Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rickdeckard
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
rickdeckard
7d ago
From what I understand, the feature renders a signed reference image from raw sensor-data "alongside the final image". Still no solution if the image posted online is not that reference image or that reference image is actually
2.
▲
by
rickdeckard
7d ago
It's their in-house cellular modem for 2G/3G/4G/5G. No details on satellite comms, but the predecessor C1X also handles satellite communication and competitor Qualcomm also does satellite comms on the same silicon, so I&
3.
▲
by
rickdeckard
7d ago
The fantastic grey area that was engineered over the past decade is "profiling", so my guess is the answer will be "we didn't use your customer data for training, but we cannot rule out that it has been used to create p
4.
▲
by
rickdeckard
8d ago
It's quite incredible to consider that all these concerns already existed years ago, but now that a handful of companies working in AI managed to enslave the entire financial system over the past year, their continued work is protected
5.
▲
by
rickdeckard
8d ago
phrases along the lines of "I don't want you to take harm while trying to accuse us" is quite an "impressive feat". Maybe shows how fast these companies have grown without maturing. I can imagine old-world Intel and
6.
▲
by
rickdeckard
8d ago
Agree, I think the practice is also very clear from the overall strategy of AI-companies and their ToS: Scale with subsidized pricing as fast as possible to gain more user-data for training --> Own the better model --> scale pricing.
7.
▲
by
rickdeckard
8d ago
just to clarify: ACR is actually not taking a screenshot, it calculates a fingerprint of the picture and sends it to a server. The fingerprint is then checked against a database of some common content, to understand whether you're watc
8.
▲
by
rickdeckard
8d ago
What LG (and Samsung and all the other electronics companies) are doing is profiling the user to sell targeted advertising. This is technically not personal information, and that's a grey area for those companies when communicating t
9.
▲
by
rickdeckard
8d ago
Funny enough, in that one region where this regulation exists, no such incidents of user data being sold was discovered so far...
10.
▲
by
rickdeckard
8d ago
The terms of service in Europe [0] are actually very different to those in US [1], I wouldn't be surprised if the behavior within the EU is within EU GDPR regulation. GDPR "only" covers your personal information (and personal
11.
▲
by
rickdeckard
8d ago
> How is this not a gigantic fine from the EU for some kind of GDPR reason The underlying "research" is unfortunately not that clean, but I'd say for two reasons: 1. Because looking at the LG ToS alone, it seems that the d
12.
▲
by
rickdeckard
8d ago
Also applies to GM: https://www.theguardian.com/us-news/2026/may/08/general-moto... You know who DOESN'T sell the data to outside companies? Car-vendors which have large competing in-house financial
13.
▲
by
rickdeckard
8d ago
Also applies to GM: https://www.theguardian.com/us-news/2026/may/08/general-moto... You know who DOESN'T sell the data to outside companies? Car-vendors which have large competing in-house financial
14.
▲
by
rickdeckard
8d ago
You mean THIS TCL? https://ads.tcl.com/ Or THIS Hisense? https://nexxen.com/acr-data/ They all use Automatic Content Recognition (ACR) and collect profiling data to feed into an Ad service offering. Sa
15.
▲
by
rickdeckard
8d ago
I'm thinking very hard, yet still don't know what you're trying to say. You want a consumer TV to be like a Microsoft laptop, is that the benchmark? Did you read and comprehend the rest of my statement? I'm trying one mo
16.
▲
by
rickdeckard
9d ago
The attack-surface doesn't get lower, it just doesn't continue to increase UNLESS the same vulnerability is not carried over to other products. The attack-surface only gets lower when the TV is no longer in use and is disposed. Th
17.
▲
by
rickdeckard
9d ago
To me as a user, responsible disclosure is most-valuable for every vulnerability that could be exploited remotely without me being in control. The video draws exactly that picture, a nefarious actor, remotely taking control over my TV and r
18.
▲
by
rickdeckard
9d ago
Yeah, and here's the part that's interesting to me as a EU-consumer: This wording doesn't exist in the European ToS: https://gb.lgappstv.com/main/terms#tabContentTerms6 So there's the angle that US
19.
▲
by
rickdeckard
9d ago
Yeah, I wouldn't vouch for a US court, but lucky me I'm in the EU, where the answer "the maximum amount of data collection and monetization of that data they can get away with" is not compliant to the requirements of G
20.
▲
by
rickdeckard
9d ago
Sorry, I phrased it incorrectly. - Regulations are binding acts for all member-countries. - Directives are goals the union should achieve, but actual execution including laws is up to the local countries. The handicap comes when important a
21.
▲
by
rickdeckard
9d ago
You stated that you're "sitting on one that doesn't even require an internet connection [..] I'm waiting for my model to go EOL before I release it" I read this as "Wait until the model is EOL, hoping it won&
22.
▲
by
rickdeckard
9d ago
True, but rooting the device de-facto means breaking the trust-chain of the OS. The inevitable outcome of this video is that TV vendors are pushed to harden the security and preserve the trust-chain, because part of the (valid) claim is tha
23.
▲
by
rickdeckard
9d ago
And how they asked the device for voice-input for a websearch via the UI, and the device proceeded to perform voice transcription, filling the searchbox with everything that was said...
24.
▲
by
rickdeckard
9d ago
I agree with the author, the point is that the way the video and the overall research was done, the entire message was diluted too much. There is substance in what they did. But they should have worked with an actual journalist to frame thi
25.
▲
by
rickdeckard
9d ago
> Yup. I'm sitting on one that doesn't even require an internet connection, only RF down the TV antenna input. I'm waiting for my model to go EOL before I release it. So no responsible disclosure, I see. Not knowing any
26.
▲
by
rickdeckard
9d ago
> The specific vulnerabilities exploited by rootmy.tv have been patched, yes, but there are plenty more unpatched vulnerabilities remaining. But vulnerabilities that can be remotely exploited without user interaction (CVSS grade 9-10)?
27.
▲
by
rickdeckard
9d ago
Thanks for the write-up, it reflects my own impression of the video. The video is quite a mixed set of topics mangled together, which is a pity because IMO a cleaner separation would be more beneficial to get the point across. They should h
28.
▲
by
rickdeckard
9d ago
The notable weak spot for this regulation (like some others) is that the member countries agreed to execute it NATIONALLY, so EU member states had to turn the directive into national law and begin enforcement in 2026. Now the EU is already
29.
▲
by
rickdeckard
9d ago
> You started with a baseless claim that anyone who believes we live in a surveillance state is misguided Oh I made no such claim whatsoever. My complete statement was this, in context of the original research the article is based on:
30.
▲
by
rickdeckard
9d ago
| but this conspiracy theory that everything is made to spy on you is not helping... Have you actually looked at what is being discussed? There is no conspiracy theory, these are simple facts. Just about every electronic device is made to
More ›