#residentialproxy — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #residentialproxy, aggregated by home.social.
-
Read This Before You Buy That TV Streaming Stick
https://krebsonsecurity.com/2026/07/read-this-before-you-buy-that-tv-streaming-stick/
#ZhejiangFengwoIoTTechnologyLtd #InternetofThings(IoT) #residentialproxy #ALittleSunshine #AIdigitalhumans #LatestWarnings #BitsightTRACE #WebFraud2.0 #FengwoGroup #PedroFalé #Blockly #Samsung #Huawei #Xiaomi #Vivo #H96
-
@ddosecrets Bright Data also happens to be the operator of a residential proxy network that pays developers of games for smart TVs to embed its proxy library. A story about LG banning residential proxies on webOS shows a screenshot of a consent pop-up for Web Indexing by Bright Data inside a Pac-Man game.
https://krebsonsecurity.com/2026/07/lg-to-ban-residential-proxies-from-smart-tv-apps/ -
Probably not the only company
Plugging an #LG monitor into a #Windows computer installs a potentially unwanted program
#malware #spyware #ResidentialProxy #ACR #cybersecurity #privacy
https://cybernews.com/security/lg-monitors-pushing-mcafee-ads/ -
This Week in Security: AI is a Mess, Hacking Car Chargers, an OpenSSL DoS, and Factories Under Attack
-
#LG to Ban #ResidentialProxies from #SmartTV Apps
The home appliance giant #LGElectronics USA said this week it plans to suspend any apps built for its smart TVs that turn one’s #television into an always-on residential #proxy node. The move comes less than a month after researchers found that more than 42 percent of games and other apps available for download on LG’s #webOS store allow unknown third-parties to route their Internet traffic through a user’s #TV.
#residentialproxy #security #privacyhttps://krebsonsecurity.com/2026/07/lg-to-ban-residential-proxies-from-smart-tv-apps/
-
It is used on huge parts to harvest training data for llms. This is huge problem for smaller hosters, some open source projects, openstreetmap etc because they crawl web sites at intense depth without even basic caching which wastes lots of resources, money and often makes the service inoperable for legitimate users.
I'm shocked that this is not mentioned in the report or the comments here, in my bubble I had various reports of this problem.
You can't block those IPs because there are so many and you would also block legitimate users. That is exactly why they are using them.
-
🚨 📡 🇯🇵 Free TV in Japan, at a Cost: "Black-CAS" Spam Campaigns
We've been tracking a high-volume spam campaign targeting Japanese users advertising illegal "Black-CAS" services. In Japan, satellite TV channels are accessed through Conditional Access Systems (CAS), the legitimate pay-per-channel infrastructure used by Japanese broadcasters. Black-CAS exploits that system, intercepting and cloning legitimate smartcard signals to unlock paid content without a subscription.
Beyond the piracy angle, these devices have been documented to come preloaded with malware and residential proxy clients — buyers think they're paying for cheap TV access, but they're also handing over their network to threat actors.The emails rotate Japanese-language subjects like "簡単に明日からタダになる、魔法のカード" ("a magic card that makes everything free starting tomorrow") or "有料放送が、ずっとただ無料です" ("paid broadcasts, free forever"). Every email carries a set of URL shortener links (clck[.]ru, u[.]to) rather than direct destination URLs — a clear detection evasion mechanism.
The protective shortener layer hasn't made them conservative with the number of domain registrations. Behind it, the infrastructure relies heavily on RDGAs (e.g. mchj43nmd4j53[.]xyz, 87dsq65dh3[.]xyz), while bolder actors directly use overtly themed domains: blackbcas[.]xyz, black-cas-card-tv[.]lol, black-cas-card-jp-super[.]xyz.
At the landing pages, users can directly purchase these devices, as seen in the images below.
This week our data puts Black-CAS alongside phishing and fake shop campaigns in the top threats targeting Japanese speakers — definitely a threat to consider.
