all 43 comments

sorted by: hot top controversial new old
[–] 95 points 2 weeks ago (8 children)

LG is starting to become indistinguishable from malware.

Their TV software includes residential proxies (your network becomes the proxy), and gets sold to AI scrapers and others. Imagine if that proxy gets used to download CSAM, used for hacking, or gets your household banned from Google?

Samsung phone software is cancer and auto installs whatever the fuck ads and games they want. They installed forced ads onto their fucking fridges.

Also worth noting Dell and Alienware do this too according to Wikipedia.

When the fuck did this become okay? We need to drive these companies out of business for this. They need to get sued for this. In what world is adding unremovable adware legal, how does that not violate the computer misuse and hacking laws?

  • source
  • hideshow 16 child comments
  • [–] 44 points 2 weeks ago* (last edited 2 weeks ago) (2 children)

    Things started going downhill when Lenovo wasn't fined into oblivion in the 2010s for putting malicious spyware on the laptops they sold their customers. And I mean actual literal spyware, as in "installs a root certificate and decrypts and reads all your 'secure' internet traffic, ostensibly so it can place random ads in it". While also leaving gaping holes for attackers to use, of course, but letting a random program written by someone with ties to Israeli intelligence install backdoors throughout their customer base earned Lenova slightly more money so it's all good!

    And that wasn't even the first or last time Lenovo have done something like that. They just... got a free pass, and this type of thing gradually became the norm. It's infuriating.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 23 points 2 weeks ago (2 children)
  • Yeah, I was going to post this if nobody else did. At least Sony was forced to acknowledge the issue and issue a patch. But then the patch was such a bad bodge (it didn’t even remove the rootkit, and introduced more vulnerabilities) that the punishment wasn’t anywhere near enough.

  • source
  • parent
  • [–] 3 points 2 weeks ago* (last edited 2 weeks ago)

    The frustrating thing about that is how they didn't even slow down with their bullshit after that scandal, and some of the most hated DRM in recent history have a direct lineage from Sony:

    • SecuROM, a widely hated DRM that limited how many times you could install a game, required online check-ins or it'd lock you out of playing, and blocked common IT tools while running, was also developed by Sony.
    • Denuvo, which obfuscates and encrypts the game executable after scattering DRM checks throughout, adding extra CPU overhead and lowering game performance, was later produced by the same (former, now independent) SecuROM team.
  • source
  • parent
  • [–] 12 points 2 weeks ago (2 children)

    Just so I am clear, everything I have read about the residential proxies in TVs (heavily leaning towards LG and Samsung) has been that they are baked into the shady apps the smart TV platforms allow you to install, not that LG or Samsung are directly running said proxies. This is obviously still very bad, but it isn't LG or Samsung doing it as much as not preventing it in any way, which they obviously should be doing. This is just what I am aware of though, do you have any additional info/links that point to them doing it directly? I'd really like to know, as I have two LG TVs. I have one locked down to an internal subnet and just use Jellyfin, but the family still likes using Netflix on the other one and I'd like to know if the proxies are essentially unavoidable rather than being tied to those shitty "ad free" games.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 6 points 2 weeks ago* (1 child)

    Okay, that is way different than what I understood as the built in apps have them

    Thanks for mentioning that

  • source
  • parent
  • hideshow 2 child comments
  • [–] 10 points 2 weeks ago

    Sure no problem. I just found a link that talks about it if you were curious to read a bit more. https://spur.us/blog/smart-tv-apps-residential-proxy-sdks

    These are the same SDKs uses in a lot of PC and mobile games too. This explains why bot/scraper traffic has exploded in the past couple of years. My small company's site gets well over a million hits a day, about 4% of that traffic is valid. It's total bullshit.

  • source
  • parent
  • [–] 7 points 2 weeks ago

    Too many people just don't give a fuck and that's what frustrates me most. The only windows computer I have in this home is my work one. Because I need it for work. Any time I use the other ones it's so clean, fast, ad free. Less bullshit.

    My only real anxiety over what's happening here is my nest speakers and smart tv. Both are connected to the internet but they're vlan'd off.

    There was a post yesterday about pine speakers, please let them be good...

    /rant

  • source
  • parent
  • [–] 5 points 2 weeks ago (1 child)

    When the fuck did this become okay? We need to drive these companies out of business for this.

