Slashdot Mirror


SDMI Researchers Cancel Presentation After RIAA Threat

John Langford sent in the statement read by Dr. Edward Felten, a professor at Princeton University, who decided to skip presenting the paper he co-authored at a scientific conference due to legal threats made by the RIAA. The RIAA put out an open challenge in September 2000, requesting that researchers attack and crack the SDMI watermarking scheme, but demanded that anyone who researched the scheme suppress their results in order to be eligible for a cash prize. "Show off your skills", they said, but they didn't mean it. Felten and colleagues declined the cash prize and its accompanying restrictions, but have been threatened anyway - the RIAA would have brought a lawsuit claiming the research paper is a circumvention device forbidden by the DMCA, much like the DeCSS case.

Statement read by Edward W. Felten
Fourth International Information Hiding Workshop
Pittsburgh, PA
April 26, 2001

"On behalf of the authors of the paper "Reading Between the Lines: Lessons from the SDMI Challenge," I am disappointed to tell you that we will not be presenting our paper today.

Our paper was submitted via the normal academic peer-review process. The reviewers, who were chosen for their scientific reputations and credentials, enthusiastically recommended the paper for publication, due to their judgment of the paper's scientific merit.

Nevertheless, the Recording Industry Association of America, the SDMI Foundation, and the Verance Corporation threatened to bring a lawsuit if we proceeded with our presentation or the publication of our paper. Threats were made against the authors, against the conference organizers, and against their respective employers.

Litigation is costly, time-consuming, and uncertain, regardless of the merits of the other side's case. Ultimately we, the authors, reached a collective decision not to expose ourselves, our employers, and the conference organizers to litigation at this time.

We remain committed to free speech and to the value of scientific debate to our country and the world. We believe that people benefit from learning the truth about the products they are asked to buy. We will continue to fight for these values, and for the right to publish our paper.

We look forward to the day when we can present the results of our research to you, our colleagues, through the normal scientific publication process, so that you can judge our work for yourselves."

430 comments

  1. RIAA: MP3s=Child Pornography by Anonymous Coward · · Score: 1

    From the RIAA's web site: http://www.riaa.org/PR_story.cfm?id=403 "The conviction of Randy Williamson is a reminder that many music pirates are often engaged in other significant criminal activities [child pornography]," said Frank Creighton, senior vice president, Director of Anti-Piracy. Oh Gawd! So, all those MP3s I downloaded with Napster means that I'm at risk of becoming a child pornography fiend?

  2. Future contests by Anonymous Coward · · Score: 1

    Does this mean that any group that sucessfully crack a system in contest and feels like publicizing the crack can be silenced by threats of litigation? I would have thought the invitation to try and break their security would have implied permission to do all the necessary things in the first place.

  3. Bad, Bad, Bad by Anonymous Coward · · Score: 1

    This is seriously not looking good. We need to start getting our voices heard. If the RIAA keeps using the DMCA and keeps winning with it we're going to have to many precednts set and things will get more and more restrcitive.

    We know this idiot in the W.H. isn't going to be worrying about the people. We need to make the congressmen aware of the problems so we can get some bills that protect out rights rather than steal them. And that's pretty sad since we already have the constitution which protects things like the freedom of speach.

    How the hell does the DMCA override free speech. And better yet who the fuck was so blind that the past it?

    Any ideas how we can be heard?

  4. Re:RIAA Intimidation? Fight back! by Anonymous Coward · · Score: 1

    No, you're American so your freedom extends as long as the corporations allow.

  5. Re:Do the presentation OUTSIDE the US. by Anonymous Coward · · Score: 1

    Maybe the Saudis should sieze and forcibly extradite some porn site operator. Then maybe John Q. Congressman will see why the DMCA needs to be stricken down.

  6. http://www.theregister.co.uk/extra/sdmi-attack.htm by Anonymous Coward · · Score: 1
    I saw the paper at the Register the other day:

    http://www.theregister.co.uk/extra/sdmi-attack.htm

    Any bets on how long it will remain there?

  7. Boycott Sony by Anonymous Coward · · Score: 1

    ...and the other huge RIAA members.

    I'm in the market for a 21" monitor, and considering a projection TV. Now I can strike Sony from the list of vendors. I'll be writing them a letter letting them know that the actions of one division are hurting several others.

    This is all about money. Let the RIAA members know that they won't be getting yours, for music OR FOR ANYTHING ELSE.

  8. Re:So basically what you're telling me... by Anonymous Coward · · Score: 1

    And if the RIAA wins?? Should the researchers have to pay their expenses?? So then our courtrooms become games of high stakes poker where they compile truly ludicrous legal fees in the belief that they'll win. (Or to worry the opponent that they'll win.)

    The RIAA would then just go out and have their lawyers make up about 1.5 million in legal fees to scare the researchers and their $10,000 in legal fees.

    Poorly thought out opinions like this is what got us in this mess to begin with.

  9. Re:Freenet Mirror of paper by Anonymous Coward · · Score: 1
  10. I will then. by Anonymous Coward · · Score: 1

    A troll, but I will respond anyway.
    We NEED a martyr. Someone to stand up for all of us and for us to rally behind. You cannot rally behind words. You can believe in them but in the end you must fight for them.
    Right here, right now. If the scientists fight for freedom of speech - I will donate what I can and sell any computer hardware and videogames I can.

  11. Yes, but... by Anonymous Coward · · Score: 1

    ...this still doesn't address the issue of the "I've got more lawyers and can sue you into the ground no matter how frivolous and vexatious my claim is" problem: not merely to indemnify for legal expenses (like Microsoft is worried about how much it would cost to sue me even unsuccessfully), but rather the need for punitive damages to prevent Ford (or anyone else) from doing something the court thinks needs to be discouraged even after all resulting damages and legal expenses are covered. With Ford (and the NIAA, if they bring such a lawsuit), I want them to bleed punitive damages from every orifice, to reword the fictional Gordon Gecko of Wall Street fame.

    Thanks for your reply to my reply.

  12. Independent News Sources ??? NO COVERAGE OF THIS by Anonymous Coward · · Score: 1
    (not a flame or troll, but insightful)

    Okay, everyone is saying how all these big media companies, etc are all controlled by the RIAA and similar organizations. Probably true. Everyone is saying that big news outlets NEVER report on issues like these--that regard freedom of speech, etc. Also true.

    SO: WHERE IS THE INDEPENDENT NEWS COVERAGE?! Go to indymedia.org. Not a single shred of an article regarding this. Check out other sites. Not on CNN. Not on ABCNews. Nowhere. Does anyone even care about this???? AHHH!!!

    Sorry for the extensive punctuation; I'm mad ;-)

  13. Prof. Felten's silence good for free speech by Anonymous Coward · · Score: 1

    Janelle Brown has an interesting article on Salon arguing that Prof. Felten's move not to publish will help the EFF's legal challenge against DMCA's constitutionality. Felten's decision not to publish may be a brilliant ploy designed to help convince the court that the DMCA actually impinges on academic freedom.

  14. Re:Do the presentation OUTSIDE the US. by Anonymous Coward · · Score: 1

    After his house was raided and his and his fathers buisness computers were confiscated and they even confiscated his cell phone because it was "very advanced". It's not like they gave all that stuff back the next day.

  15. Re: Even more shame by Anonymous Coward · · Score: 1

    Ever seen a tiny side-current build into a whirlpool? Our illustrious ancestors were escaping many things when they fled England, and one of those things was the Icky Corporate Feeling that Henry Thoreau wrote about in Walden. Jefferson hoped that we would "crush in its birth the aristocracy of our moneyed corporations which dare already to challenge our government...and bid defiance to the laws of our country." It didn't take long for that to become a defunct pipe-dream, and by 1870 the lawyers were out in full swing, declaring that since corporations had to obey the laws like people, they should have constitutional rights too! (This became the Mother Brain of our social evil, IMHO, the Santa Clara decision of 1886 that establishes "corporate personhood" as a legal concept.)

    It started with the 14th amendment, ironically intended to free slaves--and while it created the loophole that immediately handed the people's rights over to the corporations, it was 1954 before the intended "freeing" of the negro slaves really got going. (Believe me, I'm not the only one who wonders if this was intended. All the judges and supreme court justices of the time *were* wealthy, property-owning men.) The original screwup here basically revoked any State government's rights to actually regulate the corporations within it; and since those same corporations quickly bought the Federal government (using their new Constitutional Right to fund political parties), they've basically had free reign ever since.

    Where the RIAA comes into it is when this poison bleeds over into the first amendment (which it did officially with 1978's First National Bank of Boston v. Bellotti). Because corporations are legally called "people", they can't legally be prevented from "speaking" in the form of ads, campaign contributions, whatever--you watch, IBM'll try to use that to get out of paying for the vandalism they recently caused in the Holy Name of Advertising.

    The RIAA /does/ support free speech -- but for THEM, not US!! Obviously, the Digital Spin on this is their "right" to copyright anything they plunk down the money for, and to keep anyone from coming up with something better -- what I call the Right To Turn A Profit, something that even corporations might not have the clout to pull off...but wait, an Industry could do it!!

    And when it comes time to enact the "corporate person's" Right To Kill People, they'll have to consolidate into a still bigger conglomerate group and buy a /global/ set of governments...May I suggest they call that new group the EMPIRE??!

    Sara Thustra
    zarathustra@pimpdaddywelfareHATESSPAM.com

  16. SDMI Researchers stories on Infoworld by Anonymous Coward · · Score: 2
  17. Mark Twain said by Anonymous Coward · · Score: 2


    The human race has one really effective weapon, and that is laughter.
    I believe human race is just now laughing out loud. Do you listen RIAA?... bwaahahahhaha ac

  18. Intelligent decision by Anonymous Coward · · Score: 2

    Their paper was leaked anyway. Why bother exposing themselves to lawsuit now? Sure, they don't get to present the paper, but the knowledge is out there for all to see, and I'm sure they'll be telling their colleagues about it privately at the conference.

  19. Another Example of the Golden Rule by Anonymous Coward · · Score: 2

    "He who has the gold, makes the rules"

    In this case, the RIAA has the gold (at least enough to launch a massive legal campaign against the authors of the study), so they made the rules ("You can't publish the results of your study, ever, under any circumstances, under pain of legal action").

    Another example of economic democracy in action.

  20. Re:This is a purely American viewpoint. by Anonymous Coward · · Score: 2
    Exactly.

    Here's an example of what happened to people who spoke up in Nazi Germany: White Rose.

    Once you deliver control of speech to government, that control is liable to being corrupted to serve the interests of the current rulers.

    Social approbation is an effective deterrent for hateful speech. Free speech identifies those who would potentially harm others.

  21. The RIAA denies it now!!! by Anonymous Coward · · Score: 2

    http://www.riaa.org/PR_story.cfm?id=407 they say call Verance at 858-677-6522 seems like they are a little pissed.

    1. Re:The RIAA denies it now!!! by Legion303 · · Score: 1
      "The Secure Digital Music Initiative Foundation (SDMI) does not - nor did it ever - intend to bring any legal action against Professor Felten or his co-authors."

      That's funny...usually when you get a letter like this from corporate attorneys:

      "In addition, because public disclosure of your research would be outside the limited authorization of the Agreement, you could be subject to enforcement actions under federal law, including the DMCA."

      ...you generally take it as a legal threat. The RIAA needs to go on fuckedcompany.com pretty soon now.

      -Legion

  22. Re:Egads... by Anonymous Coward · · Score: 4

    DeCSS fits that definition, for sure - download the software, and you can rip DVD's. (Disclaimer: I'm not at all agreeing that that should be illegal - I'm just saying that DeCSS is a real circumvention device.)

    Yep, you're right! The compiled, executable program called 'DeCSS', when running, is an actual circumvention device. The source code, which could potentially be compiled into an executable and then potentially run, is NOT a circumvention device unless ACTUALLY COMPILED AND RUN. This is my opinion.

    However some bent judge believes that those ASCII characters of DeCSS are actually circumvention devices. They're also circumvention devices when printed on a t-shirt. If I scrawl the CSS algorithim on a paper napkin, that's a circumvention device. I think that's rubbish, but perhaps you can see why the RIAA could claim a paper about their flawed challenge to be a circumvention device? They need only follow m'learned judge's thinking.

  23. Well played! Now tell your congresscritter! MODUP by Anonymous Coward · · Score: 4

    This was well played on their part. Everyone seems to have heard about how the evil RIAA is using the DMCA to block academic research. Heck, even my Mom has heard of it, and she doesn't know how to turn on a computer!

    Now, we need to take the next step! Take 10 minutes and tell your Senators and Representatives how you feel about this!

    You can find out who they are, and how to contact them, over at:

  24. Re:It is also akin to schools in the north saying. by Anonymous Coward · · Score: 4

    As usual the facts fall by the wayside. All that is taboo in public schools WRT religion is forced participation. You can't herd the entire student body into the auditorium and have "prayer hour."

    The school obviously can't (and doesn't want to) stop you from praying during homeroom, or discussing religion with your friends (as long as its at an appropriate time, ie, not during math class).

    Hell, at my public school, there were student run bible study groups. They were allowed to meet in unused classrooms, and there were no problems, as long as participation was 100% voluntary.

    I find it rather humorous how rich white suburban kids are trying to play persecuted because they aren't allowed to force all their classmates to pray with them every morning.

  25. Freenet Mirror of paper by Anonymous Coward · · Score: 5

    Yes:

    freenet:KSK@sdmi-paper.html
    or
    freenet:KSK@sdmi-attack.htm

  26. Only one thing left to do by Anonymous Coward · · Score: 5

    Justice is dead and the law is in bed with big money, so you can either be ruled by the monied interests or kill them. How many lawyers would be willing to prosecute people for distributing DeCSS if they became walking targets? If there is any lesson to be learned from the knuckle-draggers who are opposed to anyone having an abortion, it is that threats to life and limb work. If you are not willing to fight for your rights, you have already given them up.

    1. Re:Only one thing left to do by WNight · · Score: 2

      While I'm not saying that I agree completely...

      The French revolution was a wake-up call to the rich opressors.

      At some point, you have to be willing to fight for your rights or you won't have any. Maybe the DMCA isn't that time, but that time will eventually come. It's only because the rich know this that they try to take our rights away in small steps, if they weren't afraid of the masses, we'd be in a much worse situation.

    2. Re:Only one thing left to do by gsfprez · · Score: 2

      if America had the "loser pays" system of justice - whomever loses the case must pay the lawyer bills of the other side - then this would not be a problem.

      Unfortunately, the extremeist radical Democrats and the lawyer lobby have their deep pockets to keep funding the Clintons and Kennedys of America so that no such system of justice will ever happen.

      Imagine if the RIAA had to pay for the court costs of these researchers if they lost in court.. .they would never threaten them with such harassment.

      F the lawyers.. lawyers will bring down this country faster than a nuclear bomb.

      --
      guns kill people like spoons make Rosie O'Donnell fat.
    3. Re:Only one thing left to do by Rogerborg · · Score: 1
      • Maybe the DMCA isn't that time, but that time will eventually come.

      There's no "maybe" about the DMCA, it's far too complicated and geekish for Joe Sixpack to care about. Despite our deluded "angry geek" attempts to convince ourselves otherwise, popular revolutions only occur over big, obvious issues that anyone with a 75 IQ can understand: race, dumb ass wars, unemployment, political fuel crises. In future it'll be Medicare, social security, real fuel crises (when there's none left), and possibly mass culling of old folks (I predict a "Die With Dignity Act").

      --
      If you were blocking sigs, you wouldn't have to read this.
    4. Re:Only one thing left to do by Rogerborg · · Score: 2
      • If you are not willing to fight for your rights, you have already given them up.

      Well said, that Anonymous Coward! ;)

      --
      If you were blocking sigs, you wouldn't have to read this.
  27. Do the presentation OUTSIDE the US. by Anonymous Coward · · Score: 5

    DMCA is not world law. Look at all the "law breakers" hosting their porn sites in the haven that is the US just to get around Saudi anti-porn laws.

    1. Re:Do the presentation OUTSIDE the US. by xscarecrowx · · Score: 2

      And look at what happened to that 16 year old Norwegian DeCSS author... The US DOJ rattled its saber for the MPAA.

  28. http://www.riaa.org/Freedom-Intro.cfm by Anonymous Coward · · Score: 5

    "Congress shall make no law respecting an establishment of religion, or prohibiting the free exercise thereof; or abridging the freedom of speech, or of the press; or the right of the people peaceably to assemble, and to petition the Government for a redress of grievances." First Amendment, ratified December 15, 1791 The Recording Industry Association of America (RIAA) takes an uncompromising stand against censorship and for the First Amendment rights of all artists to create freely. From the nation's capital to state capitals across the country, RIAA works to stop unconstitutional action against the people who make the music of our times--and those who enjoy it.

  29. I Am A Lawyer, albeit a Canadian one... by Anonymous Coward · · Score: 5

    ...and this is a perfect example of the "chilling effect" that threatening litigation has in a country that doesn't provide that the losing side pay solicitor and his client full indemnity costs for the legal expenses and also punitive damages for malicious, baseless litigation.

    Folks, it's time that Americans pass laws that penalize oppressive litigators - including, for repeat offenders, corporate or otherwise, needing leave of the court for bringing further motions and lawsuits.

    I am a Canadian lawyer, but I wouldn't practice in California or New York State on a bet (and I have standing job offers in both places).

    You get the political and legal system you deserve. Better a Canadian Supreme Court that I disagree with than a U.S. Supreme Court for sale.

    Wake up, folks, it's too late when they're breaking down the door.

    1. Re:I Am A Lawyer, albeit a Canadian one... by Chris+Johnson · · Score: 3
      This assumes that you can sue a large corporation. Whatever gives you that idea?

      I support the Canadian lawyer's position (isn't this called 'Tort Reform'?) because I'm more or less resigned to the idea that I cannot sue a big corporation for anything. If I'm lucky, another big corporation might sue it- for instance, if it stole ideas of mine and tried to prohibit anyone else from using them, I certainly can't do anything about it but some other corporation that wished to use the ideas might choose to go to court.

      The main thing is, these Big Corporations (tm) are obviously developing a real _zeal_ for suing individuals, college professors, magazines, EVERYBODY. It's not even about whether I can sue a big corp and win (not!) it's about whether the corp basically gets to legally destroy the life of anyone it feels like destroying, through legal action.

      This process makes government and legal system the private police of the corporation, to be used punitively and subject to no limitation but mere whim: and we already have this situation. Ask the SDMI researchers, the subject of this very article.

      It would be an awfully small concession, to give up the purely hypothetical capability to 'sue a corporation' in order to force them to drop the tactic of legal action as a financial and pragmatic club. If you really think you're on an equal footing under the law when bringing suit against a corporation- try it. Your money will run out before you accomplish anything.

    2. Re:I Am A Lawyer, albeit a Canadian one... by Pig+Hogger · · Score: 3

      I am a Canadian lawyer, but I wouldn't practice in California or New York State on a bet (and I have standing job offers in both places).

      If I am not mistaken, the Canadian Charter of Rights doesn't only apply to the governments (like the US constitution), but also private individuals, companies and institutions, right?

      You get the political and legal system you deserve. Better a Canadian Supreme Court that I disagree with than a U.S. Supreme Court for sale.

      This supreme court???


      --

    3. Re:I Am A Lawyer, albeit a Canadian one... by WNight · · Score: 2

      One of the replies (from Dirtside) makes a good point...

      If the loser pays the costs, suing a corporation could stick an individual millions of dollars in the hole.

      IMHO, you'd work on a sharing plan based on total wealth. If an individual with $10k sued a corp with $10M, the corp would foot $1000 of the bill for every $1 that the individual paid.

      This way they'd both run out of money at the same time, when the trial cost $10,010,000... Neither one would be able to raise the price beyond the means of the other.

      Canadian judges are fairly good about handing out reasonable settlements (no $5M for hot coffee, etc). I think they could also hand out reasonable penalties (in relation to the wealth of the participants) for frivolous lawsuits.

    4. Re:I Am A Lawyer, albeit a Canadian one... by tdrury · · Score: 2

      This is a good argument. The SCCA (sports car club of america) has a solution. When a penalty is protested, a fee has to be filed (usually $50). If the reviews find in favor of the plantiff, the fee plus whatever else (points, trophy, etc.) is given to the plantiff. If the plantiff loses on a baseless protest, the original penalty stands and the $50 is kept by the SCCA. If the plantiff loses, but the protest was well founded/argued/etc., the penalty stands, but the $50 fee is returned.

      To translate this, if the small company brings a legitimate complaint to the courts but loses, the judge could decide if any additional court costs should be paid by the small company. If the complaint is frivilous the court could slam the plantiff (small company) with some (or all) of the defendants court costs.

      -tim

    5. Re:I Am A Lawyer, albeit a Canadian one... by Dirtside · · Score: 3

      Here's a reply.

      I've always thought that this kind of punishment -- punishing the loser in a civil case by forcing them to pay the opposing side's legal expenses -- is yet another method of giving more power to those who already have money and power.

      If I (a small individual) have a legitimate claim against a large corporation, and I go against them in court, they can easily run up millions of dollars' worth of legal expenses, without it making a significant dent in their bottom line. And since they have millions of dollars with which to more or less buy a victory (let's face it, the legal system in the US is fairly unbalanced in favor of those who can afford lots of expert witnesses, expensive delays, etc. etc.), if I end up losing, then now I (small individual) end up owing millions of dollars to a large corporation.

      This is a good thing? If I honestly thought I had a legitimate claim, but lost because of an unbalance?

      This kind of thinking seems like it would give corporations *even more power*. If a big company sues a little guy like me, and I end up spending 50 grand on my legal defense, and they LOSE, oh no! They're out 50,000 whole dollars! Nevermind that they spent ten times that much on their OWN legal defense.

      --
      "Destroy science and religion. Science would re-emerge exactly the same; but not religion." - Penn Jillette, paraphrased
    6. Re:I Am A Lawyer, albeit a Canadian one... by psin+psycle · · Score: 2
      Hello Canadian Lawyer (and anyone else who might know),

      I am also a Canadian and am worried about how this law (dmca) will affect Canadians... More specifically, I have found that due to international copyright treaties, it is nearly impossible for a sigle country to try to reduce the length of its copyrights. The excuse used to prevent this goes something like this: "we need to leave that the way it is to be a member of xxx treaty. If we change the law we are likely to be sued by xxx corporation and tried by the WTO"

      I am worried that one day this law will be rolled up into an international treaty (FTAA anyone?)

