those sourced from IoT and smart TV devices. If your environment processes authentication or fraud signals, consider whether residential proxy detection is sufficiently robust to account for non-traditional proxy sources such as consumer electronics.

Original advisory: LG to Ban Residential Proxies from Smart TV Apps