#dns #threatintel #threatintelligence #cybercrime #cybersecurity #infosec #infoblox #infobloxthreatintel #illegalstreaming #asia #japan #blackCAS #tv #malware #residentialproxy #spam #rdga #サイバーセキュリティ #情報セキュリティ #マルウェア #迷惑メール #ブラックCAS
-
Nearly Half of #LG #SmartTV Apps Contain #ResidentialProxy SDKs
Everyone worries about the apps on their phone. Almost no one looks at the ones on their #TV. We scanned 6,038 of them across LG and #Samsung; 2,058 were selling your IP address.
On screen, it's a relaxing fish tank. Or a clock. Or solitaire. Or puppies. Under the hood, it is a residential #proxy : software that can send other people's internet traffic out through your living room. And we found it everywhere.
#privacy #security #sdk -
Nearly Half of LG Smart TV Apps Contain Residential Proxy SDKs
https://spur.us/blog/smart-tv-apps-residential-proxy-sdks
#HackerNews #LGSmartTV #ResidentialProxy #SDKs #SmartTVApps #PrivacyTech #Cybersecurity
-
If the FBI knocks on your door and asks about Grandma's digital picture frame - you might have some explaining to do!
China-manufactured TV streaming "super boxes" and digital picture frames sold by Walmart and Amazon come pre-loaded with malware to create a residential internet proxy that routes bad actor's internet traffic through the household connection, making criminal activity appear to originate from an ordinary home address rather than a suspicious data-center server.
There are an estimated 20M of such compromised devices currently active in the U.S.
Innocent consumers have faced serious scrutiny, and in some cases law enforcement action, simply because their compromised device was the last visible node in a criminal operation.
https://www.techtimes.com/articles/318598/20260618/smart-home-devices-amazon-walmart-arrive-pre-wired-crime-20-million-risk.htm #Internet #Malware #ResidentialProxy #BotNet #CyberCriminals #CyberCrime #Criminals -
This is not FIFA. This is a domain hijacked by Hazy Hawk. Probably serving up residential proxyware. Definitely nothing good. check your DNS for lame nameserver delegations.
#dns #phishing #residentialproxy #infobloxthreatIntel #infoblox #worldcup #illegalstreaming
-
Infoblox revealed in a blog post that by this year, they observed clients resolving #residentialproxy domain names in 65% of their customer networks.
Around 60% of governmental and banking customers have observed these #RESIP domain name resolutions. That is seriously concerning, given the fact that proxies enabled access to local network resources.
What I am missing most, is some kind of an indication of a country-level statistics. Which regions are most affected? Especially, when it comes to critical infrastructure such as #banking and #government ?
-
NetNut's ISP proxy product is implemented through GRE tunnels and policy routing on partner networks, converting publicly registered IP space into a commercial anonymity commodity.
https://spur.us/blog/how-proxy-providers-co-opt-entire-networks -
65% - that's how many of our Threat Defense Cloud customers have been observed accessing residential proxy services. But how many of them are aware of this?
Our latest report is a deep dive into the growing phenomenon we call 'resproxies'. Resproxies, which are often embedded in Android IoT devices, or baked into "free" applications, may be running in your environment, granting access to your own IP space, or even worse, like in the case of Kimwolf, granting access to your internal network. Turns out "bring your own device" sometimes means "bring your own residential proxy." 😬Our new research (with @synthient who covered what happens on the other end):
🔗 https://www.infoblox.com/blog/threat-intelligence/residential-proxies-in-the-wild/
#dns #threatintel #threatintelligence #cybercrime #cyber #cybersecurity #infosec #infoblox #infobloxthreatintel #residentialproxy #resproxy -
Holenderska policja odłącza wtyczkę. Zlikwidowano botnet liczący 17 milionów urządzeń
Twój stary router, zapomniana kamera IP albo smartfon z przestarzałym Androidem mogły być częścią potężnej, globalnej broni.
