LG Smart TVs Caught Eavesdropping on Users Even When Powered Off
- According to reporting by The Verge cited in European coverage, security researchers discovered multiple security vulnerabilities during testing, with the microphone flaw representing the most severe risk.
- LG firmly rejected the conclusions of the recent investigation.
- The technical details of the discovered flaws have not been fully published to prevent malicious actors from exploiting the vulnerabilities.
<>
Security Flaws and Network Discovery Risks
According to reporting by The Verge cited in European coverage, security researchers discovered multiple security vulnerabilities during testing, with the microphone flaw representing the most severe risk. When the research team disconnected a tested LG television from its ethernet connection, the device continued to record and store voice inputs locally. Upon reconnecting to the local network, those stored audio files could be accessed.
The tests indicate that if an attacker successfully gains control over an LG television, turning off the physical screen does not stop the device from monitoring the user. Beyond audio capture, the researchers observed that tested models, including the OLED G5, actively scanned local networks using Wireshark packet analysis. These televisions identified surrounding devices such as phones, computers, printers, and smart home switches while also gathering data on nearby Wi-Fi network names and signal strengths.
LG Rejects Findings and Defends Features
LG firmly rejected the conclusions of the recent investigation. In a statement provided to India Today Tech, the company asserted that the claims made in the published video are not true. LG explained that its televisions only process voice data when a user presses and holds the voice control button on the remote control, or when a wake word like “Hi LG” is recognized after the user explicitly enables remote voice recognition.
Outside of those specific scenarios, LG stated that its televisions do not collect or record ambient conversations. The manufacturer also defended its network scanning and automated content recognition, known as ACR, as standard smart TV functionalities. According to LG, ACR operates solely on an active user consent basis, meaning data is not utilized for advertising purposes unless the user explicitly accepts the optional terms.
Implications for Home Network Security
The technical details of the discovered flaws have not been fully published to prevent malicious actors from exploiting the vulnerabilities. Instead, the research team reported its comprehensive findings directly to LG so the company can develop and issue software patches.

