A New Investigation Claims 216 Million LG TVs Are Spying, Even in Standby. If One's Running Your Lobby or Menu Board, That's Your Network Too.
Gamers Nexus's investigation into LG smart TVs — network scanning, standby-mode audio capture, and continuous data uploads — is a consumer privacy story on the surface. For any shop using a smart TV as a menu board, waiting-room display, or lobby screen, it's a network security story with the same TV plugged into the same Wi-Fi as the POS.
Note: The investigation into LG’s smart TVs was published September 7, 2026 — six days old as of writing. LG issued its formal denial around September 9–10, and the story is still developing as outlets and privacy researchers respond to that denial; this piece reflects reporting through September 13.
If you’ve bought a smart TV in the last few years to run as a menu board, a waiting-room display, a lobby screen, or a “now playing” board behind a counter, there’s a decent chance it’s an LG. They’re cheap relative to dedicated commercial signage hardware, they support the app you already use, and nobody thinks twice about plugging one into the same Wi-Fi network as everything else in the shop — because it’s “just a TV.” That last assumption is the one worth revisiting this week.
What the investigation actually claims
Hardware review outlet Gamers Nexus, working with independent cybersecurity researchers, published a more than two-hour video investigation on September 7, 2026 into LG’s smart TV platform, alleging LG operates what they characterize as “216,000,000 spy TVs.” Using packet-capture tools (Wireshark) to monitor actual network traffic, the investigation reported several specific findings, according to Malwarebytes’s coverage of the report:
- LG TVs continuously and actively scan the local network for other connected hardware — phones, smartwatches, PCs, printers, and other smart-home devices — regardless of whether that scanning has any relationship to something the user asked the TV to do.
- The TVs collect and upload data even when the device is offline or in what appears to be standby mode.
- Researchers demonstrated a compromised unit could capture and locally store audio while the TV appeared to be powered off, then transmit that stored audio once the network connection was restored.
The investigation’s methodology is what gives the claims weight: rather than relying on LG’s own privacy policy or marketing language, the team ran retail LG OLED units through Wireshark and logged the actual packets leaving the device. That approach turned up detail that goes beyond the headline. According to the investigation, a fully-updated LG set could log the household’s public IP address and approximate geographic location, the internal IP addresses of every other device on the local network, and the names, signal strengths, and channels of neighboring Wi-Fi networks that had nothing to do with the household at all — a level of visibility into the surrounding wireless environment that has no obvious connection to “playing video content.” Researchers also tested what happens when a user declines LG’s optional data-collection agreements during setup: with every consent option switched off, the test unit still reached out to LG’s advertising endpoints on a regular schedule and kept scanning for nearby devices — behavior that continued regardless of the consent choice actually made.
The standby test itself is worth describing in more detail than “the TV can capture audio while off,” because the specific mechanism matters for anyone deciding how seriously to take it. Researchers put a unit in standby, disconnected its Ethernet cable, waited, then reconnected it — and reported watching buffered standby-mode audio get uploaded once the network connection was restored. That sequence indicates the audio capture happens locally and is queued for upload rather than requiring an active connection at the moment of capture, which is a meaningfully different (and more concerning) claim than “the TV occasionally phones home while idle.” The investigation’s own conclusion is blunt: fully removing power, not just leaving a device in standby or disconnecting the network, is the only way to guarantee the hardware is inert.
LG’s response, reported by Tom’s Hardware and Engadget, disputes the framing directly: the company says claims that its TVs “constantly log and upload data” or “record audio while in standby” are “not true.” LG’s specific counter-explanation is that voice processing only happens when a user presses and holds the microphone button on the remote, or when Far-Field Voice Recognition is manually enabled and the TV detects its wake phrase (“Hi LG”). Notably, LG did not deny that the TV listens for that wake phrase while nominally in standby — its position is that listening-for-a-wake-word is different from “recording,” and that any audio processing involved happens on-device and gets deleted automatically. LG also confirmed, rather than denied, that its TVs scan the local network for other devices, characterizing it as a standard feature for device connectivity common across smart TVs and media devices generally — which is true as a general statement about the smart-TV category, and doesn’t really address the specific volume and continuity Gamers Nexus’s packet captures reportedly showed.
