logoalt Hacker News

Retr0idtoday at 5:58 AM3 repliesview on HN

Yup. I'm sitting on one that doesn't even require an internet connection, only RF down the TV antenna input. I'm waiting for my model to go EOL before I release it.


Replies

minetest2048today at 6:06 AM

I'm guessing that you're exploiting some sort of exploit (buffer overflow???) on the DVB-T demodulator

delta_p_delta_xtoday at 6:07 AM

> only RF down the TV antenna input

Holy shit. RF to zero-click exploit is a new one. I guess digital-everything wasn't always a good idea, this probably wouldn't ever have been a problem with analogue antennas and CRTs.

What are the people at LG even doing?

show 1 reply
rickdeckardtoday at 6:10 AM

> Yup. I'm sitting on one that doesn't even require an internet connection, only RF down the TV antenna input. I'm waiting for my model to go EOL before I release it.

So no responsible disclosure, I see.

Not knowing any more details, it still sounds like you'd still need the user to tune to the actual frequency on the correct receiver (to cause some buffer overflow?). But then still there's no internet to do anything. So you'd need some very specific f/up exploit to then change local settings on the device I imagine.

Either way, would be a great opportunity to demonstrate this in a video, now that there's attention on the topic, to further amplify the pressure on LG's "terrible security posture" as you say.

show 3 replies