      So, my question is this: What can Canadians (or anyone who is interested) do to affect laws being created in other countries that may one day affect the things we can do in Canada (or the any other country being affected).

      --
      Need a website host? Try out http://WebQualityHost.net
    7. Re:I Am A Lawyer, albeit a Canadian one... by roju · · Score: 1

      I figure it should work this way.

      I sue corp XYZ (or XYZ sues me)
      I spend N dollars in legal fees
      they spend M dollars in legal fees

      If I win, they cover my legal fees, up to M dollars.
      If they win, I cover their legal fees, up to N dollars.

      That way you are only responsible to match the amount you paid for your defense. Seems to solve the whole problem.
      Plus, if you represent yourself, you pay nothing ;)

  30. Re:That's a shame. by Anonymous Coward · · Score: 5

    The saddest part is losing these freedoms to protect what is probably the least valuable, most disposable aspect of our culture: pop music. May your freedoms die so that the Spice Girls may live forever.

  31. Re:So what? Nothing's going to change. by Chris+Johnson · · Score: 2
    I think this situation has more or less repeated throughout history. It's kind of like how the younger generation always seems dumber, cruder, a scandal (from ancient Greece to the Revolutionary War to the current day). Power _always_ seems to be destroying the world. Look again in ten years and power will _still_ seem to be about to destroy the world- but won't have got that much farther than it is.

    The corporations, the power, are one part of that equation. You are another part, just by venting and holding the opinions you do. You're representative of a lot of people.

    In particular I always find it amusing when people decide that, just because politicians are corrupt and bribed, that they will STAY bribed. That's a naive view. You've just got to make it a real political hot potato to carry out the will of the corporate 'government', and the reality will continue to be an uncomfortable balance between the various interests involved.

  32. Paradox by The+Man · · Score: 4
    Tell me: if "circumvention devices" are prohibited by law, then why does the copy prevention scheme need to be secure? After all, the RIAA has convinced Congress to wield the force of the gun on its behalf against the citizenry. And, if copy prevention schemes were secure, why would a law against "circumvention devices" be needed? Surely, a proper implementation could not be "circumvented" anyway.

    I realize, of course, that this is somewhat orthogonal to the other issue here, which is simply freedom of the press. As a reasonably intelligent non-lawyer, it seems obvious to me that the supreme court would find that this law and the first amendment are in direct opposition. What I can't understand is why nobody has brought one of these cases before it. And this one would be a great choice; it doesn't involve any element of evil on the part of the defendants.

    1. Re:Paradox by MadAhab · · Score: 2
      This also brings up the converse; since the "anti-circumvention" technology in in contrast with the rights of the public, consumers, the first amendment, and copyright law, it has been suggested that such content can be protected by the LAW or TECHNOLOGY, but not both. So content locked up with copy prevention schemes - which do not permit fair use or other conditions of copyright - cannot benefit from the legal protection afforded copyrighted material.

      This is also in the spirit of copyright law's traditions and purpose; a trade-off between the public's rights, and the special rights granted to copyright holders to protect their creations (note I did not say "property" - this is a FICTION) from the ease of copying. If they copyright holders are safe from copying, there is no right to copyright.

      Boss of nothin. Big deal.
      Son, go get daddy's hard plastic eyes.

      --
      Expanding a vast wasteland since 1996.
  33. alot of us have been by pixel+fairy · · Score: 1

    including me. i find it much nicer to buy CDs at thier shows...

  34. WTF is with the moderators? by Danse · · Score: 1

    The post I'm replying to was marked troll. While I'm not a political science major or anything, his comment seems pretty plausable. Is it really a pretty closed loop that gets judges promoted up the ranks? Are there problems with the nomination process? Is there any good way to spot corruption in that system? He does seem to have a point about the journalists. Respond and rebutt instead of just marking it as a troll.

    --
    It's not enough to bash in heads, you've got to bash in minds. - Captain Hammer
  35. Re:Moral relativism by Danse · · Score: 2

    educated, informed and fair-minded

    None of those adjectives spring to mind when speaking of the population of the US.

    --
    It's not enough to bash in heads, you've got to bash in minds. - Captain Hammer
  36. Re:Turn The Tables On Them by greg · · Score: 1

    And the DMCA is a law made by congress, so the First Amendment applies here no?

    --

    I browse with my threshold at 2 so I can't read my own comments :-)

  37. Re:Online copies? by Python · · Score: 2
    --

    Python

  38. Kickass anecdote from class today by David+Price · · Score: 5
    This just happened about an hour and a half ago. I'm sitting in Rice's COMP 314 programming class, taught by Dan Wallach, one of the authors of the paper. He's spent the first half of class giving us the rundown on his predicament, and moves on to the lecture topic for the second half of class.

    In the middle of the lecture, something like this transpires (paraphrased):

    "And so you see that there can be occurences when...oh, here's an occurence. My phone's ringing."
    [answers his phone]
    "Hello?"
    "Actually, I can't talk right now. I'm sort of teaching a class."
    [class laughs]
    "Yeah, you can hear them laughing in the background?"
    "Okay, I'll be in my office around 4."
    [hangs up phone]
    [to class] "That was John Markoff from the New York Times. He wants to have a chat with me."
    [resumes lecture seamlessly]

  39. Re:Mirrored: by mlinksva · · Score: 1

    Also at http://cryptome.org/sdmi-attack.zip. Unzip into your web directory, create another mirror, a la http://gondwanaland.com/ml/sdmi-attack/sdmi-attack .htm.

  40. This is why you should support the EFF!!! by DAldredge · · Score: 4

    Goto www.eff.org and become a member! The EFF and groups like the EFF are about the only hope we have to stop this trash...

  41. Notes turned over for destruction? by acb · · Score: 2

    Didn't the RIAA demand that Felten et al. turn over all copies of notes related to the paper for destruction? Did Felten et al. comply with this demand, did the RIAA back down, or are they pushing ahead?

  42. That's what Jon Johansen thought by acb · · Score: 2

    And he still hasn't got his computer back.

    Unless you live in Afghanistan next door to Osama Bin Laden or someone, they can get you. You just have to stick your head up enough to present a good target.

    1. Re:That's what Jon Johansen thought by imipak · · Score: 3

      True (AFAIK). However, that was the point at which deCSS mirrors mushroomed all over the world. I got an RIAA nastygram theatening email in January, 2000 - so far I haven't heard back from them. The day when Californian state law has jurisdiction in London, UK, IU'll pull the mirror. Until them I'll happy to make a small contribution towards trying to preserve a bit of freedom.
      --
      If the good lord had meant me to live in Los Angeles

  43. EU Directive on Copyright by acb · · Score: 5

    The EU just passed a directive on copyright that is at least as draconian as the DMCA. It's very unlikely that this paper would be legal under it.

    The UK hasn't passed it into local laws, but will in time. (Given that it's an EU directive, it would take much more than a noise from a few academics, penguinheads and Napatistas to derail the process.) The Reg is in the UK. Thus don't expect this paper to stick around forever.

  44. Re:This is a purely American viewpoint. by Zemran · · Score: 2

    Not a bad troll. As a European I know you are talking bollocks. What is free speech anyway? This article is an example of the fact that they do not have it in America. In Europe we have free speech enshrined in ECHR but then the French say you cannot deny the holocaust. That is hardly a European law as in other states you can deny the holocaust. As for the views of a Belgian... who cares about what a Belgian says. I do not like what I see on some US sites but then I don't go back to them, I do not like what you are saying... Good bye

    --
    I love stacking my barbecues in the shed at the end of summer - you can't beat a bit of grill on grill action.
  45. Even when scientific papers are read... by freeBill · · Score: 3

    ...they can be suppressed.

    For instance, during the '70s and '80s as more and more researchers presented papers on the dangers of some popular oral contraceptives of the era, many of the publications which were supposed to be informing the OB-GYN community were strangely silent on the implied criticism of their drug-company advertisers. The research was seldom reported to the practitioners who most needed the data.

    For instance, the medical news group of Cap Cities (owned for at least part of that time by ABC) repeatedly refused to publish stories written by its staff about the dangers documented in these papers, even though the drug companies had come up with safer alternatives.

    Paradoxically, this meant the public heard about these problems anedoctally. The problems ended up worse than if the problems (and their solutions) had been better publicized. And the drug companies ended up with a bigger black eye than if the OB-GYN community had been notified.

    All of this happened primarily because doctors are so used to getting their info as freebies that they won't pay for subscriptions. Interestingly, Steven Brill has pointed out recently that lawyers expect to pay for subscriptions to their journals. I suspect this produces much less distortion in their magazines.

    Brill has argued that if the information-wants-to-be-free crowd wins on the Internet the result might be the same kind of misinformation that has plagued doctors. In other words, if Internet users continue to expect that they don't have to pay for content, the content they get may end up being worth less than they're paying.

    My idealistic journalism professors back in college used to tell us that we shouldn't change our coverage or our news judgment to protect advertisers. They argued that what newspapers (or, by extension, other media) offer is the respect their audiences have for their impartiality. If you compromise that for advertisers' short term interests, the value of the advertising is decreased because readers do not associate the periodical with accuracy.

    I have seen several instances of this kind of failure (where a newspaper was so completely in thrall to its advertisers that the advertising had no benefit and the paper went under) through the years. So, I suspect this is a case where the idealists' advice also turns out to be the pragmatists' observation.

    --
    Eternal vigilance only works if you look in every direction.
  46. Re:So basically what you're telling me... by acroyear · · Score: 3
    Of course, it could be argued that the founding fathers did not predict the existence of multi-national corporations whose stock value
    exceeds the GNP of many countries
    .

    Not really...by that point, Lloyds of London and the British East India Company were already far and away making more loot than anything Eastern Europian countries could have imagined...
    --
    You know, you gotta get up real early if you want to get outta bed... (Groucho Marx)

    --
    "But remember, most lynch mobs aren't this nice." (H.Simpson)
    -- Joe
  47. Re:So basically what you're telling me... by palesius · · Score: 1

    Here's a thought. It seems every week or so something obnoxious that we all _should_ write to our congresspeople about, etc. comes up. Maybe someone could make a nice page with links to everyone's reps mailing addresses and maybe a nice javascript form letter type thing. If it required people only a couple of minutes to do this it would happen a lot more. Those people who take the time to write their own letters, should take the time to do this. You can write 1 or 2 letters yourself, or make it easy for 500 people to write letters.

    --
    "We are what we pretend to be, so we must be careful about what we pretend to be." --Kurt Vonnegut
  48. Re:So basically what you're telling me... by palesius · · Score: 1

    i didn't mean e-mails i was talking about the good old USPS. while emails would be super easy,
    i was thinking more postal stuff. Hey you could even make up a page that preformats it to print the address right on the envelope... fold, stamp, lick, and you're done.

    --
    "We are what we pretend to be, so we must be careful about what we pretend to be." --Kurt Vonnegut
  49. As the old saying goes... by ocie · · Score: 3

    When scientific research is outlawed, only outlaws will be performing scientific research.

    --
    JET Program: see Japan, meet intere
    1. Re:As the old saying goes... by Courier · · Score: 1

      How terribly true.

    2. Re:As the old saying goes... by IronChef · · Score: 4


      This is just a new facet of an existing problem. Our freedoms have been eroded in other ways prior to this. For example, for a while it's been illegal to build a radio that can receive about 800-950MHz -- because that's where cell phones are. They recently added cordless phones freqs, too.

      It's insane, if you think about it. The right combination of elementary electronic components -- just a hardful of parts that is PASSIVE when powered up -- makes you a felon in the USA.

      IMHO, if EM radiation is passing through my meatspace, I've got the right to intercept it, letter of the law be damned. If privacy is important, the phone companies should be using encryption, not legislation.

  50. Re:So basically what you're telling me... by Aaron+Bredon · · Score: 1

    If you lose, you declare personal bankruptcy. All prior debts are voided. The RIAA is out $2,000,000. Your lawyer is out $50,000.

  51. How I wish you were right by Art+Tatum · · Score: 1

    The problem is that there are no waverers. There's hardly anyone who has even heard of the DMCA and those who have already have their minds made up one way or the other. And I think it's likely to stay that way.

  52. Re:NO! by daw · · Score: 4

    It's not actually that simple; if you read the threat letter from the SDMI people it mainly turns on a contract issue about the clickthrough agreement that was protecting the challenge files, not the DMCA circumvention device stuff.

    At the little news conference, Felten said he honestly couldn't remember whether he actually clicked through the agreement personally or not, but pointed out that there would have been no need to since the material was widely available elsewhere.

  53. felten by daw · · Score: 5

    One interesting thing Felten said in the little impromptu news conference when his paper was supposed to be read was when Declan McCullagh asked him if Princeton was not willing to back him up. Felten responded that Princeton had been very supportive of him and the other authors, but that there were lots of other people involved with the paper, and he wanted to go forward in a way that exposed fewer of them and their institutions. I took this as a hint that the real problem is that one of his coauthors is from Xerox and that a corporation is less willing than a university to expose itself to a lawsuit in the name of academic freedom.

    1. Re:felten by daw · · Score: 5

      Oh yeah, and another interesting tidbit was that the leaked threat letter from the SDMI to him wasn't the only one -- he said that all of the authors, all of their institutions, the conference organizers and the conference sponsors, had all received lawsuit threats from the SDMI, the RIAA, and also Verance (the makers of one of the wicked lousy watermarking systems they cracked).

      Declan's article (at http://wired.com/news/politics/0,1283,43353,00.htm l) also contains the interesting assertion that the Naval Research Laboratory (a cosponsor of the conference) had ordered the conference chair to ban the paper last week, but the program commitee refused.

    2. Re:felten by cetan · · Score: 1

      I was wondering about that too. Why wouldn't the respecitive institutions be backing these folks up?

      I didn't know about the Xerox connection though.

      Sucks that they couldn't get a full backing from everone involved and say the hell with the RIAA.

      --
      In Soviet Russia...michael would be rotting in Siberia!
    3. Re:felten by Rogerborg · · Score: 1
      • The whole participation of the Princeton group in the SDMI effort was a political statement from the beginning

      Seems that way to me as well, and no, I can't figure it out either. Are they hoping to stir up sympathy, or point out the ludicrousness of the DMCA and/or the "# of lawyers de facto defines legality" system that protects it?

      The only way they'll actually get this into the public eye is to provoke a ludicrous show trial and (even better) get a movie made of the whole debacle. I'm actually not joking, and I'd like to see Gillian Anderson playing "Justice seeking freedom fighting geek babe in a labcoat"

      --
      If you were blocking sigs, you wouldn't have to read this.
    4. Re:felten by janpod66 · · Score: 5
      I took this as a hint that the real problem is that one of his coauthors is from Xerox and that a corporation is less willing than a university to expose itself to a lawsuit in the name of academic freedom.

      I don't see that as an obstacle. The Xerox author could have removed himself from the paper (and instead been moved into the acknowledgement section) and Xerox could have formally protested the publication. Felten could then have gone ahead and published it anyway. Formally, he might have been guilty of copyright violation, but Xerox is under no obligation to pusue that.

      Technically, it was almost certain from the beginning that all these schemes could be broken. And once the preprint was published on their web site, the cat was out of the bag.

      The whole participation of the Princeton group in the SDMI effort was a political statement from the beginning. The decision to withdraw the paper is likewise a political and strategic decision with no technical significance. Let's just hope those guys know what they are doing when it comes to politics and strategy, because, so far, it isn't clear to me where they are going with this.

  54. Re:Seriously by sacherjj · · Score: 1

    They don't need a lobotomy, just a requirement to watch evening news every day for a year. That should lower your IQ under 100.

  55. Copy of the paper ... by AftanGustur · · Score: 2


    You can read the paper on line or you can download all the files a a zip file and read it off-line.

    Will we now have a new mirror-this-free-speech frenzy ?


    --
    Don't use nuclear weapons to troubleshoot faults.

    --
    echo '[q]sa[ln0=aln80~Psnlbx]16isb572CCB9AE9DB03273snlbxq' |dc
  56. Censorship and Naziism. by Lemmy+Caution · · Score: 5
    I am opposed to censorship, including censorship of unpopular, unpleasant, and even evil ideas.

    But the great crime of Nazism, or even Fascism or Stalinism, wasn't censorship. Censorship was one of the relatively incidental tools they used (frankly, Mussolini's state for a while took some pains to avoid censorship - they believed in a strong corporatist state, but they still fancied themselves as progressive and avant-garde and, for some time, encouraged continued discussion. They didn't even kill Gramsci.) The great crime of Nazism was its doctrine of ethnic superiority and its policy of genocide, of identifying entire populations as suitable for extermination or slavery. This doesn't even require censorship per se - just a critical mass of a populace willing to carry out orders (and lest you claim that it could only be a populace indoctrinated in a censorious society, I would remind you of the openness of Weimar society.)

    Do I think we're all that different? I see a lot of people who are willing to compromise their nominal principles for a steady paycheck and cheaper goods.

    Exploiting our completely reasonable horror of genocide to induce comparable horror of censorship may be effective, but it's intellectually dishonest.

    1. Re:Censorship and Naziism. by debrain · · Score: 3
      It is ironic that the tools of marginalization, suppression, and prohibition are all utilized by an elitist class. The will of the powerful is to suppress power, and power is knowledge (Foucault) - without the famed and widespread ignorance of the lackeys of the Nazi's (see Judgement at Nuremberg), who were in many cases moral people being repressed of their viewpoints, the prolific nature of antisemitism would have been much less in World War II. I do see a keen analogy between Nazi's repression and RIAA repression, but it is not just of speech - it is of actions, thoughts, beliefs, and even truths. The repression of speech merely accompanies the repression of ideas and freedoms and wills.

      I believe there is a usenet law that states that all arguments degenerate to Nazi analogies. Anyone remember the name of that law?

    2. Re:Censorship and Naziism. by mheckaman · · Score: 1

      From Jargon File (4.2.3, 23 NOV 2000) [jargon]:

      Godwin's Law prov. [Usenet] "As a Usenet discussion grows longer, the probability of a comparison involving Nazis or Hitler approaches one." There is a tradition in many groups that, once this occurs, that thread is over, and whoever mentioned the Nazis has automatically lost whatever argument was in progress. Godwin's Law thus practically guarantees the existence of an upper bound on thread length in those groups. However there is also a widely- recognized codicil that any _intentional_ triggering of Godwin's Law in order to invoke its thread-ending effects will be unsuccessful.

      --

      Don't take life so seriously; it isn't permanent.

  57. Re:Is reading the paper danagerous by ch-chuck · · Score: 1

    If I read the paper and have the knowledge it contains, does that make ME an illegal circumvention device?

    Yes - then they'd have to kill you.

    --
    try { do() || do_not(); } catch (JediException err) { yoda(err); }
  58. Re:You can't teach science without evidence? by DavidTC · · Score: 1
    As for the big bang, the way I learned it was that it was a theory, competing mainly with some sort of steady state theory, and that it represented what scientists mainly currently think, but it's by no means final, just current. This was in elementary school, I think. There also was some touching of an open vs. closed universe, though I don't think we used those names.

    As for the Higgs bosom, or gravitons, those normally aren't taught until people are long past being able to form their own opinions. We're talking late high school here. You shouldn't be in physics if you don't understand all of it is theory. We don't have some magical machine that lets us read the source code to the universe.

    We can't go and disclaim every single theory during teaching physics. If you want to become a physicist, then you learn exactly how much is currently regarded as 'proven', but normally people just need to know 'While most of this is probably right, some of it is just conjecture that fits the known facts, and some of it is just ways to logically tie together all the other theories.'.

    I have no clue what you meant about anal sex. We don't teach any sex related science in schools, and I'm not really sure if they can even be said to exist. It usually is mentioned in 'Health' or something, at least in passing, that anal sex exists.

    -David T. C.

    --
    If corporations are people, aren't stockholders guilty of slavery?
  59. Re:This is a purely American viewpoint. by DavidTC · · Score: 1
    If America currently had the same socioeconomic conditions (this is the key part) that existed in Germany before the war, and a man like Hitler with his ideas (and the charisma to get them across) came forward, there is no way that those ideas could be stopped under current law.

    Yes, darn it, we can't stop the virtual dictator of a country by charging him under that country's laws! We must put laws in place now to charge him, and hope he's a compete dumbass and turns himself in after he takes over!

    Seriously, the fact it's considered okay to make preaching a certain belief illegal is one, very small step away from making a different certain belief illegal. I'm not even going to mention any, just insert the one you'd least like to lose the ability to talk about. Now, think of a nice and logical justification for taking that way from the population. (Hint: Come up with the worse example of such speech you can think of, and throw in child molesters.)

    If you can't come up with a situtation, I can come up with a reason to filter almost any except something like 'a discussion on privatized healthcare'. But any important things people reply to this message with I can come up with a reason to filter.

    Here in America, we've decided the government has no right to filter speech based on content. (At least in theory.) It's much safer that way.

    -David T. C.

    --
    If corporations are people, aren't stockholders guilty of slavery?
  60. Re:Online copies? by Pig+Hogger · · Score: 1
    Here is mine, cowardly beyond the reach of the RIAA (or is it MPAA? who's the Vilain du jour?) http://emdx.org/illegal/sdmi-attack/.

    --

  61. Re:That's a shame. by Pig+Hogger · · Score: 2

    It's not easy being green. It takes way more food coloring than you'd think.

    That's, as would my bank say, you're insolyent.


    --

  62. Re:Have Corporations replaced Religions? by Pig+Hogger · · Score: 2

    Oh sure, they have your standard rack and Iron Maiden (actually an 18th century period-repro of the original), guillotene (sp?) and thumbscrews. But there are other devices there - some reproductions, some actual devices that were once used. All with descriptions detailing how they were used, why (ie, the "crimes") and when. The horrors one used to (and in some regions today, still have to) have to endure just for being a woman, or being a "fool" (or a loudmouth, or similar) are sobering, to say the least.