That’s the state of the dispute as of this week: a serious, methodologically-documented investigation making specific technical claims, and a vendor denial that concedes some of the underlying mechanisms (network scanning, standby wake-word listening) while disputing the most alarming characterizations (continuous logging, standby recording) attached to them.
This isn’t LG’s first ACR fight, and it didn’t end in LG’s favor
The part of this story that gets less coverage than the Gamers Nexus video: LG was already under a legal settlement over exactly this category of data collection before this investigation published. Texas Attorney General Ken Paxton sued Samsung, LG, Sony, Hisense, and TCL in December 2025, alleging all five used Automatic Content Recognition — the same “Live Plus” feature named in this investigation — to capture what was on-screen without adequately disclosing it or obtaining real consent. Samsung settled first, in February 2026, agreeing to halt ACR data collection without express consent and to add clear disclosure screens. LG settled in May 2026, agreeing to stop using ACR to collect viewing data without informed consent, to display a pop-up disclosure explaining what gets collected, and to give users a simple opt-out.
That settlement predates this week’s investigation by four months, which matters for how you read LG’s current denial. This isn’t a company encountering data-collection concerns for the first time and disputing them in good faith from a neutral starting position — it’s a company that already told a state attorney general it would clean up its ACR consent practices, now disputing a separate, more serious set of claims (standby audio, non-ACR network scanning that persists even after declining consent) about the same general category of behavior. That doesn’t resolve whether the new, more serious claims are accurate. It does mean “LG says it’s not true” carries less weight on its own than it would from a vendor with no recent regulatory history on this exact issue.
Why “who’s right” matters less than you’d think, for your setup specifically
Here’s the part that applies regardless of how the LG-versus-researchers dispute eventually resolves: a smart TV, LG or otherwise, is a full network-connected computer running vendor software you don’t control, sitting on whatever network segment you plugged it into. That’s true whether or not this specific investigation’s most alarming claims hold up under further scrutiny. The undisputed facts alone — a smart TV OS that scans your local network for other devices and phones home to the manufacturer on a schedule you don’t set — describe a device with more visibility into your network than a “just a TV” mental model accounts for.
For a home user, that’s a privacy conversation. For a small business running that same TV as a menu board or lobby screen, it’s a network security conversation, because the network that TV can see is the same network your POS terminal, back-office computer, and card reader are sitting on — unless you’ve already segmented it, which most small shops running a single flat Wi-Fi network for “everything” have not. This site’s guest Wi-Fi piece covers exactly this flat-network problem for customer devices; a signage TV running vendor telemetry you didn’t audit deserves the same skepticism as a customer’s phone, arguably more, because it’s a permanent fixture rather than a device that leaves at the end of the visit.
The actual risk profile for a shop, in plain terms
Three separate things are worth separating here, because they carry different levels of concern:
- Network reconnaissance. A device that actively scans for and catalogs every other device on your network — confirmed behavior, not disputed by LG — means the TV’s software (and, transitively, LG’s servers, and anyone who compromises LG’s servers or intercepts that traffic) has a live inventory of what’s plugged into your business network. That’s not nothing, even setting aside the audio question entirely.
- Data exfiltration you can’t audit. Whatever telemetry the TV sends home — viewing data, network inventory, diagnostic logs — leaves your network in a format and to a destination you don’t control and generally can’t inspect, unless you’re running your own network monitoring on that segment.
- The disputed part: standby audio. This is the most serious claim and also the most contested. Take it as “worth a firmware update and a settings review,” not as settled fact that every LG TV is actively recording conversations — the investigation’s most extreme framing is disputed by the vendor, and independent verification of the standby-recording claim specifically is still developing as of this writing.
