{"id":64287,"date":"2026-07-22T00:54:38","date_gmt":"2026-07-22T04:54:38","guid":{"rendered":"https:\/\/overcentral.com\/en\/?p=64287"},"modified":"2026-07-22T00:54:38","modified_gmt":"2026-07-22T04:54:38","slug":"lg-bans-residential-proxy-sdks","status":"publish","type":"post","link":"https:\/\/overcentral.com\/en\/lg-bans-residential-proxy-sdks\/","title":{"rendered":"LG Bans Residential Proxy SDKs from Smart TV Apps"},"content":{"rendered":"<p>LG Electronics has announced it will suspend any smart TV app on its webOS platform that turns a user\u2019s television into an always-on <a href=\"https:\/\/overcentral.com\/en\/fbi-seizes-netnut-popabotnet\/\" title=\"FBI Seizes NetNut Proxy Platform, Popa Botnet\" data-iacss-internal=\"1\">residential proxy<\/a> node. The decision follows research from the security firm Spur, which revealed that over 42 percent of games and other apps available on LG\u2019s webOS store contain software development kits (SDKs) that allow unknown third parties to route internet traffic through a user\u2019s television without their ongoing awareness.<\/p>\n<p>The findings, published by Spur in early July, highlighted a troubling trend in the smart TV ecosystem. Residential proxy SDKs are designed to transform a device into a proxy server, renting out the user\u2019s IP address and bandwidth to paying customers. Spur identified these SDKs in more than a quarter of apps built for Samsung\u2019s Tizen operating system as well, with the proxy network Bright Data accounting for the majority of the integrations across both platforms. In LG\u2019s case, the SDKs were found bundled into a broad range of software, from simple games like Pac-Man to screensavers and file utilities.<\/p>\n<p>Responding to questions about the research, LG Senior Vice President John Taylor confirmed the company is actively working with developers to remove the residential proxy option from their apps. \u201cA residential proxy network is not an intended use for LG smart TVs, and LG Electronics is working with developers to remove the residential proxy option from their apps on the webOS platform,\u201d Taylor stated. \u201cIf this option is not removed, these apps will be suspended.\u201d Taylor added that the company\u2019s review is well underway and that LG will continue to strengthen its evaluation process for developer-submitted apps that incorporate such SDKs.<\/p>\n<h2>How Smart TV Proxy SDKs Turn Appliances Into Surveillance Nodes<\/h2>\n<p>The core issue lies in the opaque nature of these SDKs and the consent mechanisms that enable them. App developers are paid by proxy providers to include the SDK as a monetization strategy. For the user, consent is often buried in a one-time prompt during app setup, a practice Spur\u2019s Trevor Sutter described as inadequate. \u201cA one-time consent prompt buried in a TV app is not a substitute for meaningful transparency, ongoing control, and platform oversight,\u201d Sutter wrote. \u201cThe risk is amplified when consent comes from individuals within the household who use the device but shouldn\u2019t give consent, such as minors.\u201d<\/p>\n<p>Once a user agrees, their television becomes a conduit for internet traffic from unknown third parties. While companies like Bright Data claim to employ rigorous know-your-customer (KYC) processes and technological countermeasures to prevent clients from interacting with other devices on the proxy user\u2019s local network, the security implications remain significant. An infected or malicious client could potentially bypass these controls, turning a home appliance into an entry point for network reconnaissance or more invasive attacks.<\/p>\n<h2>What Is a Residential Proxy Network and Why Is It Dangerous?<\/h2>\n<p>A residential proxy network is a system where internet traffic is routed through the IP addresses of real residential devices, such as computers, smartphones, and now, smart TVs. This makes the traffic appear to originate from a legitimate home user rather than a <a href=\"https:\/\/overcentral.com\/en\/nvidia-rubin-ai-liquid-cooling-water-usage\/\" title=\"Nvidia Confirms Hotter AI Data Center Design Eliminates Water Usage\" data-iacss-internal=\"1\">data center<\/a>, allowing customers to evade geographic restrictions, scrape website content, or conduct fraud. The danger for the device owner is that this process occurs without their explicit, informed, and ongoing consent. Because the television is always on and connected to the network, it can function as a persistent proxy node, consuming bandwidth and exposing the home network to potential misuse without the owner\u2019s knowledge.<\/p>\n<h2>LG\u2019s Response and Broader Security Concerns<\/h2>\n<p>LG\u2019s decision to ban these SDKs is a welcome step toward platform security, but it comes amid broader criticism of the company\u2019s privacy practices. Earlier this week, the <a href=\"https:\/\/overcentral.com\/en\/youtube-ai-slop-monetization-ban\/\" title=\"YouTube bans monetization of AI slop and distressing videos\" data-iacss-internal=\"1\">YouTube<\/a> channel Gamers Nexus demonstrated that certain LG LCD monitors automatically install an app promoting paid McAfee antivirus subscriptions via <a href=\"https:\/\/www.microsoft.com\/windows\" target=\"_blank\" rel=\"noopener noreferrer\" data-iacss-external=\"1\">Windows<\/a> Update, without any approval prompt from the user. This pattern of embedding monetization features deep into device firmware raises questions about the company\u2019s overall commitment to user control.<\/p>\n<p>For affected users, the immediate risk is not an active exploit but a persistent loss of privacy and network integrity. The more devices in a home that act as proxy nodes, the greater the chance that an unscrupulous third party could observe or manipulate traffic, or that the home IP address could be blacklisted for abuse originating from the proxy service.<\/p>\n<h2>What Affected Users Should Do Now<\/h2>\n<p>If you own an LG smart TV, the first step is to review the apps you have installed. Look for apps that requested permission to act as a proxy or that presented confusing consent prompts about network usage. Remove any apps that you do not fully trust, especially those that are simple games or utilities that might be repurposed for proxy services. Moving forward, you should adopt a security-first approach to your home network. Use a reputable, paid VPN with a verified no-logs policy and a kill switch on any device that accesses sensitive accounts, such as laptops and phones. For the smart TV itself, consider disabling its internet connection if you primarily use an external streaming device, as those devices often have more controlled app ecosystems. Finally, enable multi-factor authentication on all your important online accounts and monitor your network traffic for unusual activity, such as unexplained high bandwidth usage from the TV. While LG\u2019s enforcement action is pending, the most effective defense is to audit your device\u2019s software and restrict its network permissions.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>LG Electronics has announced it will suspend any smart TV app on its webOS platform that turns a user\u2019s television into an always-on residential proxy node. The decision follows research from the security firm Spur, which revealed that over 42 percent of games and other apps available on LG\u2019s webOS store contain software development kits [&hellip;]<\/p>\n","protected":false},"author":7,"featured_media":90597,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/cards.overcentral.com\/cards\/en\/64287.png","fifu_image_alt":"LG Bans Residential Proxy SDKs from Smart TV Apps","footnotes":""},"categories":[349],"tags":[],"class_list":["post-64287","post","type-post","status-publish","format-standard","has-post-thumbnail","category-articles"],"fifu_image_url":"https:\/\/cards.overcentral.com\/cards\/en\/64287.png","fifu_image_alt":"LG Bans Residential Proxy SDKs from Smart TV Apps","_links":{"self":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/posts\/64287","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/comments?post=64287"}],"version-history":[{"count":0,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/posts\/64287\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/media\/90597"}],"wp:attachment":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/media?parent=64287"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/categories?post=64287"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/tags?post=64287"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}