    And disgusting.

    I entered into that exhibit with curiosity - I exited ashamed of being human.

    You would'nt if the devices were to be used on lawyers and RIAA/MPAA people...


    --

  63. Re:Regretfully, Pig Hogger, You are mistaken... by Pig+Hogger · · Score: 2
    Actually, it is not leaning to the left, but towards Canada, and not towards Québec (which is at the right of the picture).

    --

  64. Shoot me. I'm an idiot. (was: Online copies?) by dschuetz · · Score: 2

    Okay, yeah, the main link gave a link to the paper. Sorry.

    But my other questions still stand!

  65. Online copies? by dschuetz · · Score: 3
    So, does anyone have a copy online yet? Should that get "leaked" to, say, the Times, MSNBC, C-NET, etc.? I'm concerned that without a high-profile lawsuit, this will not get much media attention.

    Or perhaps someone could sue RIAA, et al, for refusing to permit publication? There must be some way to use the system to the benefit of these researchers, even if they've decided to drop it for now.

    1. Re:Online copies? by artg · · Score: 1

      Note the BBC's subheading for the article - "Security through censorship"

    2. Re:Online copies? by ncc74656 · · Score: 2
      http://cryptome.org/sdmi-attack.htm

      mirror early, mirror often.

      Done. You can also get an archive, with HTML and images ready to dump into your own website to make mirroring even easier, here.

      --
      20 January 2017: the End of an Error.
    3. Re:Online copies? by cetan · · Score: 1

      Just making sure I put my own works to actions:

      http://www.cetan.com/mirrors/sdmi-attack.html.

      --
      In Soviet Russia...michael would be rotting in Siberia!
    4. Re:Online copies? by cetan · · Score: 5
      http://cryptome.org/sdmi-attack.htm

      mirror early, mirror often.

      --
      In Soviet Russia...michael would be rotting in Siberia!
    5. Re:Online copies? by jbridge21 · · Score: 1

      Good job! Mirror early, mirror often.

      You appear to have the whole document made into a link, though. Might wanna fix that.
      -----

    6. Re:Online copies? by jbridge21 · · Score: 1

      Actually, I only peddle in animal porn ;-)

      Have a nice day!
      -----

    7. Re:Online copies? by jbridge21 · · Score: 5

      http://diddl.firehead.org/censor/hacksdmi.org/prin ceton-paper/
      -----

    8. Re:Online copies? by Cockney · · Score: 3

      This has been picked up by the BBC, you can read the article here.

    9. Re:Online copies? by CaptainZapp · · Score: 2
      My, you're a naughty one! You don't only assist piracy of intelectual property, but - as we can all read in the mainstream press - it is quite likely that you support terrorists and are likely to peddle in kiddie porn.

      You are probably a cypherpunk, sir...

      --
      ich bin der musikant

      mit taschenrechner in der hand

      kraftwerk

    10. Re:Online copies? by imipak · · Score: 1
      My mirror.

      RIAA & similar scumbags, please don't bother trying to sue me under American law like you did when I mirrored deCSS. I don't give in to legal threats.
      --
      If the good lord had meant me to live in Los Angeles

    11. Re:Online copies? by imipak · · Score: 1

      ...oh, and The Register also mirrored it, here. $theregister++; # :)
      --
      If the good lord had meant me to live in Los Angeles

  66. additional clarification from scientists' FAQ by dallen · · Score: 5
    This Princeton FAQ makes the scientists' position a bit clearer, before they received the SDMI letter.

    Q. What about the cash prize offered by SDMI?

    SDMI did offer a small cash prize to be split among everybody who defeated at least one of the six technologies. However, to be eligible for the prize, researchers had to sign a confidentiality agreement that prohibited any discussion of their findings with the public. The terms of the challenge also allowed researchers to publish their findings if they decided to forgo the cash prize. We decided from the beginning that we were more interested in publishing our results than accepting any share of the cash prize.

    Q. Didn't the Digital Millennium Copyright Act (DMCA) criminalize the study of these kinds of technologies in the United States?

    Fortunately, the DMCA did not apply to this challenge, since SDMI granted explicit permission to study their technologies. We are not sure whether it would have been legal to study these technologies outside the context of this challenge. We think the DMCA, by criminalizing some kinds of study of important technologies, represents an "ignorance is bliss" approach to technological copyright enforcement, which will not work in the long run. We lobbied against certain aspects of the DMCA while it was before Congress, and we still consider it to be a seriously flawed law.

    Above, we mentioned the important role of analysis in the design of security systems. The main problem with the DMCA is that it hinders this analysis, restricting it in order to provide an extra layer of legal protection for existing copyright systems. But this causes the scientific process to stagnate. Imagine a federal law making it illegal for anyone (including Consumer Reports) to purposefully cause an automobile collision. While this may be a well-intentioned attempt to stop road-rage, it also bans automobile crash-testing, ultimately leading to unsafe vehicles and the inability to learn how to make vehicles safe in general. The situation with the DMCA is analogous.

    --
    Q: What do you get when a Postmodernist joins the Mafia?

  67. Re:That's a shame. by FreeUser · · Score: 5

    It is almost like we are going into another dark age, where knowledge is suppressed for financial gain, and ultimately lost.

    We are not "heading into another dark age," we're already there. Many have argued for a long time that the cooperation between industry and academic instututions would undermine the independence of academia, and hence our entire intellectual foundation as a society. These dire predictions were being made in the 1980s when Reagan and his cronies gutted funding for our colleges and universities.

    The result has been unambiguous: colleges and universities have turned more and more to private industry for funding, sacrificing their intellectual independence in the process. This example, where Xerox may likely have played the pivotol role in caving to the RIAA, is but one obvious example of what is happening over and over again on campuses everywhere.

    Couple the erosion of our foundation of intellectual freedom by making our institutions financially beholden and in some cases even intertwined with corporate entities (which are easilly pressured by threats to revinue, licensing, and/or bad publicity) with laws which criminalize intellectual activities such as reverse engineering and certain applications of cryptographic mathematics and you have, by and large, successfully gutted independent thought in your society. The rest of the dominos will fall like clockwork, when and as they offend or run counter to the goals of those who set these destructive policies.

    The "cranks" were right, and the foundation of our intellectual thought, and of dissent in general, are virtually gone.

    --
    The Future of Human Evolution: Autonomy
  68. Re:welcome to the USA, Leave your rights at the do by Lumpy · · Score: 1

    Hey that is cool! and I should have added it to the list. (sending my contribution next pay period)

    there is one thing I did leave out and I have not done, write letters to the editor of your local newspaper. that is the ONLY way the story is going to get into the paper and in front of the public (funny how they make sure these important issues are not peraded in front of the general public. Time-warner owning most of the news sources wouldn't mean that they are biased.. LOL)

    --
    Do not look at laser with remaining good eye.
  69. welcome to the USA, Leave your rights at the door. by Lumpy · · Score: 2

    Hey write your congressman and voice your disapproval, oh wait, people here dont actually do anything they just bitch about it.

    If every slashdotter write a paper letter to congress we would get attention, (slashdot their office mailboxes and phones... I've done my part with writing 12 letters and making 5 phone calls.)

    what have YOU done to fight this? (posting and email dont count, you actually have to go outside, and interact with people in a civil manner)

    --
    Do not look at laser with remaining good eye.
  70. Re:That's a shame. by Ravenscall · · Score: 2

    I agree, where are we heading when a corporation can start telling an academic institution what it can or cannot teach or bring into public light?

    It is almost like we are going into another dark age, where knowledge is suppressed for financial gain, and ultimately lost.

    --
    You say you want a revolution....
  71. Re:They chose their only option by ethereal · · Score: 3

    Apparently Felten said Princeton had been very supportive, but some of the researchers were from other organizations that would not have been so supportive.

    Caution: contents may be quarrelsome and meticulous!

    --

    Your right to not believe: Americans United for Separation of Church and

  72. What we need is a new paper. by BeBoxer · · Score: 3

    The only one of the watermark systems that the SDMI folks care about is the Verance system. The others are almost childish in their simplicity, and were probably never serious contenders. On the other hand, the Verance watermark is apparently already in use. The question is, on what? I've heard DVD-Audio. Does this mean that all DVD-Audio discs have a Verance watermark? Or only some?

    Given that it is possible to go and buy media with the Verance watermark, and that the same music is almost certainly available in other watermark-free formats, it should be possible to redo this work without any complications arising from the "Hack SDMI" agreement.

    It sounds like Princeton is willing to stand behind Prof. Felton, but some of his collaborators' sponsers aren't so brave. By redoing the work with a Princeton-only crew and new media, those issues would disappear. A new paper could be written on the Verance watermark. Such a paper would clearly be legal, for many reasons. The Verance watermark tech is patented, which means cries of "trade secret" are BS. Not to mention that no devices on the market use the watermark to control "access", so right now code which removes the watermark could not be considered a circumvention device. After all, what is is circumventing? Nothing! Finally, even the corrupt DMCA is full of verbiage allowing academic research. The SDMI folks don't stand a chance in court.

  73. Re:Well done RiAA by Sloppy · · Score: 2

    When will large organisations learn that trying to suppress information just leads to its wider distribution?

    Sshhhhhh!!! Hopefully never, if you would please keep your big mouth shut. ;-)

    Damn, if I had modded you down in order to keep RIAA from finding out about how their strategy will backfire, then my attempt to supress the information about the strategy would have backfired and RIAA would surely find out about the weakness in their strategy (due to the weakness in my strategy). So there's just no way to win. *sigh* Actiondan, I wish you hadn't let the cat out of the bag.


    ---
    --
    As copyright owner of this comment, I authorize everyone to defeat any technological measure which limits access to it.
  74. Re:TAKE THE CASE!! -- AND LOSE! by HiThere · · Score: 2

    If they couldn't show the idiocy of the law in this case, then they couldn't ever. The problems are:
    1) Do you have enough money
    2) Do you have enough time
    3) Does everybody agree to proceed
    4) Wouldn't you rather spend your resources elsewhere.

    As I understand it, the problem is with step 3.
    Caution: Now approaching the (technological) singularity.

    --

    I think we've pushed this "anyone can grow up to be president" thing too far.
  75. What the world needs now... by zeke · · Score: 1

    Is a DMCA-circumventing computer virus.

    "Um, jeez officer, I just hadn't run my virus checker in awhile. No, I _didn't_ notice those were foreign DVDs. *Honest*."

    zeke

  76. Re:This is silly by rw2 · · Score: 2
    Any serious researcher would have done this to limit his liability, right? So I would expect that the researchers in question did not in fact agree to SDMI's terms.

    Apparently not in this case. The researchers were registered with the game.

    --
    Poliglut

  77. This is silly by rw2 · · Score: 3
    This isn't an interesting use of something the hackers owned. They agreed to a specific and narrow license as part of a contract. The paragraph from the RIAA covers this:

    As you are aware, the Agreement covering the Public challenge narrowly authorizes participants to attack the limited number of music samples and files that were provided by SDMI. The specific purpose of providing these encoded files and for setting up the Challenge was to assist SDMI in determining which of the proposed technologies are best suited to protect content in Phase II products. The limited waiver of rights (including possible DMCA claims) that was contained in the Agreement specifically prohibits participants from attacking content protected by SDMI technologies outside the Public Challenge. If your research is released to the public this is exactly what could occur. In short, you would be facilitating and encouraging the attack of copyrighted content outside the limited boundaries of the Public Challenge and thus places you and your researchers in direct violation of the Agreement.

    I say, just re-attack when the stuff is released and publish the results. There is little moral or ethical in agreeing to the terms that these people must have as part of the challenge and then turning around a violating those terms.


    --
    Poliglut

    1. Re:This is silly by jbridge21 · · Score: 5

      Click-Through Agreement for the SDMI Public Challenge

      This Click-Through Agreement (the "Agreement") contains the terms and conditions applicable to participation in the SDMI Public Challenge. Please read it carefully.

      Who Can Participate? The SDMI Public Challenge is open to everyone except that a proponent of a particular technology (and the proponent's present and former employees) or any person who has obtained confidential information under a confidentiality agreement applicable to a particular technology may not participate in the SDMI Public Challenge for such technology.

      What is being tested? There are two different types of technologies that are available for testing: (1) four different watermark technologies that are designed to detect compression and (2) two additional technologies that are designed to ensure that under certain circumstances individual tracks of an album are not admitted into an SDMI domain without the presence of the original CD.

      How do you test the watermark technologies? Participants in the SDMI Public Challenge may download several samples of digital music relating to the four different watermark technologies. The terms and conditions of this Agreement apply to each such technology. For each such technology, a set of music samples -- a "triplet" of digital music - will be provided. Each triplet contains three samples of music. Two of the samples in a triplet contain the same music, where one is encoded with a digital watermark and the other is a clean, unmarked version of the same music. The third sample in the triplet is encoded with the same digital watermark, but participants will not have access to an unmarked version of the same sample. Different music samples will be provided for each technology. The goal of the participant in the SDMI Public Challenge is to determine if the watermark can be removed from the entire sample without significantly reducing the sound quality of the digital music, i.e., degrading sound quality to below that of MP3 encoding at 64 Kbps for a stereo signal or a comparative analysis using PEAQ.

      How do you test the two additional technologies? In order to test the two additional technologies, you must download files from the Download Page. Along with the downloaded files, participants are provided with instructions on the goals of the SDMI Public Challenge for those technologies.

      How do you know if you've succeeded in the challenge? For each technology, submit the sample file(s) demonstrating that you have successfully challenged such technology to the SDMI Foundation "oracle," at www.hackSDMI.org. You must use the original file name of the sample when you submit it to the oracle. The oracle will automatically test your submission and may contact you seeking an explanation of what you did. In order to for your challenge to be deemed successful, your submission must be reasonably capable of being reproduced. If your submission regards one of the watermark technologies and appears successful, you will be provided with additional music samples, and will be asked to reproduce the results on those additional samples.

      How do you become eligible to be compensated for a successful challenge? After preliminary review of your submission, you may receive notice requesting additional information. To receive compensation for the successful challenge, you must submit your name, date of birth, contact information, step-by-step details on how you conducted the successful challenge, and any source code and/or executables that you developed to carry out the attack. You will be responsible for any applicable taxes on any compensation you may receive.

      Compensation of $10,000 will be divided among the persons who submit a successful unique attack on any individual technology during the duration of the SDMI Public Challenge. In exchange for such compensation, all information you submit, and any intellectual property in such information (including source code and other executables) will become the property of the SDMI Foundation and/or the proponent of that technology. In order to receive compensation, you will be required to enter into a separate agreement, by which you will assign your rights in such intellectual property. The agreement will provide that (1) you will not be permitted to disclose any information about the details of the attack to any other party, (2) you represent and warrant that the idea for the attack is yours alone and that the attack was not devised by someone else, and (3) you authorize us to disclose that you submitted a successful challenge. If you are a minor, it will be necessary for you and your parent or guardian to sign this document, and any compensation will be paid to your parent or guardian.

      You may, of course, elect not to receive compensation, in which event you will not be required to sign a separate document or assign any of your intellectual property rights, although you are still encouraged to submit details of your attack.

      The SDMI Foundation will also analyze the information you have submitted in detail to determine the reproducibility of your attack. To be clear, you will be eligible for compensation for reasonably reproducible attacks only if you have not disclosed the trade secrets in your submission to anyone other than the SDMI Foundation, have assigned all your intellectual property rights in your attack to the SDMI Foundation, and have kept your submission, and all information relating to your submission, confidential. All decisions relating to the success of your challenge, the timing of your submission and all other matters pertaining to the SDMI Public Challenge shall be within the discretion of the SDMI Foundation or its designee and shall be final and binding in all respects.

      What else do I need to know? By releasing encoded digital music samples for attack and other digital files, the SDMI Foundation and the technology proponents are only providing permission, under U.S. or other applicable law, to attack those particular samples and files during the duration of this SDMI Public Challenge. No permission is granted to attack or make any other use of content protected by SDMI outside of this SDMI Public Challenge. In addition, neither the SDMI Foundation, copyright owners nor the proponent of the technology being attacked, waive any rights that it or they may have under any applicable law including, without limitation, the U.S. Digital Millennium Copyright Act, for any acts not expressly authorized by this Agreement. Moreover, no permission is granted to attack content encoded with any technology proponent outside of this SDMI Public Challenge. You are prohibited from reproducing, modifying, distributing, performing or making any other use of the samples other than as specifically authorized by this Agreement. A list of persons who have submitted successful attacks and received compensation therefor will be provided if you mail a self-addressed, stamped envelope to the SDMI Secretariat, c/o SAIC at 10260 Campus Point Drive, San Diego, California 92121 USA. We are not responsible for lost, incomplete or misdirected submissions. This offer is void where prohibited.

      By clicking on the "I Agree" button below you agree to be bound by the terms of this Agreement.
      -----

    2. Re:This is silly by Karellen · · Score: 1

      This is such bullshit more like.

      The limited waiver of rights [...] prohibits participants from attacking content [...] outside the Public Challenge.

      THEY aren't attacking anything outside of the Public Challenge. They've attacked what they were allowed to attack, no more, and written up what they did.

      Clearly they can't be held responsible for what other people do with that information. It's the same thing as publishing a 'how to make a bomb' article. You can't be held responsible if some fuckwit makes a bomb and kills themselves and/or other people. It's the fuckwit who made the bomb.

      Ditto here.

      The ONLY thing that letter says is that by 'facilitating and encouraging' (which is only their opinionated speculation, especially the 'encouragement' part - the paper _definitely_ does _not_ say that the researchers encourage others to break the schemes or violate copyright) and attack BY OTHER PEOPLE (who it neglects to mention, misdirecting the reader), the researchers are in violation of a part of an agreement that limits their actions in a way they haven't broken.

      The only fucking thing is that if they're sued, it doesn't matter if they're right or wrong if they can't pay to defend themselves.

      Such fucking bullshit.

      --
      Why doesn't the gene pool have a life guard?
    3. Re:This is silly by dstanfor · · Score: 1
      specifically prohibits participants from attacking content protected by SDMI technologies outside the Public Challenge.

      but aren't they saying "this is how we broke the sdmi watermarks given in these files." instead of "For this CD, do this to break SDMI watermarks"?

      How can content protected by SDMI technologies be attacked when there isn't any content? (is there? what?)

    4. Re:This is silly by sulli · · Score: 2

      Wrong! When the Hack SDMI challenge came out, several people posted links to the "hackable" files that could be downloaded without agreeing to anything. Any serious researcher would have done this to limit his liability, right? So I would expect that the researchers in question did not in fact agree to SDMI's terms.

      --

      sulli
      RTFJ.
    5. Re:This is silly by RandomPeon · · Score: 5

      No, Felten makes very clear those provisions would only apply if they took the cash prize, which they politely declined. And they're not "attacking content", they're explaining watermarking schemes a second-year math undergrad would understand.

    6. Re:This is silly by actiondan · · Score: 1

      Did they violate the terms though? The paragraph you included seems to be saying that they would be helping other people violate the terms - not that they are violating them themselves.

      I'm sure if there was a specific clause about publishing methods, surely it would have been mentioned.

  78. Sad, Sad, Sad........ by bawheid · · Score: 2

    The day that something like this stops academic freedom to publish, there's something wrong. Surely academic freedom of speech has to take precedence over commercial consideration; In the case of National security, maybe this type of behaviour can be justified, but not in this case.

    I hope the authors publish abroad in a country where the copyright laws are more reasonable.

    1. Re:Sad, Sad, Sad........ by Carnivore · · Score: 1

      Yeah, the pharmcorps can even get the fda to supress information about dangerous side effects of treatments as "proprietary information". This information is not distributed even to researchers who are doing work directly exposes subjects to the possible side effects.
      I hate this shit. I'm glad that we can mirror and sidestep the draconian crap. Can the Shrub be made to understand that this is bad, or is he simply too stupid/drunk with lobbyist mony to care?

    2. Re:Sad, Sad, Sad........ by mikael_j · · Score: 1

      I hope the authors publish abroad in a country where the copyright laws are more reasonable.
      They should leak the paper out to a few places on the net and when the RIAA comes running, say they were hacked!

      /Mikael Jacobson

      "But surely we won't be still stuck with Linux in 25 years!?"

      --
      Greylisting is to SMTP as NAT is to IPv4
    3. Re:Sad, Sad, Sad........ by GungaDan · · Score: 1

      Interesting micro-discussion we've begun. Truth be told, the health insurance lobby is plenty pissed at the Shubbery right now for allowing HIPAA to go into effect (albeit with possible/probable changes to make it less onerous to the moneygrubbers). Bush is not interesting in hearing about problems within FDA. We'll have to wait until Mama Barb or Daddy George comes to rely on something like Propulsid or Lotronex or Rezulin and gets hurt or killed before the new King George will take notice. Interestingly, one of the first things the Shrub admin tried to do, when it was cleaning out the previous admin's political appointees, was to oust the head of FDA, who was not a political appointee. They quickly, and quietly, took that back. Now, the current head is no friend to people who take medicines, as it was under her watch that the three above-referenced drugs, and countless others that haven't yet been proven deadly, were approved, often over the strenuous objections of FDA's own internal reviewers. And it doesn't help that the drugcos hide critical information even from the pharmco-profit-friendly FDA. And lets not forget that this is the FDA that told Lilly its OK to market Prozac as Serafem, in order not to stigmatize the women who take it for a disorder that doesn't officially exist (Pre Menstrual Dysphoric Disorder, PMDD). Wonder how many of these unstigmatized chicks will off themselves due to the suicidality risk of the prozac they're really taking? Wonder if the newly invented indication will extend Lilly's patent on its new emotional cure-all? My take on the drugcos and the govt. regulatory structure is that we need to kill 'em all, and screw sorting 'em out, as they were morally defective, base excuses for humans all along.

      --
      Eloi are stupid, throw morlocks at them!
    4. Re:Sad, Sad, Sad........ by GungaDan · · Score: 5
      Sad (x3) but true. When a physician/researcher contracts with a pharmaceutical sponsor, that sponsor typically includes a clause stating that all information derived from the research is the property of the sponsor, and that the researcher must seek sponsor's permission to publish, or even discuss, the research findings. Researchers have been sued for publishing findings derived from pharmco-sponsored research that were unflattering, or contradictory to the sponsor's always-cheery findings.