The practical takeaway doesn’t actually depend on resolving item 3. Items 1 and 2 alone are enough reason to treat a business-owned smart TV as a device that needs the same network hygiene as any other vendor-controlled IoT device — a security camera, a smart lock, a POS terminal — not as “just a TV” that’s exempt from the conversation.
What to actually do about it
Get the TV off the same network segment as anything that matters. If your router or access point supports a guest network or VLANs, put signage TVs on it, the same way you’d isolate a security camera system or a guest Wi-Fi network. A TV that can only see the internet and nothing else on your local network can still display your menu; it just can’t inventory your POS terminal while it’s at it.
Turn off what you’re not using. If you’re not using voice control on a signage TV — and most shops running a TV purely as a display for a menu app or slideshow aren’t — disable Far-Field Voice Recognition and any “always listening” wake-word feature entirely in the settings, rather than leaving a feature enabled that you never intended to use.
Disable ACR (automatic content recognition) and personalized ads. Most smart TV platforms, LG’s included, have a setting (often buried a few menus deep, sometimes under a name like “Live Plus” or “Viewing Information Services”) that governs whether the TV analyzes and reports on what’s displayed. For a signage TV that’s just looping a menu or slideshow, there’s no functional reason to leave content-recognition telemetry running.
Consider whether the TV’s own smart platform needs network access at all. This is the more aggressive but genuinely available option: if you’re feeding the display from an external device — a dedicated media player, a small PC, a streaming stick — over HDMI, the TV’s own operating system doesn’t need internet access to do its job. Never connecting the TV’s smart platform to Wi-Fi at all removes the network-scanning and telemetry-upload concern entirely, at the cost of losing the TV’s own smart-TV apps (which you don’t need if an external device is doing that job anyway).
Keep firmware current. Whatever the outcome of the standby-audio dispute, LG and other smart TV vendors do ship security patches, and a TV running years-old firmware because “it just works” is a TV that’s missed whatever fixes have shipped since.
A worked example: the counter-service restaurant with a menu TV
A four-location counter-service restaurant runs an LG smart TV behind the register at each location, displaying a rotating digital menu, connected to the same Wi-Fi network as the POS terminals and back-office laptop because that’s the network that was already there when the TV went up. Realistic fix, one afternoon per location: create a guest or IoT-specific SSID on the existing router (most consumer and small-business routers support at least one additional isolated network without new hardware), move each TV onto it, confirm the menu display app still pulls its content correctly over that network, and disable voice recognition and ACR in the TV’s settings since neither feature is used for signage. Total cost: $0 in new hardware if the existing router supports a second SSID with client isolation; a few hours of setup time across four sites. That’s the direct parallel to the $35 VLAN-switch fix this site covered for isolating a compromised print server — same underlying principle (a vendor-controlled device doesn’t get the same network trust as your core business systems), applied to a different device category.
What signage alternatives actually cost, if you decide to change hardware
Not every shop wants to spend an afternoon digging through a consumer TV’s settings menu across multiple locations. If a signage refresh is already on the table, it’s worth comparing the options on this specific axis — network exposure — rather than just price and screen size:
| Option | Approx. cost | Network exposure | Notes |
|---|---|---|---|
| Consumer smart TV, used as-is | Already owned | Full smart-platform telemetry, ACR, and voice features active by default | The setup most shops already have; free to improve via settings changes and segmentation, per the steps above |
| Same smart TV, smart features disabled and network-segmented | Already owned | Reduced to whatever the base OS still does with features off, isolated from the core business network | The realistic middle ground for most shops — no new spending, meaningfully lower exposure |
| Consumer TV in HDMI-only mode, fed by a separate streaming or signage device | Already owned, plus roughly $30-50 for the external device | TV’s own smart OS never touches your network; the external device becomes the one thing to manage instead | The external device still has its own network footprint, but it’s a smaller, better-understood one than a full smart-TV operating system — this site’s step-by-step guide to this exact swap covers the setup end-to-end |
| Dedicated commercial digital signage player, purpose-built with no consumer “smart TV” ecosystem attached | Varies widely, often $150 and up on top of a non-smart display | Minimal by design — no ACR, no ad platform, no consumer telemetry baked in | Overkill for a single-location menu board; starts making sense at multi-location scale where centrally managed, consistent signage matters more than saving $30-50 per screen |
None of these require abandoning a smart TV you already own. The point of the comparison is that “do nothing” and “buy dedicated commercial signage hardware” aren’t the only two options on the table — the middle two rows cost nothing beyond time and capture most of the benefit.
