Security Researchers Find LG Smart TV Flaws Could Enable Eavesdropping And Data Collection

In one test, an LG TV reportedly detected at least 38 devices on the connected Wi-Fi network, including phones, computers, smartwatches, printers, servers and thermostats; researchers said the data could include device names and usernames.
Researchers examined a 2025 OLED G5 model and said the TV collected nearby Wi-Fi network names, channels and signal levels, as well as local device identifiers; they cautioned that incomplete decryption prevented them from determining the purpose of every network packet.
The investigation described ACR as creating digital fingerprints from audio and video and matching them against a reference database, potentially allowing TVs to identify programs and advertisements and support personalized advertising.
LG’s response, quoted in the reporting, said that voice recognition is an optional, user-initiated feature and that customers can use the TVs’ smart features without enabling it; LG specifically denied collecting, recording or storing ambient conversations.
The reporting placed the findings in a wider industry context by noting that Samsung previously settled a lawsuit with the Texas attorney general over the collection and monetization of smart-TV viewing data through ACR.
Researchers have uncovered serious security flaws in LG smart TVs that could allow hackers to eavesdrop through built-in microphones even when the screen appears off, according to investigations by Gamers Nexus and Level1Techs. The TVs also scan home networks, identify connected devices like phones and computers, and collect viewing data through a feature called Automatic Content Recognition — all without clear user awareness.
LG denied the most serious allegations, saying voice recognition is optional and user-initiated, and that the company does not collect or store ambient conversations. The findings highlight a broader problem: smart TVs function like networked computers and require the same privacy scrutiny users apply to phones and computers.
During testing, researchers found that an LG 2025 OLED G5 model detected at least 38 connected devices on a home Wi-Fi network, according to Gamers Nexus findings. The TV identified phones, computers, smartwatches, printers, servers and thermostats — potentially including device names and usernames. Researchers also confirmed the TV collected nearby Wi-Fi network names, signal channels and strength levels.
This network scanning happens through Automatic Content Recognition, or ACR — a feature that creates digital fingerprints from audio and video to identify programs and advertisements. The practice enables personalized ads but raises privacy concerns because users often do not realize their viewing habits are being tracked and monetized.
In controlled tests, researchers demonstrated that a compromised LG TV could capture and store microphone audio while the screen appeared off — even after the network disconnected, according to Level1Techs documentation. The tests prove the vulnerability exists but do not show that LG routinely records ambient conversations or sends them to servers.
The flaw matters because an attacker who gains access to a TV's software could turn it into a covert listening device. Voice command features can also leave transcribed conversations or sensitive test data in system logs — potentially exposing private information if the TV is hacked or resold.
LG stated that voice recognition is an optional, user-initiated feature and that customers can use smart TV functions without enabling it. The company specifically denied collecting, recording or storing ambient conversations. However, LG did not address the network scanning or the potential for hackers to exploit microphone access.
The industry has faced similar scrutiny before. Reuters reported that Samsung previously settled a lawsuit with the Texas attorney general over collecting and monetizing smart-TV viewing data through ACR. The LG findings suggest the problem extends across major TV manufacturers.
Security experts recommend treating smart TVs like networked computers. Users should disable voice features they don't use, review privacy settings carefully, and check what data the TV collects and sends. Changing default passwords and keeping firmware updated also reduces hacking risk.
Consumers often assume smart TVs are passive devices for watching content. In reality, modern TVs are computers with microphones, cameras and internet access — creating surveillance risks if manufacturers or hackers misuse them. The LG investigation underscores why privacy settings deserve as much attention on a TV as they do on a phone.
Publishers
51
Articles
41
Reach
92