      Importantly, very recently a British scientist by the name of David Healy, who had been invited to work at the University of Toronto, had the invitation rescinded because he gave a presentation critical of Prozac and its tendency to arouse suicidality in patients who were not previously suicidal. Dr. Healy stated in his presentation that Prozac may have been responsible for 1 suicide for each day it's been on the market. Eli Lilly, the manufacturer, didn't appreciate the comments, and also happens to be the single largest donor to/supporter of the University of Toronto's medical teaching center. UT officials deny that Lilly had a role in the shooing-away of Dr. Healy, as do Lilly's lawyers. Interestingly, Lilly did the same thing to Healy last year, when he sought to publish a similar article in a Hastings Center publication.

      Point is, academic freedom has been sold out to PhRMA and the legal drug cartels for years. Still, I'm disappointed to see the RIAA (and other 4-letter words) getting in on the action of stealing our public knowledge/awareness/safety in the name of profits and IP. Shameful.

      --
      Eloi are stupid, throw morlocks at them!
    5. Re:Sad, Sad, Sad........ by truthsearch · · Score: 2

      The legal basis is the agreement under which you have to press the infamous "I Agree" button to get the details of the watermark to be cracked. Of course the professor could've gotten it from other sources, but if he pressed that button, he agreed not to publish anything.

      ---

  79. Re:This is a purely American viewpoint. by SpacePunk · · Score: 2

    Yeah, yeah. Everybody is aware of how the Europeans are afraid of freedom, and do everything they can to make sure that freedom doesn't spread. Just look at Europe's history.

  80. The Paper itself from cryptome (ahh, /. archives) by kyhwana · · Score: 3
    RIAA Challenges SDMI Attack

    20 April 2001. Thanks to Anonymous
    From cryptome.org

    [Letter, 3 pp.]

    MATTHEW J. OPPENHEIM, ESQ.
    Address illegible
    RIAA

    April 9, 2001

    Professor Edward Felton
    Department of Computer Science
    Princeton University
    Princeton, NJ 08544

    Dear Professor Felten,

    We understand that in conjunction with the 4th International Information Hiding Workshop to be held April 25-29, 2001, you and your colleagues who participated in last year's Secure Digital Music Initiative ("SDMI") Public Challenge are planning to publicly release information concerning the technologies that were included in that challenge and certain methods you and your colleagues developed as part of your participation in the challenge. On behalf of the SDMI Foundation, I urge you to reconsider your intentions and to refrain from any public disclosure of confidential information derived from the Challenge and instead engage SDMI in a constructive dialogue on how the academic aspects of your research can be shared without jeopardizing the commercial interests of the owners of the various technologies.

    As you are aware, at least one of the technologies that was the subject of the Public Challenge, the Verance Watermark, is already in commercial use and the disclosure of any information that might assist others to remove this watermark would seriously jeopardize the technology and the content it protects.1 Other technologies that were part of the Challenge are either likewise in commercial use or could be could be utilized in this capacity in the near future. Therefore, any disclosure of information that would allow the defeat of those technologies would violate both the spirit and the terms of the Click-Through Agreement (the "Agreement"). In addition, any disclosure of information gained from participating in the Public Challenge would be outside the scope of activities permitted by the Agreement and could subject you and your research team to actions under the Digital Millennium Copyright Act ("DCMA").

    ____________________

    1 The Verance Watermark is currently used for DVD-Audio and SDMI Phase I products and certain portions of that technology are trade secrets.

    We appreciate your position, as articulated in the Frequently Asked Questions document, that the purpose of releasing your research is not designed to "help anyone impose or steal anything." Further more, you participation in the Challenge and your contemplated disclosure appears to be motivated by a desire to engage in scientific research that will ensure that SDMI does not deploy a flawed system. Unfortunately, the disclosure that you are contemplating could result in significantly broader consequences and could directly lead to the illegal distribution of copyrighted material. Such disclosure is not authorized in the Agreement, would constitute a violation of the Agreement and would subject your research team to enforcement actions under the DMCA and possibly other federal laws.

    As you are aware, the Agreement covering the Public challenge narrowly authorizes participants to attack the limited number of music samples and files that were provided by SDMI. The specific purpose of providing these encoded files and for setting up the Challenge was to assist SDMI in determining which of the proposed technologies are best suited to protect content in Phase II products. The limited waiver of rights (including possible DMCA claims) that was contained in the Agreement specifically prohibits participants from attacking content protected by SDMI technologies outside the Public Challenge. If your research is released to the public this is exactly what could occur. In short, you would be facilitating and encouraging the attack of copyrighted content outside the limited boundaries of the Public Challenge and thus places you and your researchers in direct violation of the Agreement.

    In addition, because public disclosure of your research would be outside the limited authorization of the Agreement, you could be subject to enforcement actions under federal law, including the DMCA. The Agreement specifically reserves any rights that proponents of the technology being attacked may have "under any applicable law, including, without limitation, the U.S. Digital Millennium Copyright Act, for any acts not expressly authorized by their Agreement." The Agreement simply does not "expressly authorize" participants to disclose information and research developed through participating in the Public challenge and such disclosure could be the subject of a DMCA action.

    We recognize and appreciate your position, made clear throughout this process, that it is not your intention to engage in any illegal behavior or to otherwise jeopardize the legitimate commercial interests of others. We are concerned that your actions are outside the peer review process established by the Public Challenge and setup by engineers and other experts to ensure the academic integrity of this project. With these facts in mind, we invite you to work with the SDMI Foundation to find a way for you to share the academic components of your research while remaining true to your intention to not violate the law or the Agreement. In the meantime, we urge you to withdraw the paper submitted for the upcoming Information Hiding Workshop, assure that it is removed from the Workshop distribution materials and destroyed, and avoid a public discussion of confidential information.

    Sincerely,

    [Signature]

    Matthew Oppenheim, Secretary
    The SDMI Foundation

    cc: Mr. Ira S. Moskowitz, Program Chair, Information Hiding Workshop, Naval Research Laboratory
    Cpt. Douglas S. Rau, USN, Commanding Officer, Naval Research Laboratory
    Mr. Howard Ende, General Counsel of Princeton
    Mr. Edward Dobkin, Computer Science Department Head of Princeton

    [Paper, 15 pp.]

    Reading Between the Lines:
    Lessons from the SDMI Challenge
    Scott A. Craver1, John R McGregor1, Min Wu1, Bede Liu1,
    Adam Stubblefield2, Ben Swartzlander2, Dan S. Wallach2,
    Drew Dean3, and Edward W. Felten4 1 Dept. of Electrical Engineering, Princeton University
    2 Dept. of Computer Science, Rice University
    3 Computer Science Laboratory, Xerox Palo Alto Research Center
    4 Dept. of Computer Science, Princeton University

    Abstract. The Secure Digital Music Initiative is a consortium of parties interested in preventing piracy of digital music, and to this end they are developing architectures for content protection on untrusted platforms. SDMI recently held a challenge to test the strength of 4 watermarking technologies, and 2 other security technologies. No documentation explained the implementations of the technologies, and neither watermark embedding nor detecting software was directly accessible to challenge participants. We nevertheless accepted the challenge, and learned a great deal about the inner workings of the technologies. We report on our results here.
    1 Introduction

    The Secure Digital Music Initiative (SDMI), a consortium of music-industry companies, is working to develop and standardize technologies that give music publishers more control over what consumers can do with recorded music that they buy. SDMI has been a somewhat secretive organization, releasing little information to the public about its goals, deliberations, and technology.

    In September 2000, SDMI announced a "public challenge" in which it invited members of the public to try to break certain data-encoding technologies that SDMI had developed [3]. The challenge offered a valuable window into SDMI, not only into its technologies but also into its plans and goals. We decided to use the challenge to learn as much as we could about SDMI. This paper is the result of our study.1 Section 2 presents an overview of the HackSDMI challenge. Section 3 analyzes the watermark challenges. Section 4 analyzes the non-watermark challenges. Finally, we present our conclusions in section 5.

    ____________________

    1 The SDMI challenge offered a small cash payment to be shared among everyone who broke at least one of the technologies and was willing to sign a confidentiality agreement giving up all rights to discuss their findings. The cash prize amounted to the price of a few days of time from a skilled computer security consultant, and it was to be split among all successful entrants, a group that we suspected might be significant in size. We chose to forgo the payment and retain our right to publish this paper.
    2 The SDMI Challenge

    The SDMI challenge extended over roughly a three-week period, from September 15, 2000 until October 8, 2000. The challenge actually consisted of six sub-challenges, named with the letters A through F, each involving a different technology developed by SDMI. We believe these challenges correspond to submissions to the SDMI's Call for Proposals for Phase II Screening Technology [4]. According to this proposal, the watermark's purpose is to restrict an audio clip which is compressed or has previously been compressed. That is, if the watermark is present an audio clip may yet be admitted into an SDMI device, but only if it has not been degraded by compression. For each challenge, SDMI provided some information about how a technology worked, and then challenged the public to create an object with a certain property. The exact information provided varied among the challenges. We note, though, that in all six cases SDMI provided less information than a music pirate would have access to in practice.

    2.1 Watermark Challenges

    Four of the challenges (A, B, C, and F), involved watermarking technologies, in which subtle modifications are made to an audio file, to encode copyright control information without perceptible change in how the file sounds. Watermarks can be either robust or fragile. Robust watermarks are designed to survive common transformations like digital-to-audio conversion, compression and decompression, and the addition of small amounts of noise to the file. Fragile watermarks do not survive such transformations, and are used to indicate modification of the file. For each of the four watermark challenges, SDMI provided three files:

    - File 1: an unwatermarked song;

    - File 2: File 1, with a watermark added; and

    - File 3: another watermarked song.

    The challenge was to produce a file that sounded just like File 3 but did not have a watermark -- in other words, to remove the watermark from File 3.

    SDMI provided an on-line "oracle" for each challenge. Entrants could email a file to the oracle, and the oracle would tell them whether their submission satisfied the challenge, that is, whether it contained no detectable watermark while still sounding like File 3. Entrants were given no information about how watermark information was stored in the file or how the oracle detected watermarks, beyond the information that could be deduced from inspection of the three provided files.

    2.2 Challenges D and E

    Challenge D concerned a technology designed to prevent a song from being separated from the album in which it was issued. Normally, every Compact Disc contains a table of contents, indicating the offsets and lengths of each audio track, followed by the audio data itself. Challenge D adds an "authenticator" track (approximately 50ms of very quiet audio,) a digital signature derived from the table of contents, which is supposed to be difficult to compute for an arbitrary CD. Challenge D is discussed in more detail in Section 4.1.

    Challenge E involved a technology similar to D, but one which would be immune the obvious attack on technology D, in which one compiled an unauthorized CD with the same table of contents as an authorized one, for which the authenticator track is given. Unfortunately, this challenge was constructed in a way that made it impossible to even start analyzing the technology. SDMI provided an oracle for this challenge, but unfortunately provided no music samples of any kind, so there was no way to determine what the oracle might be testing for.

    Given these facts, we decided not to analyze Challenge E. It is discussed briefly in Section 4.2.
    3 The Watermarking Schemes

    In this section, we describe our attack(s) on each of the four watermark challenges (A,B,C,F). Our success was confirmed by emails received from SDMI's oracles. Fig. 1. The SDMI watermark attack problem. For each of the four watermark challenges, Sample-1, sample-2, and sample-3 are provided by SDMI sample-4 is generated by participants in the challenge and submitted to SDMI oracle for testing.

    Figure 1 provides an overview of the challenge goal. As mentioned earlier, there are three audio files per watermark challenge: an original and watermarked version of one clip, and then a watermarked version of a second clip, from which the mark is to be removed. All clips were 2 minutes long, sampled at 44.1kHz with 16-bit precision.

    The reader should note one serious flaw with this challenge arrangement. The goal is to remove a robust mark, while these proposals appear to be Phase II watermark screening technologies [4]. As we mentioned earlier, a Phase II screen is intended to reject audio clips if they have been compressed, and presumably compression degrades a fragile component of the watermark. An attacker need not remove the robust watermark to foil the Phase II screen, but could instead repair the modified fragile component in compressed audio. This attack was not possible under the challenge setup.

    3.1 Attack and Analysis of Technology A

    A reasonable first step in analyzing watermarked content with original, unmarked samples is differencing the original and marked versions in some way. Initially, we used sample-by-sample differences in order to determine roughly what kinds of watermark- ing methods were taking place. Unfortunately, technology A involved a slowly varying phase distortion which masked any other cues in a sample-by-sample difference. We ultimately decided this distortion was a pre-processing separate from the watermark, in part because undoing the distortion alone did not foil the oracle.

    The phase distortion nevertheless led us to attempt an attack in which both the phase and magnitude change between sample 1 and sample 2 is applied to sample 3. This attack was confirmed by SDMI's oracle as successful, and illustrates the general attack approach of imposing the difference in an original-watermark pair upon another media clip. Here, the "difference" is taken in the FFT domain rather than the time domain, based on our suspicions regarding the domain of embedding. Note that this attack did not require much information about the watermarking scheme itself, and conversely did not provide much extra insight into its workings.

    A next step, then, is to compute the frequency response H(w) = W(w)/O(w) of the watermarking process for segments of audio, and observe both |H(w)| and the corresponding impulse response h(t). If the watermark is based on some kind of linear filter, whose properties change slowly enough relative to the size of a frame of samples, then this approach is ideal.

    Figure 2 illustrates one frequency response and impulse response about 0.3 seconds into the music. These responses are based on FFTs of 882 samples, or one fiftieth second of music. As can be clearly seen, a pair of sinusoidal ripples are present within a certain frequency band, approximately 8-16Khz. Ripples in the frequency domain are indicative of echoes in the time domain, and a sum of sinusoids suggested the presence of multiple echoes. The corresponding impulse response h(t) confirms this. This pattern of ripples changes quite rapidly from frame to frame.

    Thus, we had reason to suspect a complex echo hiding system, involving multiple time-varying echoes. It was at this point that we considered a patent search, knowing enough about the data hiding method that we could look for specific search terms, and we were pleased to discover that this particular scheme appears to be listed as an alternative embodiment in US patent number 05940135, awarded to Aris corporation, now part of Verance [5]. This provided us with little more detail than we had already discovered, but confirmed that we were on the right track, as well as providing the probable identity of the company which developed the scheme. It also spurred no small amount of discussion of the validity of Kerckhoffs's criterion, the driving principle in security that one must not rely upon the obscurity of an algorithm. This is, surely, doubly true when the algorithm is patented. Fig. 2. A short-term complex echo. Above, the frequency response between the watermarked and original music, taken over 1/50 second, showing a sinusoidal ripple between 8 and 16 KHz. Below, the corresponding impulse response. The sinusoidal pattern in the frequency domain corresponds to a pair of echoes in the time domain.
    The most useful technical detail provided by the patent was that the "delay hopping" pattern was likely discrete rather than continuous, allowing us to search for appropriate frame sizes during which the echo parameters were constant. Data collection from the first second of audio showed a frame size of approximately 882 samples, or 1/50 second. We also observed that the mark did not begin until 10 frames after the start of the music, and that activity also existed in a band of lower frequency, approximately 4-8 Khz. This could be the same echo obscured by other operations, or could be a second band used for another component in the watermarking scheme. A very clear ripple in this band, indicating a single echo with a delay of about 34 samples, appears shortly before the main echo-hopping pattern begins.

    The next step in our analysis was the determination of the delay hopping pattern used in the watermarking method, as this appeared to be the "secret key" of the data embedding scheme. It is reasonable to suspect that the pattern repeats itself in short order, since a watermark detector should be able to find a mark in a subclip of music, without any assistance initially aligning the mark with the detector's hopping pattern. Again, an analysis of the first second revealed a pattern of echo pairs that appeared to repeat every 16 frames, as outlined in figure 3. The delays appear to fall within six general categories, each delay approximately a multiple of 1/4 millisecond. The exact values of the delays vary slightly, but this could be the result of the phase distortion present in the music. Fig. 3. The hypothesized delay hopping pattern of technology A. Here two stretches of 16 frames are illustrated side-by-side, with observed echoes in each frame categorized by six distinct delays: 2, 3, 4, 5, 6 or 7 times 0.00025 sec. Aside from several missing echoes, a pattern appears to repeat every 16 frames. Note also that in each frame the echo gain is the same for both echoes.

    The reader will also note that in apparently two frames there is only one echo. If this pattern were the union of two pseudorandom patterns chosen from six possible delay choices, two "collisions" would be within what is expected by chance.

    Next, there is the issue of the actual encoded bits. Further work shows the sign of the echo gain does not repeat with the delay-hopping pattern, and so is likely at least part of an embedded message. Extracting such data without the help of an original can be problematic, although the patent, of course, outlines numerous detector structors which can be used to this end. We developed several tools for cepstral analysis to assist us in the process. See [2] for in introduction to cepstral analysis; Anderson and Petitcolas [1] illustrate its use in attacks on echo hiding watermark systems.

    With a rapidly changing delay, normal cepstral analysis does not seem a good choice. However, if we know that the same echo is likely to occur at multiples of 16/50 of a second, we can improve detector capability by combining the information of multiple liftered2 log spectra.

    ____________________

    2 in accordance with the flopped vocabulary used with cepstral analysis, "liftering" refers to the process of filtering data in the frequency domain rather than the time domain. Similarly, "quefrencies" are frequencies of ripples which occur in the frequency domain rather than the time domain.

    Three detector structures are shown in figure 4. In all three, a collection of frames are selected for which the echo delays are believed to be the same. For each, the liftered log of an FFT or PSD of the frame is taken. In the first two structures, we compute a cepstrum, for each frame, then either average their squared magnitudes, or simply their squares, in hopes that a spike of the appropriate quefrency will be clear in the combination. The motivation for merely squaring the spectral coefficients comes from the observation that a spike due to an echo will either possess a phase of theta or theta + pi for some value theta. Squaring without taking magnitudes can cause the echo phases to reinforce, whilst still permitting other elements to combine destructively. Fig. 4. Three cepstral detector structures. In each case we have a collection of distinct frames, each believed to possess echoes of the same delay. The first two compute cepstral data for each frame, and sum their squares (or squared magnitudes) to constructively combine the echo signal in all frames. The third structure illustrates a method for testing a hypothesized pattern of positive and negative gains, possibly useful for brute-forcing or testing for the presence of a known "ciphertext."

    In the final structure, one cepstrum. is taken using a guess of the gain sign for each suspect frame. With the correct guess, the ripple should be strongest, resulting in the largest spike from the cepstral detector. Figure 5 shows the output of this detector on several sets of suspect frames. While this requires an exponential amount of work for a given amount of frames, it has a different intended purpose: this is a brute-forcing tool, a utility for determining the most probable among a set of suspected short strings of gain signs as an aid to extracting possible ciphertext values. Fig. 5. Detection of an echo. A screenshot of our CepstroMatic utility shows a combination of 4 separate frames of music, each a fiftieth of a second long, in which the same echo delay was believed to exist. Their combination shows a very clear ripple on the right, corresponding to a clear cepstral spike on the left. This is a single echo at a delay of 33 samples, the delay suggested for these intervalus by the hypothesized delay-hopping pattern.

    Finally, there is the issue of what this embedded watermark means. Again, we are uncertain about a possible signalling band below 8Khz. This could be a robust mark, signalling presence of a fragile mark of echoes between 8 and 16 KHz. The 8-16KHz band does seem like an unusual place to hide robust data, unless it does indeed extend further down, and so this could very easily be hidden information whose degredation is used to determine if music has already been compressed.

    Of course, knowledge of either the robust or fragile component of the mark is enough for an attacker to circumvent the scheme, because one can either remove the robust mark, or repair or reinstate the fragile mark after compression has damaged it. As mentioned earlier, this possible attack of repairing the fragile component appears to have been ruled out by the nature of the SDMI challenge oracles. One must wait and see if real-world attackers will attempt such an approach, or resort to more brute methods or oracle attacks to remove the robust component.

    3.2 Attack on Challenge B

    We analyzed samp1b.wav and samp2b.wav using short-time FFT. Shown in Fig. 6 are the two FFT magnitudes for 1000 samples at 98.67 sec. Also shown is the difference of the two magnitudes. A spectrum notch around 2800Hz is observed for some segments of samp2b.wav and another notch around 3500Hz is observed for some other segments of samp2b.wav. Similar notches are observed in samp3b.wav. The attack fills in those notches of samp3b.wav with random but bounded coefficient values. We also submitted a variation of this attack involving different parameters for notch description. Both attacks were confirmed by SDMI oracle as successful. Fig. 6. Technology-B: FFT magnitudes of samp1b.wav and samp2b.wav and their difference for 1000 samples at 98.67 sec.

    3.3 Attacks on Challenge C

    By taking the difference of samp1c.wav and samp2c.wav, bursts of narrowband signal are observed, as shown in Fig. 7. These narrow band bursts appear to be centered around 1350 Hz. Two different attacks were applied to Challenge C. In the first at- tack, we shifted the pitch of the audio by about a quartertone. In the second attack, we passed the signal through a bandstop filter centered around 1350Hz. Our submissions were confirmed by SDMI oracle as successful. In addition, the perceptual quality of both attacks has passed the "golden ear" testing conducted by SDMI after the 3-week challenge. Fig. 7. Challenge-C: Waveform of the difference between samp1c.wav and samp2c.wav.

    3.4 Attack on Challenge F

    For Challenge F, we warped the time axis, by inserting a periodically varying delay. The delay function comes from our study on Technology-A, and was in fact initially intended to undo the phase distortion applied by technology A. Therefore the perceptual quality of our attacked audio is expected to be better than or comparable to that of the audio watermarked by Technology-A. We also submitted variations of this at- tack involving different warping parameters and different delay function. They were confirmed by SDMI oracle as successful.
    4 The Non-Watermark Technologies

    The HackSDMI challenge contained two "non-watermark" technologies. Together, they appear to be intended to prevent the creation of "mix" CDs, where a consumer might compile audio files from various locations to a writable CD. This would be enforced by universally embedding SMDI logic into consumer audio CD players.