Quick answers
Is this specific to LG, or do other smart TV brands have the same issue? Network scanning and telemetry collection are common across most smart TV platforms (Samsung’s Tizen, Roku, Google TV, Vizio’s SmartCast) — LG is this week’s headline because of this specific investigation, not because the underlying behavior is unique to LG. The mitigation steps above (segment the network, disable unused smart features, keep firmware current) apply regardless of brand.
Do I need to throw out my existing signage TV? No — nothing in this investigation, even taken at its most alarming, requires replacing hardware. Network segmentation and a settings review address the confirmed concerns without buying anything new, assuming your existing router supports a second network or guest SSID.
What if my router doesn’t support multiple networks or VLANs? That’s the point where a modest hardware purchase (a router or access point that does support guest networks, or a firewall appliance that can isolate specific devices by IP or MAC address) becomes worth it — not because this specific TV story demands it, but because “no ability to isolate any device from any other” is a broader network limitation worth fixing regardless of what’s driving the decision this week.
When this doesn’t apply to you
If your signage or lobby display already runs on its own isolated network or VLAN, separate from POS and back-office systems, you’ve already implemented the core mitigation this piece recommends — the specific vendor dispute above doesn’t change your risk profile much either way.
If you don’t use a smart TV for any business purpose — no menu board, no lobby display, no back-office use of a smart TV at all — this is a home-privacy story for you, not a business-network story, and the stakes described here don’t apply to your setup.
If your TV is genuinely never connected to Wi-Fi or Ethernet (rare, but some signage setups feed a “dumb” display purely over HDMI from a separate device with no smart features enabled on the TV itself), none of the network-scanning or telemetry concerns apply — an unconnected display can’t scan a network it’s not on or upload data it has no path to send.
Sources
All facts accessed September 13, 2026.
- Original technical findings on standby-mode audio capture and network scanning behavior — Malwarebytes, “LG TV flaws could let attackers listen in, even in standby mode”
- LG’s formal denial and specific rebuttal statements, plus the “216,000,000” figure from the original investigation — Tom’s Hardware, “LG strongly denies TV spying claims, says tracking and snooping concerns ‘not true’”
- Additional reporting on LG’s response, including the standby wake-word admission — Engadget, “LG denies accusations of smart TVs continuously recording its users”
- Coverage of the “opted in” nuance in LG’s defense and what it does and doesn’t address — Gizmodo, “LG Denies Its TVs Are Spying on You (Unless You Opted In)”
- Official record of the Texas Attorney General’s ACR settlement with LG, including the informed-consent and disclosure requirements — Texas Attorney General, “Attorney General Ken Paxton Secures Major Agreement With LG to Protect Texans’ Privacy”
Bottom line
Whether LG’s smart TVs are doing everything the Gamers Nexus investigation alleges is still being sorted out in public, and the most serious claim — standby audio recording — is the most contested part. What isn’t contested is that a smart TV is a networked computer running vendor software, with confirmed network-scanning behavior, sitting on whichever part of your network you happened to plug it into. If that’s the same segment as your POS and back-office systems, this week’s headline is a good excuse to fix that regardless of how the LG-specific dispute resolves — the same way you’d treat any other vendor-controlled device you didn’t personally audit.