    We would need to drive every computer company on earth out of business. They all do this. It's not one or two, it's all of them in a race to the bottom.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 2 weeks ago (2 children)

    This is why I think remote Ethernet jacks should be a thing. Like the same as those HDMI input multiplexers, but just to connect and disconnect a device from a wired connection. Glue that shit to the bottom of the remote. Boom. Parents get to rot their brains in front of the screens just like how they warned you not to do decades ago, and they get to enjoy doing something to stay “safe from viruses”

  • source
  • parent
  • hideshow 4 child comments
  • [–] 3 points 2 weeks ago (1 child)

    You can do this with some firewalls, switches, and access points. Opnsense has timed firewall capabilities.

    I have one on a schedule here for my TV. I can also toggle it from my phone.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 0 points 2 weeks ago (1 child)

    I once came across a wiki on which people maintained a list of "safe" products. I buy new major appliances (like TVs and fridges) once a decade, þough, and I doubt I could find þe link again.

    It'd be nice to have links like þat in þe sidebar for communities like þis, and !privacy. Reddit subs used to be pretty good about þat.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 2 points 2 weeks ago (1 child)
  • [–] 1 point 2 weeks ago* (2 children)

    I'm guessing they want to bring the Thorn(?) in to common use?

    Its usually mostly used as a phonetic symbol for the "th" sound.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 1 point 2 weeks ago

    Yeah, I didn't like it at first, but then I remembered that I already think English is a bad language on the spelling side of things and that would reduce ambiguity, so now I support it, at least in spirit. Though the problems with English are way deeper than "th" not having its own symbol.

  • source
  • parent
  • [–] 40 points 2 weeks ago (1 child)

    Back in my day we called this malware

  • source
  • hideshow 2 child comments
  • [–] 11 points 2 weeks ago*

    Adware is a form of malware. Malware is a broad term that encompasses a lot of other types of software. Adware, bloatware, spyware, etc are all forms of malware.

    Like someone saying they like metal music. It’s a very broad term. What kind of metal? Thrash metal? Death metal? Black metal? Power metal? Nu metal? Prog metal? Etc…

  • source
  • parent
  • [–] 31 points 2 weeks ago

    This happened on both my Windows systems! I thought I caught a virus but there was a Reddit thread saying it came from Windows Update. This should be against Microsoft's policies.

    I will not be buying anything LG in the future because of this. It's a shame because I have enjoyed their monitors.

  • source
  • [–] 28 points 2 weeks ago (2 children)

    How, though?

    Its because of Windows, right?

    The monitor didnt insert malware?

  • source
  • hideshow 4 child comments
  • [–] 42 points 2 weeks ago (1 child)

    Monitor requests Windows OS to install monitor company's software, Windows installs whatever they want.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 49 points 2 weeks ago (3 children)

    Not quite, Windows detects the monitor being attached and goes "Oh? What software goes with this?" and downloads the package provided by LG.

    The monitor doesn't say "Hey, I want you to download this", Windows does that on it's own.

  • source
  • parent
  • hideshow 6 child comments
  • [–] 4 points 2 weeks ago (3 children)

    Wait, since when does Windows install apps and not just device drivers?!

  • source
  • parent
  • hideshow 6 child comments
  • [–] 2 points 2 weeks ago (1 child)

    Apps being bundled with drivers is not that new. I swore off Razer hardware years ago because their fucking keyboard decided to install a bloated app alongside it - during OS installation as well! A blocking installer, fucked up my unattended install.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 10 points 2 weeks ago (1 child)

    The others are right, but it is possible for hardware to have installation software embedded. It's not as common now, but consumer Dell printers about 10 years ago (and probably others, but that's what I ran into) had drivers embedded in an internal flash ROM. You switched between using the printer as a flash drive and accessing the printer directly using the buttons on the front of the printer.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 7 points 2 weeks ago* (1 child)

    Many modern motherboards have that built in to install the manufacturer's software, which in turn would download the latest BIOS drivers, etc. for that board.

    Usually enabled by default, and after installing once, the setting in the BIOS gets disabled so it doesn't prompt to reinstall on every boot.

    My brand new Asrock X870E board I installed last week did that.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 6 points 2 weeks ago

    Ah yeah I got this, I just set the app not to launch at computer startup. Thankfully Linux is unaffected and that's what I almost always use.

  • source