    4.1 Technology D

    According to SDMI, Technology D was designed to require "the presence of a CD in order to 'rip' or extract a song for SDMI purposes." The technology aimed to accomplish this by adding a 53.3 ms audio track (four blocks of CD audio), which we will refer to as the authenticator, to each CD. The authenticator, combined with the CD's table of contents (TOC), would allow a SDMI device to recognize SDMI compliant CDs. For the challenge, SDMI provided 100 different "correct" TOC-authenticator pairs as well as 20 "rogue tracks". A rogue track is a track length that does not match any of the track lengths in the 100 provided TOCs. The goal of the challenge was to submit to the SDMI oracle a correct authenticator for a TOC that contained at least one of the rogue tracks.

    The oracle for Technology D allowed several different query types. In the first type, an SDMI provided TOC-authenticator combination is submitted so a that user can "understand and verify the Oracle." According to SDMI, the result of this query should either be "admit" for a correct pair or "reject" for an incorrect pair. When we attempted this test a SDMI-provided pair, the oracle responded that the submission was "invalid." After verifying that we had indeed submitted a correct pair, we attempted several other submissions using different TOC-authenticator pairs as well as different browsers and operating systems3. We also submitted some pairs that the oracle should have rejected; these submissions were also declared "invalid." Though we alerted SDMI to this problem during the challenge, the oracle was never repaired. For this reason, our analysis of Technology D is incomplete and we lack definitive proof that it is correct. That having been said, we think that what we learned about this technology, even without the benefit of a correctly functioning oracle, is interesting.

    ____________________

    3 Specifically, Netscape Navigator and Mozilla under Linux, Netscape Navigator under Windows NT, and Internet Explorer under Windows 98 and 2000.

    Analyzing the Signal Upon examination of the authenticator audio files, we discovered several patterns. First, the left and right channels contain the same information. The two channels differ by a "noise vector" u, which is a vector of small integer values that range from -8 and 8. Since the magnitude of the noise is so small, the noise vector does not significantly affect the frequency characteristics of the signal. The noise values appear to be random, but the noise vector is the same for each of the 100 provided authenticator files. In other other words, in any authenticator file, the difference between the left and right channels of the ith sample is a constant fixed value u[i]. This implies that the noise vector u does not encode any TOC-specific information.

    Second, the signal repeats with a period of 1024 samples. Because the full signal is 2352 samples long, the block repeats approximately 1.3 times. Similarly to the left and right channels of the signal, the first two iterations of the repeating signal differ by a constant noise vector v. The difference between the ith sample of the first iteration and the ith sample of the second iteration differ by a small (and apparently random) integer value v[i] ranging from -15 to 15. In addition, v is the same for each of the provided authenticator files, so v does not encode any TOC-specific information.

    Third, the first 100 samples and last 100 samples of the full signal are faded in and faded out, respectively. This is illustrated in Figure 8. The fade-in and fade-out are meaningless, however, because they simply destroy data that is repeated in the middle of the file. We conjecture that this fade-in and fade-out are included so that the audio signal does not sound offensive to a human ear. Fig. 8. In a Technology D Authenticator, the signal fades in, repeats, and fades out.

    Extracting the Data Frequency analysis on the 1024 sample block shows that almost all of the signal energy is concentrated in the 16-20kHz range, as shown in Figure 9. We believe this range was chosen because these frequencies are less audible to the human ear. Closer examination shows that this l6-20kHz range is divided up into 80 discrete bins, each of which appears to carry one bit of information. As shown in Figure 10, these bits can be manually counted by a human using a graph of the magnitude of signal in the frequency domain. Fig. 9. Magnitude vs. Frequency of Technology D Authenticator

    Fig. 10. Individual Bits From a Technology D Authenticator

    Close inspection and pattern matching on these 80 bits of information reveals that there are only 16 bits of information repeated 5 times using different permutations. using the letters A-P to symbolize the 16 bits, these 5 permutations are described in Figure 11. ABCDEFGHIJKLMNOP
    OMILANHGPBDCKJFE
    PKINHODFMJBCAGLE
    FCKLGMEPNOADJBHI
    PMGHLECAKDONIFJB Fig. 11. The encoding of the 16 bits of data in Technology D

    Because of the malfunctioning oracle, we were unable to determine the function used to map TOCs to authenticators, but given an actual SDMI device, it would be trivial to brute force all 216 possibilities. Likewise, without the oracle, we could not determine if there was any other signal present in the authenticator (e.g., in the phase of the frequency components with nonzero magnitude).

    For the moment, let us assume that the hash function used in Technology D has only 16 bits of output. Given the number of distinct CDs available, an attacker should be able to acquire almost, if not all, of the authenticators. We note that at 9 kilobytes each, a collection of 65,536 files would fit nicely on a single CD. Many people have CD collections of 300+ discs, which by the birthday paradox makes it more likely than not that there is a hash collision among their own collection.

    Our results indicated that the hash function used in Technology D could be weak or may have less than 16 bits of output. In the 100 authenticator samples provided in the Technology D challenge, there were 2 pairs of 16-bit hash collisions. We will not step through the derivation here, but the probability of two or more collisions occurring in n samples of X equally likely possibilities is:

    If the 16-bit hash function output has 16 bits of entropy, the probability of 2 collisions occurring in n = 100 samples of X = 216 possibilities is 0.00254 (by the above 1.5 equation). If X ~ 211.5, the chances of two collisions occurring is about even. This suggests that either 4 bits of the 16-bit hash output may be outputs of functions of the other 12 bits or the hash function used to generate the 16-bit signature is weak. It is also possible that the challenge designers purposefully selected TOCs that yield collisions. The designers could gauge the progress of the contestants by observing whether anyone submits authenticator A with TOC B to the oracle, where authenticator A is equal to authenticator B. Besides the relatively large number of collisions in the provided authenticators, it appears that there are no strong biases in the authenticator bits such as significantly more or less 1's than 0's.

    4.2 Technology E

    Technology E is designed to fix a specific bug in Technology D: the TOC only mentions the length of each song but says nothing about the contents of that song. As such, an attacker wishing to produce a mix CD would only need to find a TOC approximately the same as the desired mix CD, then copy the TOC and authenticator from that CD onto the mix CD. If the TOC does not perfectly match the CD, the track skipping functionality will still work but will only get "close" to track boundaries rather than reaching them precisely. Likewise, if a TOC specified a track length longer than the track we wished to put there, we could pad the track with digital silence (or properly SDMI-watermarked silence, copied from another valid track). Regardless, a mix CD played from start to end would work perfectly. Technology E is designed to counter this attack, using the audio data itself as part of the authentication process.

    The Technology E challenge presented insufficient information to be properly studied. Rather than giving us the original audio tracks (from which we might study the unspecified watermarking scheme), we were instead given the tables of contents for 1000 CDs and a simple scripting language to specify a concatenation of music clips from any of these CDs. 'Me oracle would process one of these scripts and then state whether the resulting CD would be rejected.

    While we could have mounted a detailed statistical analysis, submitting hundreds or thousands of queries to the oracle, we believe the challenge was fundamentally flawed. In practice, given a functioning SDMI device and actual SDMI-protected content, we could study the audio tracks in detail and determine the structure of the watermarking scheme.
    5 Conclusion

    In this paper, we have presented an analysis of the technology challenges issued by the Secure Digital Music Initiative. Each technology challenge described a specific goal (e.g., remove a watermark from an audio track) and offered a Web-based oracle that would confirm whether the challenge was successfully defeated.

    We have reverse-engineered and defeated all four of their audio watermarking technologies. We have studied and analyzed both of their "non-watermarking" technologies to the best of our abilities given the lack of information available to us and given a broken oracle in one case.

    Some debate remains on whether our attacks damaged the audio beyond standards measured by "golden ear" human listeners. Given a sufficient body of SDMI-protected content using the watermark schemes presented here, we are confident we could refine our attacks to introduce distortion no worse than the watermarks themselves introduce to the the audio. Likewise, debate remains on whether we have truly defeated technologies D and E. Given a functioning implementation of these technologies, we are confident we can defeat them.

    Do we believe we can defeat any audio protection scheme? Certainly, the technical details of any scheme will become known publicly through reverse engineering. Using the techniques we have presented here, we believe no public watermark-based scheme intended to thwart copying will succeed. Other techniques may or may not be strong against attacks. For example, the encryption used to protect consumer DVDs was easily defeated. Ultimately, if it is possible for a consumer to hear or see protected content, then it will be technically possible for the consumer to copy that content.

    References

    1. R. J. ANDERSON, AND F. A. P. PETITCOLAs. On the limits of steganography. IEEE Journal of Selected Areas in Communications 16,4 (May 1998),474-481.

    2. R. P. BOGERT, M., AND J. W. TUKEY. The quefrency alanysis of time series for echoes: Cepstrum, pseudo-autocovariance, cross-ceptsrum and saphe-cracking. In Proceedings of the Symposium on Time Series Analysis (Brown University, June 1962), pp. 209-243.

    3. R. PETROVIC, J. M. WINOGRAD, K., AND E. METOIS. Apparatus and method for encoding and decoding information in analog signals, Aug. 1999. US Patent No 05940135 http://www.delphion.com/details?pn=US05940135__.

    4. SECURE DIGITAL MUSIC INITIATIVE. Call for Proposals for Phase II Screening Technology, Version 1.0, Feb. 2000. http://www.sdmi.org/download/FRWG00022401-Ph2_CFPv 1.0.PDF.

    5. SECURE DIGITAL MUSIC INITIATIVE. SDMI public challenge, Sept. 2000. http://www.hacksdmi.org.

    --
    My email addy? should be easy enough.
  81. Re:Best possible result by Quarters · · Score: 5
    Your statement only holds true if the mainstream press picks up on the story.


    They won't.


    Until CNN, Fox News, NBC, ABC, CBS, Newseek, The New York Times, et. al... publish about this all it does is expose the DMCA for what it is - "a crude weapon intended to bully and threaten" to the people that already understand this.


    The fact that a lot of academics and Slashdot readers now know that the DMCA is broken won't contribute towards any significant amount of change.

  82. Torture Device Collections by Grit · · Score: 1

    I'm reminded of the (sentient) ship Grey Area (?) in Iain M. Banks' "Excession" which turned itself into a museum of torture devices... The motivation was not explicitly spelled out, as I recall. But one interpretation was to justify its intervention in "primitive" cultures--- the Culture is generally nicer in dealing with bad people than the Grey Area was, and the ship was trying to argue that the sheer brutality of torture was sufficient cause for its actions.

  83. kidding? by Evro · · Score: 1
    I find it hard to believe that these researchers really thought that RIAA would allow them to present this paper. RIAA does not care about academia or scientific research past the point that they generate money for RIAA's member corporations. If anybody needed any more evidence that people should not participate in these "hacking" contests that only serve RIAA/MPAA, here it is.

    I really don't feel too bad for these researchers in this case because by participating in the SDMI challenge they were helping the RIAA create a technology to be used to take away the rights of music listeners. While they may have done it for academic reasons, I think it was a really foolish thing to do. The only reason I can see for them to even participate would be to see just how lame the RIAA's encryption schemes could be, at which point they should have pointed and laughed, then walked away without even bothering to crack the code. Next time wait til sony deploys it in 1,000,000 SDMI compliant mp3 players before cracking it.

    __________________________________________________ ___

    --
    rooooar
  84. Re:RTFFaq by Evro · · Score: 1
    Q. Still, wouldn't it have been better for opponents of SDMI if you let SDMI go ahead and deploy a flawed technology, so music lovers could teach them a lesson by copying music despite the technology?

    Of course not. This is scientific research: it is not our goal to engage in tactics such as tricking the industry into choosing a flawed system. Our goal is simply to analyze security systems and share our results openly with the scientific community.
    My main point was that it was foolish of the researchers to think that SDMI/RIAA would allow them to publish the results of their research, especially if their research showed any weaknesses in any of the proposed systems.

    And despite what the FAQ may say, I still think it was wrong of them to participate in a "contest" whose goal is to develop technology designed to take away people's rights. I understand that analyzing encryption is standard practice but if some terrorist organization posted a contest to crack encryption they use for sending messages about their next bomb targets, would the researchers still participate? Weed out all the bad encryption technologies until they find one that was "uncrackable" and pass this info along to the terrorists? All in the name of research? Is this still a valid excuse?

    __________________________________________________ ___

    --
    rooooar
  85. I would like to thank... by Khan · · Score: 3

    1) The RIAA for their endless pursuit of Justice and the American Way.

    2) To Hillary for being such a caring and loving human being when it comes to protecting the rights of "artists".

    3) The legion of lobbyists for pursuing our Congressmen and showing them that "this is the right thing for the American people"

    ..and finally to the entire American Congress for passing one of the broadest, most unfucking believable pieces of crap legislation (DMCA) I have seen in a LONG time and essentially selling out the American public to Corporate America. Thanks. I feel like a better American now that I have these types of laws protecting my rights.

    --

    "Klaatu, verada, necktie!" -Ash

  86. Seriously by KFury · · Score: 5

    First a decryptor is a circumvention device, then a program that makes a decryptor is a corcumvention device, then a paper detailing techniques that could be used to create such a program is a circumvention device.

    How much further would it have to go before the RIAA declared the human brain to be a 'circumvention device'?

    Everyone with an IQ above 120, please report to either the lobotomy room or the courtroom.

    Kevin Fox
    --

    1. Re:Seriously by pdwalker · · Score: 1
      ...industry has done this already.

      It's called school!

    2. Re:Seriously by pjrc · · Score: 3
      KFury comments:

      ...then a paper detailing techniques that could be used to create such a program is a circumvention device.

      The DMCA goes much further than just to prohibit "devices". Here's a list of some other forbidden acts:

      (b) ADDITIONAL VIOLATIONS- (1) No person shall manufacture, import, offer to the public, provide, or otherwise traffic in any technology, product, service, device, component, or part thereof...
      Of course, we all know there's supposed to be an exception for encryption research. At the risk of making this post entirely too long, here's the full text of the encryption research exception:
      (g) ENCRYPTION RESEARCH-

      `(1) DEFINITIONS- For purposes of this subsection--

      `(A) the term `encryption research' means activities necessary to identify and analyze flaws and vulnerabilities of encryption technologies applied to copyrighted works, if these activities are conducted to advance the state of knowledge in the field of encryption technology or to assist in the development of encryption products; and

      `(B) the term `encryption technology' means the scrambling and descrambling of information using mathematical formulas or algorithms.

      `(2) PERMISSIBLE ACTS OF ENCRYPTION RESEARCH- Notwithstanding the provisions of subsection (a)(1)(A), it is not a violation of that subsection for a person to circumvent a technological measure as applied to a copy, phonorecord, performance, or display of a published work in the course of an act of good faith encryption research if--

      (A) the person lawfully obtained the encrypted copy, phonorecord, performance, or display of the published work;

      (B) such act is necessary to conduct such encryption research;

      (C) the person made a good faith effort to obtain authorization before the circumvention; and

      (D) such act does not constitute infringement under this title or a violation of applicable law other than this section, including section 1030 of title 18 and those provisions of title 18 amended by the Computer Fraud and Abuse Act of 1986.

      (3) FACTORS IN DETERMINING EXEMPTION- In determining whether a person qualifies for the exemption under paragraph (2), the factors to be considered shall include--

      (A) whether the information derived from the encryption research was disseminated, and if so, whether it was disseminated in a manner reasonably calculated to advance the state of knowledge or development of encryption technology, versus whether it was disseminated in a manner that facilitates infringement under this title or a violation of applicable law other than this section, including a violation of privacy or breach of security;

      (B) whether the person is engaged in a legitimate course of study, is employed, or is appropriately trained or experienced, in the field of encryption technology; and

      (C) whether the person provides the copyright owner of the work to which the technological measure is applied with notice of the findings and documentation of the research, and the time when such notice is provided.

      (4) USE OF TECHNOLOGICAL MEANS FOR RESEARCH ACTIVITIES- Notwithstanding the provisions of subsection (a)(2), it is not a violation of that subsection for a person to--

      (A) develop and employ technological means to circumvent a technological measure for the sole purpose of that person performing the acts of good faith encryption research described in paragraph (2); and

      (B) provide the technological means to another person with whom he or she is working collaboratively for the purpose of conducting the acts of good faith encryption research described in paragraph (2) or for the purpose of having that other person verify his or her acts of good faith encryption research described in paragraph (2).

      (5) REPORT TO CONGRESS- Not later than 1 year after the date of the enactment of this chapter, the Register of Copyrights and the Assistant Secretary for Communications and Information of the Department of Commerce shall jointly report to the Congress on the effect this subsection has had on--

      (A) encryption research and the development of encryption technology;

      (B) the adequacy and effectiveness of technological measures designed to protect copyrighted works; and

      (C) protection of copyright owners against the unauthorized access to their encrypted copyrighted works.

      The report shall include legislative recommendations, if any.

      It would be interesting to hear what effect on encryption research was actually reported.
    3. Re:Seriously by Mtgman · · Score: 1

      Everyone with an IQ above 120, please report to either the lobotomy room or the courtroom.

      SHHHH!! Don't give them any ideas! And certainly don't tell them that if they lobotomize everyone with an IQ over 120 that they'll gain that many more Britney Spears fans. That would probably really push them over the edge. Striking a blow against "piracy" and growing their fan base, they wouldn't be able to resist!

      Steven

      --
      -- I have marked myself unwilling to moderate-- I don't have other accounts to artificially inflate the karma of
  87. Shrewd move? by Black+Parrot · · Score: 5
    They withdrew their paper, and...
    • it has already permeated the internet, and...
    • the story of the RIAA's threat against academic researhers is all over the mainstream media.
    Brilliant move, RIAA. What is you SDMI worth now? Where are the anti-DMCA crowd going to turn for PR, and what are they going to mention the next time we have congressional hearings or a court case involving the DMCA? And which side of the fence do you think any remaining waverers are going to come down on?

    --
    --
    Sheesh, evil *and* a jerk. -- Jade
  88. Re:Missing the point by Moofie · · Score: 1

    Lemme get this straight. If the entire system were different, people would use it differently? You think?

    DUH.

    There is no lawsuit that I could go against the RIAA with a nearly 100% chance to win, even if I had an affidavit in my hand signed by God that says that the executive board eats babies before each meeting. The PURPOSE of the RIAA is to threaten legal action against people who they don't like...they're VERY good at it.

    A retainer is a fee paid to a lawyer on a monthly basis. That lawyer then represents you at no additional charge per hour. (They're essentially contract labor instead of wage labor at that point). Contingency means that the lawyer will take the case, and only take a fee if they win it. It'd take a particularly stupid, or particularly cocky lawyer to take a contingency case against a well-prepared legal adversary. It'd be like assaulting a well-defended medieval fortress with a pogo stick and a slingshot. Yeah, you MIGHT win, but what are the odds?

    --
    Why yes, I AM a rocket scientist!
  89. Re:So basically what you're telling me... by Moofie · · Score: 1

    I'm out seven years of awful credit. Whoopee. Still a pretty bad deal, wot?

    --
    Why yes, I AM a rocket scientist!
  90. Re:RIAA didn't do anything by Moofie · · Score: 2

    But you WILL incur crippling legal expenses, even if you ARE right. That's why C&D letters are so popular nowadays. They cost nothing, and they're 90% as effective as a lawsuit...

    --
    Why yes, I AM a rocket scientist!
  91. Re:Missing the point by Moofie · · Score: 2

    I can't attract a high-powered team, because I can't afford to pay their retainer. High powered legal teams almost never work on contingency.

    --
    Why yes, I AM a rocket scientist!
  92. Re:So basically what you're telling me... by Moofie · · Score: 3

    That won't help. Say I go up against RIAA with a competent, reasonably priced lawyer. I incur legal expenses of $50,000, and she's going to be paid on a contingency basis (zero out-of-pocket cost to me unless I win. Fine.) RIAA comes to the table with five wickedly high-priced lawyers. They incur legal expenses of $2,000,000. My lawyer, outnumbered and outgunned, loses. I am now a wage slave. That's NOT a chance I'm willing to take.

    The bottom line is that legal expenses, win or lose, are trivial for these large corporations, and disastrous for any but the wealthiest private citizen.

    I can't believe Princeton nellied out on this one! That's what colleges are FOR...

    --
    Why yes, I AM a rocket scientist!
  93. Re:That's a shame. by wifflefan · · Score: 1
    from the RIAA website:

    Statement by Matthew Oppenheim on Professor Felten The Secure Digital Music Initiative Foundation (SDMI) does not - nor did it ever - intend to bring any legal action against Professor Felten or his co-authors. We sent the letter because we felt an obligation to the watermark licensees who had voluntarily submitted their valuable inventions to SDMI for testing.

    For the record, the Recording Industry Association of America, one of the founding members of SDMI, strongly believes in academic freedom and Freedom of Speech. This issue, however, is about the competing interests of scientists - those of the watermark technology companies that have invented new technologies and those of Professor Felton who seeks to describe how to circumvent those technologies. To that end, we have encouraged Professor Felten and the technology companies to resolve this matter. We leave it in their hands to do so.

    Further questions should be directed to Verance at 858-677-6522
  94. It's too bad they didn't press the issue by Squirrel+Killer · · Score: 5
    This would have made a wonderful test case for the courts to rule on the applicability and Consitiutionality of the DCMA. Certainly going to court is always risky, but as I understand it, the courts have generally upheld reverse engineering. Additionally, I think that most judges would laugh the RIAA out of the courtroom based on the facts of the case - "You mean you asked them to crack/reverse engineer your encryption and now want to gag them?!?"

    In addition to preventing the ever-increasing definition of "circumvention device", there's an important free speech issue at stake here. If they had pressed the issue, they could have reeled in the RIAA a bit.

    -sk

  95. Re:This is a purely American viewpoint. by WNight · · Score: 2

    You must be joking...

    >What transpired in Europe 60 years ago has show to us that freespeech should not be abused to give
    >speaking rights to those who would deny those rights to others.

    If you just stayed the hell out and didn't censor anyone, or allow anyone to be censored, then nobody would be able to take away anyone's rights.

