Back to news

Browser-Built Malware and Smart TV Proxies Highlight New Attack Surfaces

A fragmented malvertising campaign forces victims' browsers to assemble malware while LG moves to purge residential proxy apps from its smart TV platform.

Browser-Built Malware and Smart TV Proxies Highlight New Attack Surfaces

What happened

A malvertising campaign called SourTrade, active since late 2024 and documented by Confiant on July 23, 2026, has been delivering malware to retail traders by impersonating platforms such as TradingView, Solana, and Luno. Rather than serving a complete malicious file from a single URL, the operation transmits the payload in fragments and uses the victim's own browser — leveraging the legitimate Bun runtime — to reassemble and execute the final Windows binary. Separately, LG Electronics USA announced plans to suspend webOS apps that convert smart televisions into residential proxy nodes, following research showing that more than 42 percent of apps in its webOS store were quietly routing third-party internet traffic through users' home networks.

Why it matters for your business

SourTrade's fragmented delivery approach is specifically designed to defeat signature-based security tools that scan for complete malicious executables in transit — meaning endpoint detection and network monitoring solutions that rely on recognizing whole files may miss the threat entirely. Organizations whose employees trade or research crypto assets on work machines face elevated exposure. On the smart TV front, any internet-connected device on a corporate or home-office network that runs compromised proxy software effectively hands unknown third parties a foothold inside that network segment. Security teams should audit which devices share network access with sensitive systems and apply firmware and app updates to LG televisions immediately.

What to watch next

Security researchers will likely examine whether SourTrade's browser-assembly technique spreads to other operating systems or target communities beyond retail traders. LG's enforcement timeline and the criteria it uses to vet apps post-ban will be worth monitoring, as other smart TV manufacturers may face pressure to implement similar policies. Regulatory bodies focused on IoT device security could also use the LG findings to accelerate mandatory baseline standards for consumer electronics sold into enterprise and home-office environments.

Sources

Want this kind of clarity applied to your own systems?

HashWhales can review your website, infrastructure, security posture, and growth bottlenecks, then send a prioritized action plan.

Free AuditChat on WhatsApp