AntiMalwareJuly 20, 2026🇷🇺Translated from Russian

LG Monitors Automatically Install McAfee App via Windows Update Without User Consent

Home users of Microsoft Windows have discovered that certain LG monitors automatically install companion software upon connection to a PC, followed by prompts to try a trial version of McAfee antivirus.

The installation occurs through the standard Windows driver and software delivery mechanism without providing a clear, separate confirmation dialog. After a monitor is connected, Windows Update downloads the LG Monitor App Installer, an application designed to accompany the device.

The LG Monitor App Installer requests broad access to system resources, which is not inherently malicious but appears particularly intrusive when the user did not intend to install the program. The first noticeable action of the utility is offering a trial of McAfee antivirus software.

Gamers Nexus identified the behavior across both new monitors and models released approximately three years ago, including units previously used in office environments. Manufacturers commonly supply utilities for display calibration, firmware updates, and monitor management.

The problem arises when the legitimate driver-delivery mechanism becomes a channel for optional software and advertising. Users can check the list of installed applications in Windows and remove any unwanted LG utilities.

Organizations should also monitor automatic software deployment after connecting peripherals. At the time of publication, LG has not commented on the situation, and Microsoft has not clarified where device support ends and unsolicited advertising begins.

Related articles

HabrPrivacy & Surveillance

What Makes a Quality Anti-Detect Browser and Why Aurorium Built Its Own Solution

Aurorium explains the current state of the anti-detect browser market and why most existing tools fall short for professional use. The company highlights that true anti-detect browsers must modify browser fingerprints at the kernel level rather than relying on JavaScript injections. It details how solutions like incognito mode, virtual machines, and browser extensions fail to provide proper isolation and spoofing. Aurorium emphasizes its own approach of modifying Blink and V8 engines directly in C++ to create consistent, undetectable profiles. The article also covers legitimate use cases including QA testing, OSINT research, SEO monitoring, and secure web scraping. Advanced fingerprinting techniques such as Canvas and WebGL noise injection are explained alongside methods to detect superficial spoofing attempts.

AntiMalwarePrivacy & Surveillance

VPN Services Stabilize in Russia? Expert Warns Users Not to Relax as New Blocks May Be Coming

Russian users have recently noticed that personal VPN services and anonymizers are operating more stably after months of aggressive disruptions. Technical director Sergey Shcherbakov of the company Stakhanovets explains that the current improvement is likely only a temporary pause while deep packet inspection systems recalibrate. Earlier this year, DPI equipment was blocking traffic based on crude digital fingerprints of protocols such as OpenVPN and WireGuard, causing widespread collateral damage and connection drops. Operators are now believed to be collecting detailed data on ports, reconnection patterns, and obfuscation techniques to build more precise filters. Shcherbakov predicts the next wave of restrictions will arrive by late summer or early autumn, possibly shifting from outright blocks to throttling speeds during peak hours and delaying large file transfers. Meanwhile, users have adapted by maintaining multiple VPN clients, switching protocols and ports, and enabling obfuscation when needed.

HabrPrivacy & Surveillance

Mimolet Dating App Shows Strong Data Protection Practices in Photo Handling, Moderation, and Infrastructure Review

A detailed technical review of the Russian dating service Mimolet reveals several well-implemented security and privacy measures across its photo upload pipeline, content moderation systems, and infrastructure choices. The app processes every uploaded image by validating its actual content rather than file extension, strips EXIF metadata, resizes it, and stores only the cleaned version. Public images undergo pre-publication checks using two AI models plus an additional verification pass before they appear in group chats or profiles. Complaints and blocks are available to all users without requiring a subscription, and moderator decisions are logged for accountability. The core API and database run in Russia while media files are stored in a domestic S3-compatible object storage, and the main AI features operate on dedicated GPU infrastructure managed by the team. The review highlights two areas needing improvement: clearer data retention timelines and a dedicated, trackable appeals process for blocked accounts.

HabrPrivacy & Surveillance

Mimolet Dating App Review Highlights Privacy Protections, AI Moderation, and UX Trade-Offs in Detailed Analysis

A comprehensive review of the Mimolet dating application examines its registration process, vertical profile feed, free filters, and advanced communication tools including built-in calls and AI-assisted messaging. The analysis praises detailed profiles visible directly in the feed, free access to comprehensive search criteria, and strong privacy measures such as automatic EXIF metadata removal from photos and primary data storage within Russian server infrastructure. It also covers public interest-based groups, pre-publication image moderation using multiple AI checks, and transparent complaint handling that does not require a subscription. Concerns are raised about lengthy registration potentially reducing user completion rates, the inclusion of weight as a searchable filter, unclear data retention timelines, and the lack of a formal appeals process for blocked accounts. The app offers three paid tiers focused on visibility and extra AI features while keeping core communication and moderation tools free, with approximately 200,000 registrations and 15,000 daily active users reported alongside retention rates of 44.96% at day three and 19.11% at day thirty.