    If you don't give nazis the power to supress the rights of the jews, then you don't have to censor the nazis. They'll just be another group of harmless idiots completely out of touch with reality.

    Actually, you have to laugh, their idea of the master race is suicidal. They want to inbreed themselves until all differences are gone. That's a chuckle, they'll all be perfect 6' well-built blonde, blue-eyed, and dreadfully retarded. Much like collies or any other massively overbred dog. "Oh, eek. It's an attack of the nazi beach bunnies with the 60 point IQs, eek, eek."

    If someone denies the holocaust, why don't you get off your little censorship powertrip and actually bother to refute what they say? Otherwise you'll end up throwing a real scholar into jail when they merely try to correct a historical innacuracy, just because their views don't fit with the politically correct ones. You certainly don't seem smart and well educated enough to understand where to draw the lines.

  96. Re:This is a purely American viewpoint. by WNight · · Score: 2

    They won't be very intelligent if they succeed with inbreeding themselves.

    And the leaders are the supporters of that, they'll gladly have little aryan children regardless of the cost.

  97. Re:This is a purely American viewpoint. by WNight · · Score: 2

    And how long were they in power? How long would it take to produce any results from a breeding program?

  98. Re:Egads... by ccweigle · · Score: 2
    ... the right to censor scientific and technical knowledge that threatens their outdated business models Don't proliferate these ideas, even in jest. The more we repeat things like "American business needs new legislation, like the DMCA, to control technological threats to its intelectual property" the more it sounds like a valid argument. The problem is that businesses are trying to protect trade secrets, something previously offered no legal protection, from technological attacks instead of using the patent system (which requires that they themselves publish how these things work).

    Thanks to the DMCA, the RIAA, SDMI group, and Verance are running around suing on the grounds that people are reverse engineering their trade-secret "access control" mechanisms for today's digital music media, when a patent on the technique could already have percluded unlicensed decryption for longer than the current technology will likely remain in favor. Why? 'Cause they'd have to tell us how it worked to get the patent. 'Cause they'd have to make sure they didn't miss any important claims in the decryption patent, or some clever sole might come up with an alternate solution which violated none of the claims. That'd be pretty hard. So maybe they could have made the encryption/decryption algorithms stronger, so you couldn't practically break them any way other than the one described in the patent. Well, that'd be pretty hard too .. probably cost a lot as well. What if they could just do anything, not tell anyone how, but get the laws changed so it was protected like a patented technique. Hell, while their at it, maybe they can do away with the expiration of the legal protection. That'd be cheap and easy. Just pay some lobbyist once to get the law changed, and blammo, now IP can be protected by threat of litigation without a patent.

  99. yet another mirror... by caveat · · Score: 1

    ...but hey, never hurts, specially an .edu...

    SDMI Attack

    --

    Facts do not cease to exist because they are ignored. - Aldous Huxley
  100. Re:That's a shame. by Spoons · · Score: 1

    Yes like most things in life people feel strongly about an issue (because it benefits them) until there is a situation in which it does not. Then they oppose it strongly. hmmmf. humans....

    spoonz

    ---

  101. The Register has the paper. by jrs · · Score: 1

    link here

  102. Re:Have Corporations replaced Religions? by mihalis · · Score: 2

    Knowledge of how bad torture used to be is pretty common. In britain at least it's common for a schooltrip to a castle to be shown the dungeon or the other ways they mutilated people ("These are the slits through which the defenders would pour hot molten lead on the attackers", "this is the spike they would mount heads on" etc). Maybe in the US we don't have any handy real mediaeval torture hanging about in public monuments - something should be done, education is suffering!

  103. Re:This is a purely American viewpoint. by MrNixon · · Score: 1

    Remember that at that point Hilter was the government. He was setting what was acceptable or not. And the general populace at that time agreed with him.

    He's saying that if Hitler came around today in Europe, his ideas would be soundly smacked down by the anti hate laws that exist in present-day Europe. That wasn't possible before WWII.

    If America currently had the same socioeconomic conditions (this is the key part) that existed in Germany before the war, and a man like Hitler with his ideas (and the charisma to get them across) came forward, there is no way that those ideas could be stopped under current law. People in Europe see that as a danger.

  104. Re:This is a purely American viewpoint. by MrNixon · · Score: 1

    That's why I said that the socioeconomic conditions were key. They were the main contributing factor to the populace's willingness to accept Hitler's radical views.

  105. My letter: by da0g · · Score: 3

    Dear ...,

    I would like to complain about the Digital Millennium Copyright Act.

    I find it disturbing that I can go to jail, and/or be fined, for the crime of trying to watch a DVD I have legally purchased.

    I find it disturbing that works I create: poetry, humor, fiction; Can be banned on the grounds that they can be mathematically combined to produce DVD decrypting software.

    There is a distinction between a copyright holder being entitled to compensation if someone reproduces their work without permission, and the copyright holder being entitled to control what works others may create, and how their works may be used after a sale has taken place.

    The most recent travesty goes too far. The RIAA has successfully utilized the DMCA to suppress the presentation and publication of an academic research paper. The paper, by Dr. Edward Felten, a professor at Princeton University, and others, was to be presented at the Pittsburgh Information Hiding Workshop conference earlier today.

    In a statement, read earlier today, Dr. Felten said:

    On behalf of the authors of the paper "Reading Between the Lines: Lessons from the SDMI Challenge," I am disappointed to tell you that we will not be presenting our paper today.

    Our paper was submitted via the normal academic peer-review process. The reviewers, who were chosen for their scientific reputations and credentials, enthusiastically recommended the paper for publication, due to their judgment of the paper's scientific merit.

    Nevertheless, the Recording Industry Association of America, the SDMI Foundation, and the Verance Corporation threatened to bring a lawsuit if we proceeded with our presentation or the publication of our paper. Threats were made against the authors, against the conference organizers, and against their respective employers.

    Litigation is costly, time-consuming, and uncertain, regardless of the merits of the other side's case. Ultimately we, the authors, reached a collective decision not to expose ourselves, our employers, and the conference organizers to litigation at this time.

    We remain committed to free speech and to the value of scientific debate to our country and the world. We believe that people benefit from learning the truth about the products they are asked to buy. We will continue to fight for these values, and for the right to publish our paper.

    We look forward to the day when we can present the results of our research to you, our colleagues, through the normal scientific publication process, so that you can judge our work for yourselves.

    This tragedy only serves to highlight the problems with our existing legal DMCA framework.

    The truth is far more frightening. We have an industry that is being dragged, kicking and screaming, into the 21st century. They are trying to retain outdated and outmodeled technological approaches.

    The truth is that there are alternatives to technological and legal barriers to copyright violation with digital media. Alternatives that provide superior protection, and enhance revenues.

    Please do something about this atrocious piece of legislature called the Digital Millennium Copyright Act. It only serves to block progress while providing monopoly status for a select few.

    Sincerely,

    ...

    1. Re:My letter: by PurpleBob · · Score: 1

      You realize that this case isn't about DeCSS, right? It's about a system the RIAA (not the MPAA) came up with to prevent you from listening to copyrighted music without approved equipment, etc.
      --

      --
      Win dain a lotica, en vai tu ri silota
  106. Speaking of rhetoric, by marxmarv · · Score: 1
    I don't see you stepping up to pay for Felten's legal bills.

    -jhp

    --
    /. -- the Free Republic of technology.
  107. Reminds me of a Quote from Alpha Centauri by C.+Mattix · · Score: 5

    This reminds me of a quote from the game Alpha Centauri. I believe Pravin Lal says is: "Beware he who would deny you access to information, for in his heart he sees himself your master." Just a random observation...

    1. Re:Reminds me of a Quote from Alpha Centauri by Jaysyn · · Score: 2

      I think of that quote every time I get on the /. censorship kick. "As the Americans learned so painfully in earth's final century.....etc..."

      Jaysyn

      --
      There is a war going on for your mind.
  108. LOL! Who makes these choices? by BLKMGK · · Score: 2

    You speak as if you're voice is one with the rest of Europe, is it possible there are citizens there who disagree?! You speak for "the people of Europe"? You know as well as everyone else that your single voice is but your opinion and that there are others who would wish for something different!

    Yes, free speech means that you must actually listen to people that you do NOT agree with. How would you feel if the opinion you've just expressed above wasn't one that the rest of your neighbors agreed with and they prevented you from speaking? Who decides what's "racial"? What's "moral"? What's "Socially Acceptable"?! Has it ever occured to you that at the time Hitler spoke the people of Germany ACCEPTED IT?!

    Who decides what gets published and what doesn't? You make it sound as if these are easy and simple decisions, and in some extreme cases they might be. But what happens when it's a more gray area? What happens when you think it's wrong and someone else disagrees? This even happens in the United States where "Politically Correct" twits strive for ever more restrictive and silly laws and rules. We're being slowly stripped of our rights while it's apparent that you've already lost much of what we've got and are prepared to give up still more. I pity you and your mindset - it's the sort of mindset that allows others to take over. While it may not be the Jewish people who are your scapegoat this time I'm sure someone like your Father Leman will step in with a target sooner or later. Oh wait - it sounds like perhaps this may be occuring already?

    You'd have us believe that you learned from Hitler, judging from what you've written I'd say that's not so at all. You're more than happy to go with the flow and not question the stripping of freedom from others - does this not ring alarm bells anywhere? It should...

    --
    Build it, Drive it, Improve it! Hybridz.org
    1. Re:LOL! Who makes these choices? by PhB95 · · Score: 1

      >You speak as if you're voice is one with the >rest of Europe, is it possible there are >citizens there who disagree?! You speak for "the >people of Europe"? Of course he doesn't. I'm an European too, and I do disagree with ANY limitation in freedom of speech. This means that I'm not satisfied with a growing part of my own countrys laws. And I know for sure I'm not the only one... A good part of ruling is now gone towards Brussels and the EU institutions, so now for example we have just received our own copy of the DMCA, even a bit improved (this should read "worse"), and so I think more and more that we miss some equivalent of the ACLU here.

      --
      One of those Europeans...
  109. Re:NO! by Mignon · · Score: 5
    it mainly turns on a contract issue about the clickthrough agreement

    Then Dr. Felten's OK, since Amazon will be suing SDMI for breach of patent on the "I Agree" button.

  110. Also available at Cryptome by Stavr0 · · Score: 4
  111. So what? Nothing's going to change. by revscat · · Score: 1

    Well, looks like we have yet another example of a corporate hegemony abusing it's powers via threats of lawsuits. Same story, different day.

    So what? I have serious doubts that bitching about it on /. is going to change a goddamn thing. In fact, I have serious doubts that *anything* is going to change a goddamn thing. Give money to the EFF or EPIC or whoever, but it doesn't fucking matter. The governments of the world continue to give more and more power to moneyed interests with little regard for the good of democracy or freedom. Modern governments almost exclusively represent the will of multinationals, and I just refuse to consider this a Good Thing(tm) no matter what the Randroids say. *Anything* that throws a wrench in the ability for corporations to make money is vilified, ridiculed, or just ignored. Witness Bruce Schneier's highly-ignored testimony before the committee considering the DCMA, or or the FBI pulling unknown shenangians related to the recent world trade meeting in Quebec.

    Nothing can beat capitalism. Nothing. Not guns, not religion, not science, not hedonism. When you get in the way of capitalism, you will get fucked and you won't even get a reach-around. Go ahead, bitch about it on /. or wherever. It won't change a fucking thing. Especially when the vast majority of the population are TV zombies, Q3/B&W/CS zombies, NFL/NHL/NBA zombies, or just plain idiots.

    Tune in. Turn on. Drop out. That's the best advice I've heard. Of course, I'm writing this from my cushy job in a cubicle, sitting on a Sun Ultra.

    GRRRRrrrrr.

    - Rev.
  112. Re:Real or Imaginary? by look · · Score: 1
    Another alternative might be to publish under a pseudonym. The Student's T-test is named after the statistician Gossett who published in the name "Student". Student worked for the Guinness brewery, but they didn't allow publication to be associated with the brewery. (The "drink guiness makes you smart" slogan didn't go down well :-)

    Heh! We just talked about that in my probability and statistics class. According to my professor, Gossett published as "Student" because the brewery considered his results akin to a trade secret -- they were using his math to help with quality control, and didn't want other brewery's (presumibly) to find out.

    Don't know if that's really true or not, but it does seem oddly fitting when you look at this Princeton paper.

    Go to hell, RIAA!

  113. There is a huge upside to this! by werdna · · Score: 5

    DMCA can only be defeated in two ways:

    1) Judicially neutering it, either by judicial construction of its provisions that broaden its scope to permit free discussion and disclosure of the technology, or by finding broad constructions unconstitutional absent fair use provisions; or

    2) Politically, by getting the Congress to change its mind and send RIAA home without its supper.

    In view of the decreasing credibility of RIAA outside its spin rooms, and increasing interest by the public in Napster and its progeny, Congressmen and Senators are beginning to publicly suggest a substantial "rethink" of its provisions.

    Until recently, folks have been pooh-poohing the alleged downside of the Act, suggesting that only the pirates or collaborators are getting nicked, and this has held sway in the halls of power; and in the halls of justice. The suggestion that mere enforcement of (or threats of enforcement of) DMCA provisions doesn't chill freedom of speech or sound academic freedoms (pointing to the so-called "research exception") has been set aside in the broader interest of "protecting artist incentives."

    This can no longer occur without a substantial rebuttal.

    Sure, I would have far preferred Professor Felton to cock a snoot at them, fight the good fight and win in the Supreme Court a great victory for us all. (Ultimately, I believe he must prevail on the merits -- his argument is even stronger than the one Kathleen Sullivan is going to make before the Second Circuit in the DeCSS case).

    But this is just as well. Good lord, a Princeton professor being squelched from delivering a pure research paper already published and readily available on the internet? This is of enormous political advantage -- it will overwhelm the spinners, and perhaps be more valuable than anything else that could happen.

    This is because it makes it enormously harder for folks to hand-wave the first amendment issues, and to show how ludicrously broader the DMCA is than any sound basis for Copyright incentives can justify.

    In recent years, no good has ever occurred when the legislature has tried to "catch up" IP law to the present -- every time it has reduced to a handout to the politically powerful media lobbies. The formerly powerful library lobbies were bought off with express excemptions, and the traditional academic forces and liberal civil liberties organizations have not been so effective lobbying the increasingly Republican-controlled legislatures.

    Now, there is real ammunition. New, more powerful constituencies are realizing their commercial well-being is being affected by the overbearing and overreaching exploitation of these laws well beyond the bounds of reason. And traditional civil liberties organizations are begining to make more sense to the public because of the "realness" of losing Napster, and the pretty decent story that Felton would make.

    What's more, by complying with the law as outrageously asserted here, Felton can NEVER be cast as a pirate. He will be a poster-child for DMCA reform far more powerful than any limited victory he could win in court -- at best just a finding that a research scientist performing crypto research falls within the crypto research suggestion. That syllogism wouldn't be as big a win as the repeal or political neutering of DMCA.

    So, despite the emotional letdown I feel, this is probably a Really Good Thing.(R) RIAA probably lost more by winning than they would have by losing.

  114. License terms by overshoot · · Score: 2

    Please keep in mind that the RIAA and MPAA have already argued in court that their license terms are binding on consumers. Therefore, the "agree not to hack" constraints will be applied to anyone doing postmarket research on these watermarks.

    What? The Court would throw the suit out on the grounds that there is no contract? That might be, if you can afford several million up front for the defense. Let's have a show of hands:

    --
    Lacking <sarcasm> tags, /. substitutes moderation as "Troll."
  115. University Students: write your professors! by CoughDropAddict · · Score: 5

    This should catch the attention of any academic researcher -- do your part to help raise awareness in the academic community! Below is a letter I sent to my math advisor:

    Dr. ******,

    As you could probably guess, there are many political issues about which
    I have strong feelings for whatever reason, especially in the realm of
    computers and cyberspace. While it is normally most appropriate to keep
    these to myself, an issue has come about which I believe has a very
    direct impact on you and on other professors with respect to the
    academic research you regularly conduct. This is why I am writing to you
    today.

    In September of 2000, the Secure Digital Music Initiative (SDMI)
    announced an open contest to the computer community
    (http://www.sdmi.org/pr/OL_Sept_6_2000.htm), inviting people to try and
    break a watermarking scheme they had developed for digital sound files.
    They challenged anyone to remove the watermark present in several audio
    samples they published on their web site, without noticeably degrading
    the quality of the signal. The reward was to be up to $10,000 in
    exchange for non-disclosure of the solution.

    A group of researchers from Princeton University led by Dr. Edward
    Felten decided to take on the challenge and found several successful
    methods for removing the watermark. The researchers decided against
    accepting the prize money with the attached requirement that they keep
    their research secret, and instead authored a paper titled _Reading
    Between the Lines: Lessons from the SDMI Challenge_. It was their
    intention to present it today at the 4th annual International
    Information Hiding Workshop in Pittsburgh
    (http://www.cert.org/IHW2001/).

    However, on April 9th, they received a letter from the Recording
    Industry Association of America (RIAA) threatening a lawsuit if they
    presented the paper as planned, claiming that the contest agreement did
    not "'expressly authorize' participants to disclose information and
    research developed through participating in the Public challenge.

    As a result, Dr. Felten made a public statement today that he and his
    colleagues would not be presenting the paper as planned. "Litigation is
    costly, time-consuming, and uncertain, regardless of the merits of the
    other side's case," he announced. "Ultimately we, the authors, reached
    a collective decision not to expose ourselves, our employers, and the
    conference organizers to litigation at this time."

    His statement, the letter from the RIAA threatening litigation, and the
    paper itself can be viewed at (http://cryptome.org/sdmi-attack.htm).

    I believe this is a frightening precedent, and a major blow to academic
    freedom and the research community. Felten's crime was conducting
    research that was seen as threatening by the business community--what
    research will they decide they don't like next time? What can be said of
    "academic freedom" when a rich company need only write threatening
    letters to suppress troublesome knowledge?

    If you agree that this is relevant and pertinent information, I would
    appreciate it if you would forward this e-mail to any of your colleagues
    who might be interested.

    Sincerely,

    Joshua Haberman

    --

  116. Turn The Tables On Them by frenchs · · Score: 4
    I say the researchers should turn the tables and sue.. ($1+ lawyer fees seems like a good penalty) the RIAA for infringing on their first ammendment right to freedom of speech.

    And what I think what they should do is take a page from the DeCSS proceedings and introduce the research paper itself into evidence... therefore making it public. heheh

    Steve

    1. Re:Turn The Tables On Them by PurpleBob · · Score: 1

      Not really. The RIAA's offer said that you would get the prize money only if you gave your findings to them and nobody else (at which point, of course, they would probably cover it up and threaten to sue if the "winners" talked about it again). The researchers chose not to take the bait of the prize money, so that they could still have a right to their own research.
      --

      --
      Win dain a lotica, en vai tu ri silota
    2. Re:Turn The Tables On Them by shaunj · · Score: 1

      That doesn't make a difference. Congress is the only part of our government that has the ability to enact law or policy. What you may be hinting at is that there is nothing prohibiting the government from abridging speech in practice, they just have no legal claim to do so.

    3. Re:Turn The Tables On Them by Fesh · · Score: 2
      When we start talking about the distinction between what's legal and what's done in practice, we're already swimming in eel-infested waters, are we not?


      --Fesh

      --
      --Fesh
      Kill -9 'em all, let root@localhost sort 'em out.
    4. Re:Turn The Tables On Them by Fesh · · Score: 4
      Sadly, I believe that the First Amendment only applies to government restraint of speech. A corp can do anything it damn well pleases as long as it doesn't run afoul of pertinent regulations, none of which apply to corporate silencing of someone not employed by them. In fact, as far as the wording of the First Amendment goes, it only says that Congress can't make any laws that abridge individual speech. Which means that the rest of the government can do just about anything it wants to as well.

      Fun stuff! I'd like my totalitarianism with a mega-sized order of fries and a 64-oz Coke(tm), please!


      --Fesh

      --
      --Fesh
      Kill -9 'em all, let root@localhost sort 'em out.
    5. Re:Turn The Tables On Them by smagruder · · Score: 2
      I'm not sure if anyone has realized this, but SDMI could be sued for Breach of Contract.

      Steve Magruder

      --
      Steve Magruder, Metro Foodist
  117. Re:Have Corporations replaced Religions? by cr0sh · · Score: 1

    I don't think you did, nor do I think you meant to. I only wrote my comment because torture, in the collective mind of society, has become something that happens "elsewhere, elsewhen, and to somebody else". Off hand comments, like the one you made, further perpetuate this largely unconscious notion.

    I had read several books and articles on torture and the Inquisitions, but it wasn't until I stood before the instruments of its application that I fully understood the horror of those times, as well as the horror of torture people have faced in recent times, and alas, today.

    On a slight more lighthearted note (just slightly)...

    One thing I found odd - was that most of the collection displayed in the museum came from two different individual private collections - in other words, somewhere in the world there are individuals who collect these type items, actively seeking them out (and they must be active, and relatively wealthy as well - I say this because one of the instuments on display was a winch, which had been in use on a farm for centuries, and was identified as part of a torture system by the collector, who then purchased it - furthermore, much of the collection consists of large devices, which requires space to store properly). I found this at once odd (because what kind of person would do such a thing?), disturbing (once again - what would drive a person to collect it), and insightful (because destroying these devices does the world no good - it is only through open display and discussion can we as a society move past the need for harming each other in order to extract so called "truths")...

    Worldcom - Generation Duh!

    --
    Reason is the Path to God - Anon
  118. There is no "used to be"... by cr0sh · · Score: 2

    Torture is still used as a common means to obtain confessions around the world.

    One of the more heinous methods of torture used today is water torture:

    You are bound on your back, a funnel is put in your mouth, your nose is closed, and water is poured in. You have two choices: drown, or drink the water. Most choose number two. But the water keeps coming, and your belly fills up. When your stomach is full to a certain point, then the real point of the torture begins: You are beat with a paddle, stick or bat on the stomach - repeatedly, to confess! You must confess! Needless to say, you either puke the water back out and have bruises, at which point the torture is repeated, until you confess (then you are likely to be burned at the stake, or something else - or you die from your injuries), or your stomach bursts, and you die an agonizing death of internal bleeding and extreme pain.

