A study conducted by Mnemonic, a Norwegian cybersecurity firm, has revealed that several widely-used Samsung smart TV apps, including the officially endorsed "Pac-Man" game, incorporate embedded residential proxy code. This code enables the TVs to function as exit nodes for network traffic, allowing external users to access the internet, with certain segments of the code operating continuously in the background. The apps in question have been installed on hundreds of millions of devices. The research highlights flaws in Samsung's app store review mechanism, as these apps frequently take the form of basic shell programs that merely load remote content, rendering them challenging to detect during the review process. In response, Samsung has prohibited the submission of such apps for review, implemented more stringent developer guidelines, and removed the relevant apps. Prior to this, LG had also implemented comparable measures. Residential proxy technology is inherently legal and can be employed to circumvent censorship, scrape AI data, among other uses. However, it is also commonly utilized by hackers to conceal their identities during attacks, and the associated traffic is exceptionally difficult to trace. The study discovered that "Pac-Man" incorporates residential proxy code from the Israeli company Bright Data, which remains inactive by default and is activated only after user authorization. If developers were to alter the code, they could potentially transform hundreds of millions of TVs into malicious botnets. Some of the traffic is suspected to be used for scraping LinkedIn profiles and AI training data, and Bright Data has yet to issue a response regarding the matter. Furthermore, residential proxy code is also prevalent in consumer electronics such as smartphones and digital photo frames.
