The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one's television into an always-on residential proxy node. The move comes less than a month after researchers found that more than 42 percent of games and other apps available for download on LG's webOS store allow unknown third-parties to route their Internet traffic through a

LG Electronics USA has announced plans to remove smart TV applications from its webOS platform that incorporate residential proxy software development kits (SDKs). The company stated that any developers failing to comply with this directive will have their apps suspended. This decision follows research published on July 2, 2026, by the security firm Spur, which identified a significant prevalence of such SDKs in smart TV applications.
Spur's research indicated that over 42% of apps available for LG smart TVs contained SDKs that convert the television into a residential proxy node. The study also found that more than a quarter of apps designed for Samsung's Tizen operating system included similar components.
John Taylor, Senior Vice President at LG, confirmed that the company is actively collaborating with app developers to eliminate the residential proxy functionality from their webOS applications. He emphasized that the use of residential proxy networks is not an intended function for LG smart TVs. Taylor further stated that LG is committed to preventing these networks from being integrated into its smart TV apps in the future and that a review of existing applications is currently underway. The company plans to enhance its evaluation process for developer-submitted apps, including those that might incorporate residential proxy SDKs, as part of ongoing efforts to improve platform quality and user experience.
Residential proxy providers compensate app developers to include SDKs that transform a user's device into a proxy node, which is then rented to paying customers. Spur's report found these SDKs embedded in a variety of LG and Samsung smart TV apps, ranging from simple games like Pac-Man to screensavers and file utilities. For instance, a Pac-Man app from Bright Data offered users the choice between viewing advertisements or allowing their TV to serve as a residential proxy node.
Bright Data was identified by Spur as accounting for the majority of proxy SDKs across both Samsung and LG smart TVs. While proxy providers like Bright Data claim to implement rigorous "know-your-customer" processes to validate legitimate uses, often tied to content-scraping activities, and to incorporate technological safeguards to prevent customers from controlling other devices on the proxy user's local network, Spur argues that the core issue is the widespread embedding of these SDKs in devices that consumers do not typically perceive as computers and are not equipped to audit.
Spur's Trevor Sutter highlighted that a one-time consent prompt within a TV app is insufficient for meaningful transparency, ongoing control, and platform oversight. Sutter also noted the amplified risk when consent is provided by household members, such as minors, who may not be authorized to do so.
This move by LG to address residential proxy SDKs comes after the company recently faced scrutiny regarding another partnership. Earlier in July, it was reported that certain LG LCD monitors automatically install an application promoting paid McAfee antivirus subscriptions via Windows Update, without requiring user approval.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.

Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in arbitrary code execution under certain conditions. The vulnerability, tracked as CVE-2026-59346 (CVSS score: 9.3), is an integer-overflow vulnerability that a local attacker with elevated privileges can exploit to run arbitrary code. "A

A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC). [...]

Hardware wallet manufacturer Trezor on Friday disclosed that another 67,000 customers from the U.S. have been impacted in a breach at its shipping provider ShipMonk. The exposed information includes customer names, email addresses, phone numbers, shipping addresses, and order numbers between November 2019 and August 2021. The breach does not affect the security of the company's hardware wallets