    This museum viewing (it was a "self-guided" tour) was not something for kids - in fact, one had to be 18 or older to enter, no kids allowed. To illustrate:

    One particular device that was shown was used on individuals who were found to homosexual, or had extramarital affairs (both male and female) - a wooden pyramidal shaped wedge was mounted on a tripod like structure, and the accused was suspended above it, and repeatedly dropped on it so that it would pierce their anus or vaginal area, until they confessed, or died. Sometimes weights were applied to the ankles. Any movement of the accused would only increased the pain. It is worth remembering that these sessions were generally public, and drew large crowds, as well.

    I am not trying to be disgusting, or get a rise out of people with this comment - I am merely trying to illustrate the impact these exhibits had - how they drove home the point that we are at base uncaring animals - and how throughout history, and even today, we seek to demean others through the most painful and violating ways...

    Worldcom - Generation Duh!

    --
    Reason is the Path to God - Anon
  119. No... (Going really OT now, but WTF?) by cr0sh · · Score: 2

    Think of it as the difference between being told a close friend of yours was shot and killed, versus being right next to the individual when it happened.

    In both scenarios, there is major grief, and shock, but in the latter, there is extreme shock.

    I had read about torture and the Inquisitions many times prior to seeing the exhibit, and I knew and comprehended the misery that people suffered. It wasn't until I saw the the actual devices used, in person, that I really understood the level of fear and misery - I knew there was misery, I understood there was misery - but seeing these instruments, knowing that some were actually used, was like a sucker punch in the gut - a new understanding of a level of misery, and cruelty that no mere knowledge could impart.

    Worldcom - Generation Duh!

    --
    Reason is the Path to God - Anon
  120. Re:Have Corporations replaced Religions? by cr0sh · · Score: 3

    Ok, this time it is lawyers instead of torture. But, I don't see that much difference, really.

    trentfoley, I fully support your opinion and ideas on this whole thing - you are most certainly correct that the corps are acting in a similar way as the Catholic Church did so long ago...

    But to say a horde of lawyers is anything like torture only belittles the actual hell that torture is.

    Want an eye-opening experience?

    Go to the Museum of Man in Balboa Park in San Diego, California (USA). They currently have an exhibit (or at least they did when I was there in February) on torture, the Inquisitions, and the machines/devices used.

    Oh sure, they have your standard rack and Iron Maiden (actually an 18th century period-repro of the original), guillotene (sp?) and thumbscrews. But there are other devices there - some reproductions, some actual devices that were once used. All with descriptions detailing how they were used, why (ie, the "crimes") and when. The horrors one used to (and in some regions today, still have to) have to endure just for being a woman, or being a "fool" (or a loudmouth, or similar) are sobering, to say the least.

    And disgusting.

    I entered into that exhibit with curiosity - I exited ashamed of being human.

    Worldcom - Generation Duh!

    --
    Reason is the Path to God - Anon
  121. Copyright holder by fiori · · Score: 2

    But once the paper is published the journal owns the copyright to the paper not the author(s). IANAL, but would that mean the RIAA would need to go after the publishing house? They have lots of lawyers.

  122. Calm down Rick by IPFreely · · Score: 1
    You obviously have strong opinions about religion in education. This is fine. But you are carrying too much of that bagage into this conversation.

    The original commenter stated that he felt that he was being suppressed because of his beliefs and that he was uncomfortable with that situation.
    Then you come in with your long diatribe about the history of christianity in general.

    This kid is not responsable for all of that any more than you are responsable for IBM's participation in WWII Germany just because you like playing with computers.

    The original post was a kid who felt suppressed because of his beliefs. you suppress him some more.

    Lots of geeks are suppressed in school, because other people do not understand why they enjoy doing the things they do. Supressing this poor kid is about as bad as picking on the geek kids.

    He's just a kid. Don't lay the whole history on him.

    (If you feel like accusing me of some incredible bias, note this: You don't know squat about MY opinion. So don't make assumptions)

    --
    There is nothing so silly as other peoples traditions, and nothing so sacred as our own.
  123. Re:That's a shame. by Monte · · Score: 2

    I agree, this is akin to schools in the bible belt saying you can't teach evolution.

    I disagree. In the case of evolution in the schools the decision is made at a very local level, by people who were voted into that capacity by the folks that live in that place.

    Generally speaking, if the schools don't teach evolution it's because the parents don't want them to - the board is carrying out the Mandate of the People.

    (Yeah, I know that you might consider that a Mandate of Idiots, but hey, some people think differently than you do, and they adjust their local environment accordingly. It's diversity in action.)

    The RIAA is a corporate entity, we can't vote the fsckers out. And the reach is nation wide, rather than someplace like Dryhump Nevada. The only interests they're protecting is that of soulless mega-corps.

  124. copyright by Hard_Code · · Score: 2

    "The Congress shall have power...to promote the progress of science and useful arts...by securing for limited times to authors and inventors the exclusive rights to their respective writings and discoveries."

    Sad. Sad.

    --

    It's 10 PM. Do you know if you're un-American?
  125. NO! by MartinG · · Score: 3

    claiming the research paper is a circumvention device

    NO!

    The paper is (among other things) a description of how to go about making a circumvention device. Not a device in itself. Big difference. cf. "bombs" vs "list of bomb ingredients."

    --
    -- MartinG To mail me: echo kewyjlcxyzvjfxbqwh | tr bcefhjklqvwxyz .@adgimnoprstu
    1. Re:NO! by MaxVlast · · Score: 3

      I've been pretty neutral on this whole issue -- I think the DeCSS case is pretty braindead on the part of the MPAA, but figured there wasn't a whole lot at stake.

      I was wrong. When the same proerpty-protection is used to suppress two independent academic efforts devoted to the creation of knowledge and ability, I'm piqued.

      As a student at a research-heavy institution (the home of Dr. Touretzky) I now must fear that the research that my colleagues and I pursue may unwittingly stumble onto the front lawn of a capitalist industry association with a shotgun and a vengeance. That's not just un-academic, that's unconstitutional.

      To the ramparts, troops!


      --
      Max V.

      --
      There should be a moratorium on the use of the apostrophe.
      Max V.
      NeXTMail/MIME Mail welcome
    2. Re:NO! by Wordsmith · · Score: 1

      List of ingrediants = decryption source code.

      Bomb = dedicated equipment hard-wired to run the code.

      (compiled code is still just instructions, just difficult to understand instructions)

      Sound liek another case we know?

    3. Re:NO! by RandomPeon · · Score: 5

      The paper contains pseudocode-like descriptions of how to retain your rights. It's a "device" under the DMCA

      That's the whole problem, if source code, a very precise and computer-centric format for describing a process is a device, translating the "device" into a less precise and more human-centric format means it's still a "device".

  126. Mirrors! The more the better by 1010011010 · · Score: 2
    --
    Napster-to-go says "Fill and refill your compatible MP3 player", which is a lie. It's not MP3. It's WMA with DRM.
  127. Re:Typical RIAA by Tackhead · · Score: 2
    > Who'd have thought that the RIAA would try to supress information.

    It's a conference on information hiding, what did you expect? RIAA just happens to interpret that phrase a little more literally than the rest of us :)

    "HALT, Citizen! Put down the math textbook!"

  128. Re:Best possible result by MrEd · · Score: 1
    Aye, there's the rub - for every major media source is corporatized in our crazy world. No favorable coverage will be given to anything that might injure the public image of any corporations that might buy advertising on CNNBCBS.

    That's why you won't hear anything about the FTAA besides how many sixteen-year-olds were throwing bricks at the police.

    That's why the DMCA will never be criticized.

    That's why Nader and Browne didn't get any favorable coverage.

    And nobody cares.


    Dog found hanging off bridge in New Jersey! Film at eleven!

    --

    Wah!

  129. Missing the point by Gorimek · · Score: 2

    Why don't you hire an equally high powered team, and when you win, they collect their $2M from RIAA?

    If it truly is a frivolous lawsuit, those lawyers will be happy to work under the condition that they only get paid if they win.

    "Loser pays" is the law in many countries that, for some odd reason, does not have nearly the same volume of crazy or hostile lawsuits as the US.

    1. Re:Missing the point by Gorimek · · Score: 2

      In the current system that's probably true. But in a different system with different incentives people would behave differently.

      I think it would be good business for lawyers to accept conditions like this if they think they have an almost 100% chance to win. If there's money to be made, someone will be there making it.

      The main effect though would be that these kinds of lawsuit threats would be much less common.

      I'm not sure what retainer and contingency actually means. I think

    2. Re:Missing the point by Gorimek · · Score: 2

      OK, the basis of your argument seems to be that the facts of a case has next to no impact on the verdict in the US legal system, but that instead it's the amount of money each side can spend on lawyers that decides the outcome. I'm no small cynic my self, but I don't agree with that. Still, it's a matter of opinion.

      But even if that is true, in a loser pays system you can assemble a just as powerful and expensive team as RIAA if you have a really good case on the merits, since you're not paying with your money, but with the RIAAs. I hope you think the fact of the case has some bearing when both sides pack equal lawyer power at least? An you wouldn't need to pay the retainer, since it would also come out of the RIAAs pocket.

      All this under the assumption that the lawsuit being threatened has no real merit, and is only done to intimidate people who cannot afford a trial, even when they clearly have done nothing wrong. That is the problem case that at least I am talking about. If you've actually broken some law you're in much more trouble, of course.

      [Thanx for the explanation of terms. My unfinished sentence were supposed to have read "I think it doesn't affect my point though"]

  130. Think of it as motivation by Dr.+Blue · · Score: 1


    Well, there's certainly something good to come from this. It's so incredibly outrageous that it made me get off my complacent ass and send letters to my reps in Washington.

    In encourage everyone to do the same!

  131. Godwin's Law by PurpleBob · · Score: 1

    You lose.
    --

    --
    Win dain a lotica, en vai tu ri silota
  132. Re:�Implementing "loser pays" by PurpleBob · · Score: 1

    In sixth grade a bunch of my geek friends and I set up a "legal system" at the lunch table. The issues we would litigate on were always trivial, of course, and invariably the process would degenerate into all of us shouting "I'm suing you for suing me!" at each other.

    I had no idea how accurate we were.
    --

    --
    Win dain a lotica, en vai tu ri silota
  133. Great way to make money here! by xerx · · Score: 2


    Step 1. Invent some kind of poor encryption.
    Step 2. Make a contest to break it.
    Step 3. Everyone who steps up to claim the prize, sue them!

    This page was generated with the help of DOC++.

  134. Re:has anyone noticed by trixillion · · Score: 3

    Oh, yeah noticed it right off the bat. The paper was a funny read for anyone with a background in signal processing. The SDMI should definitely be worried. While it took some ingenuity to determine what scheme was being employed. Most undergrad EE's and some CE's armed with this paper could write the necessary filters to remove the watermarks.

  135. Re:Egads... by Ronin+Developer · · Score: 2

    Of course, remember when it was illegal to print the RSA algorithm on a tee shirt within the United States?

    That was done in the name of National Security.

    Here, it's done in the interest of stock holders.

    Amazing to think that disclosure of something as simple as a mathmatical equation could land you in court, or worse, jail . And stock holders will profit from the fraud perpetuated as they go forward and manufacture devices incorporating this "secure" technology.

    RD

  136. Good Tactics by bwt · · Score: 5

    Folks, this is a big league PR move, and it's quite well-timed.

    The oral arguments for the DeCSS case happen May 1. Given the critical decision the 2nd Circuit will be making in the next few days, the goal should be to bring the anti-DMCA sentiment to a crescendo, and Felton's action should help achieve that. By withdrawing his paper, some very negative press should be aimed at the DMCA by major news organizations.

    People should keep in mind that the anti-DMCA push is very well orgainized, and that Felton has already participated in it. I have no doubt that the paper will be published in a few weeks (not counting that it has already been leaked!). Meanwhile, major media organizations have a great reason to run "The DMCA is draconian" stories soon, citing Felton's case.

    The timing of this is supurb, and it's frankly a sharp tactical move. Felton will probably publish this paper in a few weeks. Hell, more people will read it because of the suspense. IMHO, he's on very sound DMCA footing as he clearly qualifies for 1201(g).

  137. Re:Well by Niggle · · Score: 1

    If you (an individual) are going to go bankrupt anyway under the current situation, does if matter if you go bankrupt for a hundred times more money?

    Such a rule might deter corporations from lawsuits though since they can usually afford the costs. But probably not 100x the costs.

    --
    - Blah blah blah, missing scientist. Blah blah blah, atomic bomb. -
  138. RTFFaq by jacobm · · Score: 5

    Your claim that the researchers were just helping out the RIAA has been made to the researchers many times.

    From the faq:

    Q. By participating in the challenge, weren't you helping the record companies impose restrictive technology on music lovers?

    and...

    Q. By participating in the challenge, weren't you helping pirates steal copyrighted music, impoverishing musicians and songwriters?

    We believe our success against all four watermarking technologies, and our sharing of those results with other researchers, will not help anyone impose or steal anything.

    On the one hand, this information cannot be used to make restrictive technology. If anything, it suggests that all of the proposed technology is incapable of being restrictive.

    On the other hand, this information cannot be used by pirates if the technologies are never deployed. This is why it is best to perform analysis on a security system before it is released.

    Q. Still, wouldn't it have been better for SDMI had you not analyzed their system?

    SDMI invited the public to analyze their technologies (to "crack them" said their invitation,) setting up a web site and hiring people to assist. Also, any weaknesses in SDMI's technology would have existed even if we hadn't looked for them---analysts do not create flaws, but merely detect them---and if the SDMI system had been deployed as is, pirates would have found and exploited those weaknesses, regardless of our actions.

    The study of information security is based on two equally important components: the design of security systems, and the analysis of (attempts to break) those security systems. One occasionally encounters the misconception that analysis is destructive and evil, and that people performing analysis are attackers who wish to exploit those systems. Rather, analysis is a critical component of the development process. Without it, one would never know if systems were well-designed, and one would never learn how to design better systems.

    Q. Still, wouldn't it have been better for opponents of SDMI if you let SDMI go ahead and deploy a flawed technology, so music lovers could teach them a lesson by copying music despite the technology?

    Of course not. This is scientific research: it is not our goal to engage in tactics such as tricking the industry into choosing a flawed system. Our goal is simply to analyze security systems and share our results openly with the scientific community.

    Again, researchers who crack cryptosystems and security systems are not motivated by a desire to exploit these flaws later. They are merely subjecting systems to analysis, motivated instead by a desire to increase the existing body of knowledge about security systems.

    Secondly, if the technology is cracked in deployment, rather than on the drawing board, everyone loses to some extent. The recording industry obviously, device manufacturers most certainly, but even opponents of SDMI. Even pirates! To an opponent of SDMI, even a broken, circumventable SDMI system is worse than no SDMI system at all.


    --
    -jacob
    --
    -jacob
  139. Having their cake and eating it, too... by Noryungi · · Score: 4
    Like many others, I can't help feeling disgusted by all this.

    It's one thing to attack everytime someone does something that may be used to circumvent intellectual property rights, but, come on! Threatening someone because he took up a challenge you made?

    What I would like to know is this:
    • would it be possible for ACLU (for insance) to publish this paper and get sued instead of Pr Felten?
    • Would it be possible to translated and/or publish this paper in a country with a saner legal framework?

    This being said, I am almost certain any judge reviewing this case would just throw it out. Suing the SDMI challengers is almost as stupid as suing Galileo for saying the Earth is round and not flat...
    --
    The right to offend is far more important than the right not to be offended. (Rowan Atkinson)
    1. Re:Having their cake and eating it, too... by jdwtiv · · Score: 2

      The EFF and other's voiced these kinds of concerns when the challenge was first issued and asked people not to participate. "When you shake hands with the devil, the devil don't change"... :)

    2. Re:Having their cake and eating it, too... by Jaysyn · · Score: 1

      "would it be possible for ACLU (for insance) to publish this paper and get sued instead of Pr Felten?"

      I would love to see this happen....that Shapiro guy the ACLU has is one helluva shark....

      Jaysyn

      --
      There is a war going on for your mind.
    3. Re:Having their cake and eating it, too... by dachshund · · Score: 5
      Would it be possible to translated and/or publish this paper in a country with a saner legal framework?

      Well, there's really no point in doing that, as the paper is available online. Translating it into Spanish and publishing it in Cuba would hardly be much of an improvement.

      Which makes it even more galling! The RIAA knows that the paper is not a secret, and has already been released to the whole word. Therefore, by going after Felten they're not really trying to prevent someone from using the techniques described, they're simply trying to intimidate academics. There's no other explanation than that, and I'm really really sorry that Professor Felten let them get away with it. I understand that he has other people to consider, but it will be miserable if these actions are allowed to stand.

  140. Another view on this.... by 8127972 · · Score: 1

    can be found here.

    --
    This is my opinion. To make sure you don't steal it, it's covered by the DMCA.
    1. Re:Another view on this.... by deaddrunk · · Score: 1

      'Welcome to planet Earth. A subsidary of Microsoft.' Heh. I remember hearing that joke 10 years ago, only it was IBM, not Microsoft. The more things change the more they stay the same.

      --
      Does a Christian soccer team even need a goalkeeper?
  141. What!? How is a paper a "device"? by Digital_Quartz · · Score: 2

    The DeCSS case was different; in the DeCSS case we were talking about a piece of software which does something. Here we're talking about a paper. A paper with printed text on it can't help me circumvent any copy protection! That's crazy talk! It's like saying it's illegal to carry around a concealed drawing of a hand gun on the grounds that the drawing is a weapon.

  142. Re:TAKE THE CASE!! -- AND LOSE! by Negadecimal · · Score: 1
    Ok, so perhaps DMCA does still apply.

    However, the fact that the RIAA asked the researchers to break their code and communicate their findings back to them makes them equally culpible. If I were to ask someone on the street to punch me in the stomach, I'd be hard-pressed to find a judge who'd humor a personal injury lawsuit.

    Besides, this isn't your usual DMCA case where the entertainment industry (i.e. the "American public") is defending itself against "evil hackers". I think the profs would have won the matter -- it's just that nobody wanted to deal with the potential costs.

  143. Re:Mirrored: by Exile · · Score: 1

    As well as:

    http://f858.rom.su.se/sdmi-attack/sdmi-attack.ht m
    http://www.users.wineasy.se/johanssons/sdmi-atta ck /sdmi-attack.htm

    (just mirrored .-)

    // Mikael Johansson

    --
    -- Exile Who do you want to be tomorrow
  144. Re:TAKE THE CASE!! -- AND LOSE! by ArtDent · · Score: 2

    The anti-act of circumvention exemptions that lack corresponding anti-device counterparts constitute one of the most signficant deficiencies in that law.

    It NEEDS to be challenged in court. I'm extremely disappointed in the paper's authors.

  145. Read the paper, if you can handle it by hey · · Score: 1

    The Register has a copy of the paper here. I loved the bit where they looked up a patent.

  146. BeOS by passion · · Score: 2

    From the Register mirrored version of the article....

    http://www.theregister.co.uk/extra/sdmi-f05.jpg

    it appears as though they did this anaysis using the BeOS. It's good to see JLG's tech being used for what it was intended for, and I guess this is a dodge for the blame being placed on "that anarchic linux crowd" for cracking another flawed protection scheme.

    --
    - passion
  147. Mirrored: by LocalYokel · · Score: 5
    This probably isn't the only one:
    http://www.theregister.co.uk/extra/sdmi-attack.htm .

    Is it out on Freenet yet?

    --

    --

    --
    E2 IN2 IE?

    1. Re:Mirrored: by Sarcasmooo! · · Score: 1

      I wonder if Slashdot could get a friendly letter from the RIAA about this.........much in the same manner as the one they got from those scientologists.

      And on another note, I feel like I should explain all the 'modding down' I did in this thread. Posts like this and this are nice, but please, moderators -- they are not deserving of a 5. And they definitely don't belong above comments like this and this.

    2. Re:Mirrored: by Sarcasmooo! · · Score: 1

      Awwwwwwwww fudge it!@! It undoes moderation that I made? I assumed that I could post without any issue once I had used all my points. GRRRR.

  148. Re:has anyone noticed by djfiander · · Score: 2

    And here is US Patent 05940135, as mentioned above.

    - David

  149. What to do now? by Trekologer · · Score: 1

    1. Call or write your congressman and senators.

    2. Join the EFF.

    3. Get the word out (write to the editors of papers) about what is going on.

  150. Re:THE RIAA IS RIGHT by Trekologer · · Score: 1

    NO! They are NOT right.

    SDMI made an open challenge to ANYONE ANYWHERE to break their watermarking system. They assumed that anyone who was successful would give them all rights to the results in exchange for the prize money. SDMI did not stipulate that you MUST give them them the results. These researchers took the FREELY AVAILABLE MUSIC FILES and broke them. They weren't intrested in the prize money so they didn't sign their work over to SDMI.

  151. Re:They chose their only option by Trekologer · · Score: 1

    There's a time and place for every fight but for a legal fight, this is neither the time or place. It is the time and place for the publicity battle. RIAA/SDMI can not possiblly label these very distinguished college professors cheats and theves as they have with the users of Napster. Hopefully, the public won't stand for manuvers such as these and there'll be an outcry agaist big entertainment. Hopefully.

    Although I would have liked them to thumb their noses at RIAA/SDMI over this, it was a good decision. Read Professor Felten's statement again. He's trying to show how rediculous the recording industry is being.

  152. Re:Well by Technik~ · · Score: 3

    This is why when someone brings a law suit against someone else and looses[sic], they should not only compensate that person/company, but should do so 100X the costs it took to defend themselves. Then the RIAA would have to reconsider next time it was to use terrorism and its bought Senators to push researchers around.

    This is a truly awful idea and I'm ashamed that it got modded up to '5'. Who benefits most from a situation where a failed lawsuit can rebound and cost the plaintiff 100x the cost of defense? Big companies, the same big companies you rail against. Little guys with solid cases against big businesses will be pressed to the wall to justify a lawsuit when they tally up the $250-$500/hour that a lawyer costs and multiply by 100.