Holenderskie służby właśnie wyłączyły jeden z największych w historii botnetów, liczący ponad 17 milionów zainfekowanych maszyn. Trop prowadzi bezpośrednio do rosyjskiej firmy, która zarabiała na ukrywaniu tożsamości cyberprzestępców.
Armia cichych zombie w naszych domach
Cała operacja była możliwa dzięki zgłoszeniu od niezależnego badacza bezpieczeństwa. Jak poinformowało holenderskie Narodowe Centrum Cyberbezpieczeństwa (NCSC), we współpracy z policją udało się zlokalizować i unieszkodliwić infrastrukturę sterującą tą gigantyczną siecią.
Co ciekawe, centrum dowodzenia składało się z zaledwie 200 serwerów ulokowanych na terytorium Holandii. Kiedy dostawca usług hostingowych dowiedział się o przestępczym charakterze ruchu, maszyny zostały natychmiast odłączone od internetu.
Rosyjski ślad i problem „domowych proxy”
Według doniesień serwisu NL Times, zlikwidowany botnet był ściśle powiązany z rosyjską firmą ASOCKS. Przedsiębiorstwo to zajmuje się sprzedażą dostępu do tak zwanych domowych serwerów proxy (residential proxies). W praktyce jest to usługa, która pozwala cyberprzestępcom przepuszczać swój ruch przez urządzenia zwykłych użytkowników na całym świecie. Dzięki temu zmasowane ataki DDoS, kampanie phishingowe czy zautomatyzowane pobieranie danych wyglądają dla systemów obronnych jak zwykły, lokalny ruch sieciowy, co utrudnia ich zablokowanie.
Wi-Fi 8 zmienia priorytety. Stabilność staje się ważniejsza niż prędkość
Historia firmy ASOCKS nie jest na tym polu nowa. Badacze z firmy Human już w 2024 roku udowodnili, że sieć ta wcieliła w swoje szeregi prawie 200 tysięcy urządzeń całkowicie bez wiedzy ich właścicieli. Wystarczyło zainstalować jedną z 28 popularnych aplikacji ze sklepu Google Play, by nieświadomie oddać kontrolę nad przepustowością swojego łącza rosyjskiej centrali.
Jak nie zostać darmowym serwerem dla hakerów?
Przejęcie kontroli nad 17 milionami sprzętów pokazuje smutną prawdę o stanie naszej cyfrowej higieny. Urządzenia stają się częścią botnetu najczęściej poprzez zignorowane luki w oprogramowaniu lub instalację pozornie użytecznych aplikacji, które w regulaminie przemycają zgodę na udostępnianie łącza.
Z perspektywy użytkownika zasada obrony jest prosta: jeśli producent twojego sprzętu przestał wydawać łatki bezpieczeństwa, urządzenie nadaje się do utylizacji, a nie do podłączenia do domowej sieci. Równie ważne jest weryfikowanie uprawnień aplikacji na smartfonach i usuwanie tych programów, z których już od dawna nie korzystamy.
#ASOCKS #atakiDDoS #botnet #cyberbezpieczeństwo #cyberprzestępczość #Holandia #malware #residentialProxy #zainfekowaneUrządzenia -
It always amuses me to see #residential #proxy providers with service in certain regions. As an Internet infrastructure researcher, you folks have a hard time convincing me that you actually managed to leverage #IPv4 addresses linked to hosts residing in #NorthKorea.
-
Hmm, have to check my devices for weird traffic signals.
Got myself #crowdsec'd on my own webserver, because some device sent a request to that server, with a user-agent, that was immediately blocked:
87.133.254.228 - - [05/Feb/2026:15:31:17 +0100] "GET / HTTP/1.1" 200 8065 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_1) AppleWebKit/601.2.4 (KHTML, like Gecko) Version/9.0.1 Safari/601.2.4 facebookexternalhit/1.1 Facebot Twitterbot/1.0"
-
Residential proxies are a curse. Criminals use them as botnet for DDOS attacks. AI companies pay them to scrape the web for training data in a way that's nigh impossible to block or throttle.
