LG monitors are automatically installing software through Windows Update without explicit user consent, raising concerns about transparency and system autonomy. The discovery has sparked debate among users about hardware manufacturer practices.
LG has been pushing software installations to users' systems through Windows Update, bypassing traditional consent mechanisms. The installations occur silently, with users discovering the software only after the fact.
■ What's Happening
When Windows Update runs, it includes optional drivers and software packages. LG monitor drivers appear on this list, and some installations proceed without users actively selecting them. Once installed, the software remains on the system, consuming resources and running background processes.
■ The Issue
While Windows Update technically allows users to decline optional installs, the process requires active management. Many users don't review each update carefully, treating them as routine system maintenance. This creates a gray area where manufacturers can reach large user bases with minimal friction.
The practice raises questions about:
- System control: Users may not realize what software is running on their machines
- Resource usage: Unwanted background processes consume CPU, memory, and disk space
- Data collection: LG's software could gather usage data or send telemetry
- Precedent: Other hardware makers may follow similar distribution methods
■ User Response
Tech communities have flagged the issue on platforms like Hacker News, where the story gained significant traction. Users report difficulty removing the software once installed, requiring manual uninstallation or registry editing.
■ The Gray Zone
Manufacturers argue that distributing drivers through official channels like Windows Update is legitimate and convenient. However, treating these distributions as "optional" while making them appear automatically crosses a transparency line for many users.
LG has not publicly commented on the practice or clarified what data the software collects or why automatic installation is necessary.
■ Next Steps
Users concerned about unwanted software should regularly audit their installed programs and Windows Update settings. Disabling optional updates or regularly reviewing pending installations can help prevent similar situations.
An SQL injection vulnerability in the All-in-One WP Migration and Backup plugin exposes WordPress sites to remote code execution and complete takeover by unauthenticated attackers.
An identity theft search site claimed to possess over 150 million driver's license photos stolen from a major ID verification service. The crime site has since been shut down.
Iran-linked hackers have compromised approximately 100 American water utilities in a sustained campaign targeting critical infrastructure. The EPA is allocating $11 million in funding to strengthen cybersecurity defenses across water systems.
Attackers exploited BGP routing vulnerabilities to redirect Virtualizor VPS management software update requests to malicious servers. The compromise affected users attempting to download legitimate updates for the widely-used hosting control panel.