GamersNexus's LG TV eavesdropping claims rely on a rooted device

GamersNexus published a two-hour YouTube video arguing that LG smart TVs can be used as eavesdropping devices, in part because of the sets' advertising functionality. The video, built around findings from security researchers MrBruh and U-Turn plus Wendell of Level1Techs, claims LG TVs can record from the microphone and webcam even while appearing off, capture audio with no network connection, and use network scanning to find dozens of unrelated devices on a home LAN. A blogger on leaflet.pub, who says he is a GamersNexus patron and not defending LG, wrote a long rebuttal after watching the full video.
The rebuttal's central point is that the most alarming demonstrations, hidden shell commands that don't appear in the TV's UI, and microphone recording while the network cable is unplugged, were all performed after Wendell had already rooted the TV via SSH earlier in the video. The blogger notes GamersNexus never showed those commands being triggered remotely or being possible on an unmodified, non-jailbroken set: everything shown after the rooting is, in his words, an already-compromised device doing what an attacker with full access could make any computer do.
On the network and telemetry claims, GamersNexus used Wireshark to monitor the TV's connections but never decrypted the traffic; Wendell himself says on camera that a man-in-the-middle setup would be needed to decrypt the certificates, and the video does not attempt one. That leaves the footage showing only DNS requests and how many times endpoints such as "LG Telemetry" and "LG Channels Telemetry" are called, not the actual payloads. The blogger argues the video never demonstrates that LG collects or transmits the device and network data the TV has access to, only that a networked computer can technically reach it. He also points out that the TV's channel-scanning URLs (traced through Amagi, LG's FAST-service provider) do reveal which channel is being watched, but says calling this "available to anyone on the LAN" overstates the risk, since seeing it requires control of the network path, such as the router or ARP spoofing, and the underlying URL structure is shared by other services that use Amagi, not unique to LG.
On the LAN-scanning claim itself, the blogger explains the cited logs as mDNS, SSDP and reverse-DNS traffic, standard protocols any smart device uses to discover other IoT gear such as TP-Link's Kasa and LIFX products, and argues this is normal behavior for a networked media device rather than evidence of something LG-specific.
On automatic content recognition (ACR), MrBruh states in the video that "even an HDMI connection was undergoing ACR," citing an academic study shown on screen. The blogger says he read that study and found its authors likewise could not decrypt the TV's payloads and explicitly flagged HDMI-based ACR fingerprinting as a topic for future research rather than a confirmed finding, making the video's evidence on this point, in his assessment, at best inconclusive.
On the microphone kill switch, Wendell says he expected the switch to stop the TV recording audio entirely and is surprised the remote can still capture audio with it off. The blogger counters that the TV explicitly labels the switch as controlling the "built-in mic" only, not the separate push-to-talk remote, which only connects as a microphone while its button is held.
The blogger closes by reiterating that he still distrusts LG and ad tech generally, and believes GamersNexus acted in good faith, but argues the video should have been checked against more people before publishing, given how much of its most damning material depends on a rooted TV and undecrypted traffic.
Key facts
- GamersNexus's two-hour video claims LG smart TVs can eavesdrop via microphone and webcam even when seemingly off or disconnected from the network, partly through the sets' advertising functionality, and that they scanned a home LAN to find dozens of unrelated devices.
- A leaflet.pub blogger's rebuttal argues the video's scariest demonstrations, hidden shell commands and mic recording with no network, were performed only after Wendell of Level1Techs had already rooted the TV via SSH, not on an unmodified device.
- GamersNexus never decrypted the TV's encrypted network traffic (no man-in-the-middle setup was used), so the video shows only DNS requests and how often endpoints like "LG Telemetry" are called, not the actual data sent.
- The academic study cited for HDMI-based content recognition (ACR) also could not decrypt the TV's payloads and flags the topic as needing future research, which the blogger calls at best inconclusive evidence.
- The blogger describes the cited network-scanning logs as standard IoT discovery protocols (mDNS, SSDP, reverse DNS) used to find devices like TP-Link's Kasa and LIFX, not behavior unique to LG.
Why it matters
GamersNexus is a large, trusted tech-review channel, so a claim that a mainstream consumer product line can be turned into a listening device spreads fast on the strength of that reputation alone. This response is a case study in how methodological gaps, testing on an already-rooted device and never decrypting the traffic under review, can turn a real underlying concern (ad-driven telemetry on smart TVs) into a more dramatic claim than the evidence shown actually supports.
Who it affects
LG smart TV owners trying to judge how much of the video's eavesdropping claim applies to their own, unmodified sets; the wider smart-device and IoT industry, which inherits generic criticism aimed at ad tech and network discovery protocols; and GamersNexus itself, whose credibility as an investigative outlet is what the blogger says he is trying to protect by raising these objections.
How to use it
Read claims about consumer-electronics eavesdropping with attention to how the demonstration was produced: whether the device was in its stock, unmodified state, and whether the network traffic behind a claim was actually decrypted rather than just observed as encrypted DNS calls and endpoint counts. Those two checks separate a demonstrated vulnerability from a rooted-device party trick.
How solid is it
This is one blogger's written analysis of the same public video, not an independent technical investigation or new testing of an LG TV. He does not dispute that LG's ad tech and telemetry endpoints exist, or that rooting the TV gives an attacker real capabilities; his objection is specifically to the video's chain of evidence, undecrypted traffic, a rooted test device, and an ACR study the video's own source describes as inconclusive, rather than a full debunking of GamersNexus's investigation.
Risks and caveats
The piece is opinion and commentary reacting to a video most readers of the response have not watched themselves, and the blogger flags his own uncertainty on some technical points, such as what a cited reverse-DNS reference means. The piece itself never names its author, the leaflet.pub blogger who wrote it.
“I can't be mad at that; I want to hold companies' feet to the fire; ad tech really does suck, and hearing the corporate heads talk about it is mind-numbing.”
— the blogger, on leaflet.pub