Ipidea operated one of the largest residential proxy networks. Researchers found that Ipidea sold VPN services with "no clear disclosure about turning users' PCs into proxy nodes".
via https://en.wikipedia.org/wiki/Ipidea
Lobsters: https://lobste.rs/s/js7tql/google_disrupts_large_residential_proxy
-
The Kimwolf Botnet is Stalking Your Local Network https://krebsonsecurity.com/2026/01/the-kimwolf-botnet-is-stalking-your-local-network/ #krebsfiveheadindustries #AkamaiTechnologies #AndroidDebugBridge #residentialproxy #ALittleSunshine #LatestWarnings #DDoS-for-Hire #HUMANSecurity #Kimwolfbotnet #Aisurubotnet #WebFraud2.0 #BenBrundage #LindsayKaye #RileyKilmer #ChadSeaman #Synthient #922Proxy #BadBox20 #Uhaleapp #Kimwolf #Oxylabs #Aisuru #IPidea #Quokka #911s5 #Spur #XLab
-
The Kimwolf Botnet is Stalking Your Local Network
https://krebsonsecurity.com/2026/01/the-kimwolf-botnet-is-stalking-your-local-network/
#krebsfiveheadindustries #AkamaiTechnologies #AndroidDebugBridge #residentialproxy #ALittleSunshine #LatestWarnings #DDoS-for-Hire #HUMANSecurity #Kimwolfbotnet #Aisurubotnet #WebFraud2.0 #BenBrundage #LindsayKaye #RileyKilmer #ChadSeaman #BadBox2.0 #Synthient #922Proxy #Uhaleapp #Kimwolf #Oxylabs #Aisuru #IPidea #Quokka #911s5 #Spur #XLab
-
Aisuru Botnet Shifts from DDoS to Residential Proxies https://krebsonsecurity.com/2025/10/aisuru-botnet-shifts-from-ddos-to-residential-proxies/ #InternetofThings(IoT) #PhilippeCaturegli #BenjaminBrundage #internetofthings #residentialproxy #ALittleSunshine #DenasGrybauskas #TheComingStorm #DDoS-for-Hire #rolanddobbins #Aisurubotnet #WebFraud2.0 #CherryProxy #RileyKilmer #BrightData #PIAS5Proxy #HKNetwork #LibreNews #LunaProxy #Synthient #360Proxy #911Proxy #922Proxy #ABCProxy #IP2World #Oxylabs
-
Aisuru Botnet Shifts from DDoS to Residential Proxies
https://krebsonsecurity.com/2025/10/aisuru-botnet-shifts-from-ddos-to-residential-proxies/
#InternetofThings(IoT) #PhilippeCaturegli #BenjaminBrundage #internetofthings #residentialproxy #ALittleSunshine #DenasGrybauskas #TheComingStorm #DDoS-for-Hire #rolanddobbins #Aisurubotnet #WebFraud2.0 #CherryProxy #RileyKilmer #BrightData #PIAS5Proxy #HKNetwork #LibreNews #LunaProxy #Synthient #360Proxy #911Proxy #922Proxy #ABCProxy #IP2World
-
@dgouttegattat - I believe you found evidence of a #GenerativeAI #crawler leveraging #residentialproxy infrastructure, like the one offered through #brightdata or competitors.
It even advertises itself for #AI crawling use cases: https://brightdata.com/
-
⚠️ Do you download or use free apps?
Chances are you do! But did you know that some free apps install proxies on devices so cybercriminals can use them as part of a "residential proxy network" to spread spam and malicious email? 😱
For unsuspecting victims this can create a nightmare, as one man experienced when his doorbell got him listed on a Spamhaus blocklist!
Read this true story here 👇
https://www.spamhaus.org/resource-hub/compromised/when-doorbells-go-rogue/