    Does anyone believe that a scheme like this would be anything but a lever used by well-funded entities to cow the aggrieved into settling and pervert the legal process? Right. It will stop frivolous lawsuits by guaranteeing that they are not brought by any group that can't pony up an escrow of a few million dollars per month as the suit drags on.

  153. So basically what you're telling me... by Greyfox · · Score: 4
    Is that a corporation, with the mere threat of a lawsuit, can silence any individual or academic group because win or lose that person or group will be bankrupted by the legal expenses.

    I don't think this is what the founding fathers had in mind.

    --

    I'm trying to teach myself to set people on fire with my mind... Is it hot in here?

    1. Re:So basically what you're telling me... by PerlGeek · · Score: 1

      I own many books. I do not own the copyrights on those books. I also own many CDs, which I do not own the copyrights on.

      I own the publication, they own the copyrights.

    2. Re:So basically what you're telling me... by flipper9 · · Score: 1

      That is the reality that we live in now. Just look at what corporations can do to silence people, local governments, state governments, nations when it doesn't fit into their single cause to make a profit. Corporations have only one purpose to make money. They don't care about people, nations, things that we as human beings hold dear.

    3. Re:So basically what you're telling me... by flipper9 · · Score: 2

      ...is that congress routinely ignores emails... Story: Congress Ingores Email

    4. Re:So basically what you're telling me... by Fractal+Law · · Score: 5

      That's basically it.

      Of course, it could be argued that the founding fathers did not predict the existence of multi-national corporations whose stock value exceeds the GNP of many countries.

      The anti-trust laws (though severely outdated) and class action lawsuits give some protection against certain abuses of power by corporations but that does not include protecting individuals from legal bullying.

      The apathy of the majority of the American population on the matters of corporate influence in Washington, reduction of first amendment rights, and the reduction of fair use rights seems to preclude any new laws properly addressing these problems.

      If the situation gets bad enought then maybe there will be enough public pressure to enact some changes but things will have to get pretty bad.

      As long as people just sit around complaining about the current state of affairs without actually doing anything then nothing will ever change. Donate to the EFF and ACLU, write your congressperson, attend the various demonstrations that are often organized when one of the cases gets to trial.

    5. Re:So basically what you're telling me... by Bren · · Score: 1
      Yeah... but what if the RIAA wins? It would kinda suck for you to pay their lawyer bills, since I'm sure they will spend more for lawers than you do... hmm... that would be enough to scare me away even if I felt confident I would win and they would pay my bills if I won...

      Bren.

    6. Re:So basically what you're telling me... by GemFire · · Score: 1

      It is already pretty bad. I am comparing the world today with Nazi Germany. The Propaganda put out by those in power (the corporations - not the politians) have blinded the upright people into believing something that isn't true. Copyright owners do not OWN the content they publish. They own the COPYRIGHT. The Public owns the publication. This very basic misunderstanding is very profitable and the copyright owners will do whatever they must to engender its continuation.

      Lawsuits are the modern version of the Gestapo only using money as a threat instead of outright fear. The end result is the same - those who might challenge those with power can't afford to do so and have no support from the masses (who are believing the lies they hear from those in power.)

      And in this case, one of the surest methods of changing the balance of power back toward the people, education, is being threatened.

      Censorship, monopolies, the threat of losing everything we own -- aren't those the reasons we declared independence from the British?

      http://www.limitingcopyright.com

      --
      Don't just complain - DO something about it!
    7. Re:So basically what you're telling me... by Spinality · · Score: 2

      The solution, at least in the most frivolous cases, is loser pays. I would imagine that most courts would find against the RIAA at this point. If loser pays, then the RIAA would have to pay the legal expenses of these researchers. -- leviramsey

      In the U.S. legal system, in nearly all cases, each side pays its own legal fees. We might feel we'd be better with the UK model, where the loser pays, but that's simply not the one we have. There are some specific U.S. law situations involving antitrust and intellectual property where the loser bears court costs, and of course a given contract may specify that the loser pays court costs; but in general, absent special conditions, each side pays its own way regardless of who wins, and the judge has no discretion about this.

      I'm in precisely this situation. My (little) company has been screwed by a big company that has decided not to honor an agreement. We have about $200K in damages but it would cost $80-100K to litigate. Litigation is painful and invasive, and there's always a reasonable chance that we would lose, despite the fact that on the face of it we are the victims. So we will probably chalk it up to experience.

      It's all well and good to say that these folks should stand up and fight the good fight. But it costs real dollars to do this, and it's disruptive and painful. I'd have been happy if they had chosen to fight, but I certainly can't second-guess their decisions. Litigation should always be the last desperate step after other measures have failed, and is never entered into lightly.

      JMHO and IANAL -- Trevor

      --
      -- We all have enough strength to endure the misfortunes of other people. La Rochefoucauld
    8. Re:So basically what you're telling me... by leviramsey · · Score: 5

      That's the operative principle behind most lawsuits. Drive the cost of defense (or prosecution) up so much that they throw in the towel. It's a war of attrition, basically.

      The solution, at least in the most frivolous cases, is loser pays. I would imagine that most courts would find against the RIAA at this point. If loser pays, then the RIAA would have to pay the legal expenses of these researchers.

    9. Re:So basically what you're telling me... by Ape8888 · · Score: 1

      "Copyright owners do not OWN the content they publish. They own the COPYRIGHT. The Public owns the publication."

      Er, the copyright defines "ownership" therefore copyright owners DO own content they publish. The Public does not "own" the publication. Unless you have some odd definition of "own" you are very mistaken.

    10. Re:So basically what you're telling me... by Ape8888 · · Score: 1

      You may own the physical book, but you do not own the content of the book.

  154. Re:http://www.theregister.co.uk/extra/sdmi-attack. by Geekboy(Wizard) · · Score: 1

    They are outside the US. Whether or not that the RIAA can go around US borders, we will see. (They are ballsy tho, check the info regarding them being blocked by CyberPatrol(sorry, can't find the link right now))

  155. Mirror of SDMI contest site (not the paper) by Seth+Finkelstein · · Score: 3
    There's an interesting mirror of what was on the "HackSDMI" site: http://diddl.firehead.org/censor/hacksdmi.org/

    This is the site set up by SDMI for the challenge, not the researcher's paper.

    It's a general miror site, part of http://diddl.firehead.org/censor/

    1. Re:Mirror of SDMI contest site (not the paper) by jbridge21 · · Score: 2

      I have now put the Princeton paper up there as well. There's also a paper done by two French dudes, that has been up there for a while now.
      -----

  156. shit shit shit by jbridge21 · · Score: 5

    I have a paper done by two French dudes who hacked it. I am currently getting what I hope is a copy of the paper in question for this article.

    All of this stuff, as well as the original watermarked files, can be found here.
    -----

  157. Re:Absurd! by Zayin · · Score: 2

    >There must be a better way to make ourselves >truly heard. There is. Problem is, people aren't willing to do it. If consumers were organised, _they_ would have all the power, not the Corporations. If every single consumer boycotted the RIAA, they would be out of business. Same goes for almost all of the large Corporations. If a bank loses all of their customers, they're out of business. It is that kind of power that gives leverage. That takes discipline though, and a little sacrifice from every one of us. Not to mention a willingness to support other people, even strangers, perhaps even when you don't agree with their claims. And I guess that makes it impossible, most people don't bother. Not being organised is giving away the power. I guess the poeple that founded the Labour Unions were aware of that fact. They managed to take away some of the power from employers, and give it to the employees. That principle could be applied to the supplier/consumer relationship.

    --
    "I'd rather have a full bottle in front of me than a full frontal lobotomy"
  158. We learned a lesson!!! by Wolfier · · Score: 2

    Look. We shouldn't have participated it in the first place. WHY help them to better protect when they try to censor us?

    I urge everybody to refrain from any sort of cryptanalisys on RIAA/MPAA protections BEFORE they're in wide use. Secretly do it, and proclaim that you have found a hole after it's already implemented by the mass.

  159. Re:Why aren't we boycotting the RIAA and MPAA yet? by mozilla · · Score: 1

    I personally have been boycotting the RIAA for the last 3 months - and as a normal purchaser of over 20 CDs per month (on average) this should have some effect. I encourage all others to do the same.

  160. I know how to solve the problem. by bmajik · · Score: 4

    Step 1: Collect RIAA Lawyers and executives

    Step 2: Dress them in football and cheerleader uniforms

    Step 3: Round up all the kids that wrote "me too" geek persecution stories for Jon Katz's book

    Step 4: Lock them all in a small room with lots of video walls.

    Step 5: Pipe footage of DOOM and ROBOCOP onto said video walls for a few hours

    Step 6: Toss in the handguns and run

    --
    My opinions are my own, and do not necessarily represent those of my employer.
  161. Actually, they did the right thing. by gfxguy · · Score: 3
    Now, more people than ever are going to have access to this paper than there would have been otherwise. It's also drawing a lot of publicity and showing the RIAA and SDMI in a negative light.

    After the accusations of marketing music with "mature" content on it to kids (pretty bogus, but amusing nonetheless), the RIAA has been getting a lot of bad publicity lately.

    Good.

    --
    Stupid sexy Flanders.
    1. Re:Actually, they did the right thing. by Fesh · · Score: 2
      Yeah, that's pretty much my analysis as well. It's not the corporate censorship and the heavy-handed tactics the RIAA is using that have me in an uproar right now. I'm already boycotting them over that. I've even donated cash that I couldn't really afford to the EFF. What has planted a sinking feeling in the pit of my stomach is that these scientists backed down when they were so clearly in the right because they realized that they wouldn't be able to get justice. They'd be taking it rectally either way they turned. And with that, I've heard the death knell for American civilization (if it can even be called that anymore).

      I'm only cheered by the fact that Russia's example shows that the nukes might not fly when everything goes to shit.


      --Fesh

      --
      --Fesh
      Kill -9 'em all, let root@localhost sort 'em out.
    2. Re:Actually, they did the right thing. by agentZ · · Score: 2

      Yes, it will bring the document to light to nerd/geek/ /. community. Most people don't care. All they know is that their Napster is going away and now they have to buy CDs again.

  162. This is not about free speech, but about knowledge by drnomad · · Score: 1
    I guess it is the use in USA to see this as a free speech case, but IMHO this is really about knowledge. Someone is sued because he knows. I'd like to refer to a previous comment.

    Perhaps money and power have divided such that any form of freedom is now obsolete. Ofcourse, I wouldn't be able to fight big corporates either - I just don't have the financial resources, that makes the 'legal' person RIAA more equal than me, doesn't it? Unfortunately, there's no legislation on the right to know, or the right not to know.

  163. Free Speech - Reason by xant · · Score: 4
    Reason is the tool to use to change opinions?not censorship. [ . . . ] if the government censors you today, I could be next tomorrow, perhaps for an entirely different reason. That?s why it is so important to uphold the principle, even when in practice it is difficult to do so. There?s no challenge involved in defending someone you agree with; the stretch is standing up for your opponent?so that everyone?s rights are preserved.

    This could even go further, in my mind. It's not just that we must defend our own rights by defending someone else's. Free speech gives rise to reason. Nobody knows the full story; it is only through hearing those who disagree with you that you come to understand the flaws in your own argument, and reconcile them. Free speech, and the ability to hear those who you disagree with and disapprove of, isn't just the companion of reason; it is the origin of reason.
    --

    --
    It's rare that you're presented with a knob whose only two positions are Make History and Flee Your Glorious Destiny.
  164. damit! by jon_c · · Score: 1

    I can't get it, wtf is with freenet?

    --
    this is my sig.
  165. WAIT! by jon_c · · Score: 2

    Cool i got it, freenet rules..

    but still takes forever

    --
    this is my sig.
  166. i love the subtlety! by thelaw · · Score: 3

    check this out:

    "Litigation is costly, time-consuming, and uncertain, regardless of the merits of the other side's case. Ultimately we, the authors, reached a collective decision not to expose ourselves, our employers, and the conference organizers to litigation at this time."

    "regardless of the merits of the other side's case." in other words, even though they have no legal grounds for threatening us, they still might win so we're not going to try it.

    jon

    --
    -- http://www.cerastes.org
  167. Re:RIAA didn't do anything by PerlGeek · · Score: 1

    If someone only threatens to shoot somebody without actually shooting them, they can still force the issue.

    The RIAA has a weapon that they can use against anyone they choose. That weapon is a combination of expensive lawyers and the money to keep paying them until the heat death of the universe.

    They don't have to win a case, they just have to use up time. They don't even have to sue, when the threat is nearly as effective.

    What are you smoking?

  168. Re:RIAA didn't do anything by PerlGeek · · Score: 1

    "When it comes to coercion, threat of harm is not the same as a threat of a lawsuit or legal action."

    True. If someone were to steal your house, get you fired from your job, seize your bank accounts, ruin your reputation, and blackball you, that would not be the same as injuring you personally.

    Filing a lawsuit is as good as winning.

    Had the authors decided to publish, they would have been tied up in court for years, losing money very fast. If they won before going bankrupt, the RIAA would have appealed or sued them on different grounds.

  169. Re:Have Corporations replaced Religions? by PerlGeek · · Score: 2

    The corporations are not yet engaged in slaughtering their critics and competition. Until they do, it's not as bad as what the Roman Catholic Church did.

    I agree with you that the danger is equal, though I don't think it's that bad yet.

  170. Re:well by Erik+Fish · · Score: 1

    If you read some of the other posts you'll note that Princeton was fully behind the idea of going to court but others who helped do the research worked in the private sector (Xerox was mentioned) and their employers were not interested in going to battle with the RIAA.

  171. Re:RIAA: MP3s=Child Pornography by Erik+Fish · · Score: 1

    Yeah, I hear that some child pornographers also BUY music CDs created by RIAA members! In fact, could it be that music is a major influence in cases of child pornography? Perhaps there should be an investigation of the RIAA and their members!

  172. Re:TAKE THE CASE!! -- AND LOSE! by Trepalium · · Score: 1

    They'd be foolish to take it on in that setting -- far too many 'innocent' victims would be dragged into the suit. Hopefully they will take it on soon, before this law gets enough momentum that it becomes nearly impossible to stop.

    --
    I used up all my sick days, so I'm calling in dead.
  173. Re:It is also akin to schools in the north saying. by ooky · · Score: 2

    Sigh, this is off-topic, but as someone who grew up at times in the north, the southern bible belt, and the west, I will say that WE DO celebrate our christian culture all the time - why does everyone say "Merry Christmas" when you leave for winter break as a default, unless they are jewish or other religion? Sadly, because of the KKK and similar organizations, "white pride" just does not mean the same thing as "black pride", "gay pride" or any other. But that's just semantic. It is easy to be innately proud of your race/religion (which I'm assuming is Caucasian/christian) when the president has always been caucasian/christian, pictures of 'beautiful' people thrown at us by the media are (or at least were until v. recently) 90% caucasian, and even the pledge of allegience firmly states "One nation, under GOD." It is not so easy to be innately proud when there is a sneaky undercurrent of opinion in the culture that (for example) african americans are more prone to be drug addicts and rapists, mexican american women are 'ugly' because they are generally hairier/more voluptuous than the caucasian models we see, jewish families are at best misguided to not believe in Jesus and at worst some sort of shylock-stereotype, and muslims are seen as completley scary, probably terrorists. All I'm saying is that these groups on few times in school or they got to "show off" their culture/religion, you were already living in a media culture that has let you be proud, let you feel capable, promoted your group as the moral and law abiding one, let you feel normal, let you feel in company with the 'majority' that is in reality no majority at all.

    That being said, I've found that with open discussions and appropriate teacher guidance, children today are MUCH better at discussing these issues than we are without excluding anyone for their views/race/background. Watching a class of 13-yo discuss easily and intelligently the tribe song "Sucka Nigga" and its message of why the artist feels it is ok for black people to use this word, and the class adding their OWN interpretations on the unsaid context, or why it is NOT ok for any other group to use this word, was truly inspiring.

    Creationism has no scientific evidence to back it up, so it should not be taught in science classes. That's not to say that you shouldn't believe it instead of what you're taught, shouldn't be taught it at YOUR home and YOUR church. But teaching it at school instaed of scientifically-based knowledge, facts, data, and theories will just harm these children's scientific background, and violates the separation of church and state. And they aren't necessarily mutually exclusive, you know, so it's not going to drive christain children batty or anything to learn about evolution. As my very religious mother says, "WE don't know how god DID anything, or even how long a day to him is. All we have is an interpretation of the deed, written by a HUMAN in a very poetic and metaphorical style."

    ooky
    Never trust a Hal 9000. - bboys

  174. Re:THE RIAA IS ... wrong by criticalrealist · · Score: 1
    Just because the RIAA assumed that a successful challenger would give them the results, doesn't mean they have to turn them over. I think this sounds more like a unilateral, one-way contract, akin to a promotional contest. Where's the consideration for turning over the results? I don't think a court will look favorably upon RIAA's attempt to in effect back-door a patent through the freedom of contract.

    Disclaimer: The above is not to be construed as legal advice, and no attorney-client relationship between the author and any recipient of this message should be inferred. I am a law student.

    --
    I am not a lawyer.
  175. Re:It is also akin to schools in the north saying. by Village+Idiot · · Score: 1

    My experience is different, in the Australian public school system 5 years ago it was essentially forced (from the point of view of the student), the only way out of not being subjected to some person trying to convince one of the merits of believing in their god was if your parents felt strongly enough about the matter to write to the principal to excuse you. Now whilst my parents felt that it would be a good experience for me to learn a bit about the predominant religion in Australia and hence possibly understand the people who believe in god more, i felt that being subjected to this sort of rubbish was a waste of my time. I didnt feel this because i didnt want to learn about how another group feels regarding religion but more because as a group these people were completely unable to understand why one would want to question them and the bible and lacked any skills to defend their point of view at all. Take for example one guy who came in and thought it would be a good idea to tell a collective group of around 130 final year students that the world is only 5000 years old and yet he could not provide any substantial evidence for his claims other than the bible says so. Hardly the sort of thing which i feel education is about.
    I think the only consolation i had in being subjected to this was it was only a couple of times a year.

  176. Re:Absurd! by Fesh · · Score: 2
    How are we supposed to get tort reform when the corps have bought the lawmakers as well? I'd love an answer to that one.


    --Fesh

    --
    --Fesh
    Kill -9 'em all, let root@localhost sort 'em out.
  177. Great. Brilliant. (SARCASM) by Fesh · · Score: 5
    Wonderful. I know this is going to get buried under the heap of like sentiments, but I'm going to say it anyway.

    Justice is dead.

    So is science, art, and practically any other advancement that we can make as a civilization. When the sheer cost of litigation even when you know that the other side has their heads up their collective asses dissuades people from engaging in "Science and the useful arts", there's nothing more to be said. It's over folks. Enjoy the plunge.


    --Fesh

    --
    --Fesh
    Kill -9 'em all, let root@localhost sort 'em out.
    1. Re:Great. Brilliant. (SARCASM) by Kryptonomic · · Score: 2
      As a scientist I concur.

      This is most disappointing and, unless countered, signals the death of free science.

  178. Re:TAKE THE CASE!! by Fesh · · Score: 5
    Why, oh why, did they have to word it like that? Is it just me, or is the phrase "PERMISSIBLE ACTS OF...RESEARCH" inherently sickening? Yes, I had to add an ellipsis in there to make my point, but can anybody look at that phrase in that light and not be nauseated by the fact that an entire branch of research is pursuable only at the sufferance of large corporate interests?


    --Fesh

    --
    --Fesh
    Kill -9 'em all, let root@localhost sort 'em out.
  179. WHAT is wrong with the paper? by DrEldarion · · Score: 2

    The paper is NOT illegal in itself. A perfect analogy would be the instructions on how to make a nuclear bomb. They're not illegal. (IIRC, TIME or some other high profile magazine printed out the instructions in one of their issues). However, if you go out and MAKE a nuclear bomb (easier said than done) and use it, THAT's when it becomes illegal.

    This paper is no different from that article. It just provides the framework for being able to make the hard/software (also easier said than done) to circumvent SDMI, and using THAT is what's illegal, NOT the paper itself.

    -- Dr. Eldarion --

  180. Good by dadith · · Score: 1

    Until now it was a discussion by a few obscure geeks over the question wether the DMCA restricts their right to free speech or not.
    Now there is a case where every idiot can see that the DMCA can be used to restrict the right of free speech and that what is happening now can in no way be constitutional.

    This could (and hopefully will) backfire in a big way.

    Ciao, Dadith

  181. The Story was on NPR this morning by ces · · Score: 1

    I'd call that fairly mainstream.

    --
    Happy Fun Ball is for external use only.
  182. It would be funny if it wasn't so sad... by Astralmind · · Score: 1

    The RIAA is quick to point out the first amendment rights of their artists who preach hate and violence. They are just as quick to throw out everyone else's rights when it may threaten them.

  183. Copy of the pape on my website w/ an FAQ by mecredis · · Score: 3

    Grab the paper here.
    I also included a nifty FAQ.

    Feel free to correct me on any of my silly ramblings in the FAQ...


    --Fred

    --
    "Nobody ever went broke underestimating the intelligence of the American Public." - H.L. Mencken
  184. Censorship guarantees visiblity by Animats · · Score: 2

    Everbody who actually cares about the technology of digital watermarks has already read this paper, because it's been on-line for weeks. It's even been discussed on Slashdot and trashed in high-end audio journals. The RIAA's move guarantees that thousands of people who never cared about digital watermarks before will now read the paper and get interested in the subject.

  185. Re:This is a purely American viewpoint. by GPierce · · Score: 2
    Unfortunately what you have stated is a contradiction in terms:

    Hitler's Holocaust has thought us that terrible lesson. Only morally and socially acceptable speech should be fully allowed to be spoken freely, hateful and harmful speech should be restricted fully.

    If the laws you talk about were in place in Hitler's time (for all I know they were), it would then have been 'socially unacceptable' to denounce the Nazis for genocide.

    The Nazis, of course, did not really need a law to shoot anyone who disagreed with them.

    --

    When you are dancing with wolves, never limp
  186. �Implementing "loser pays" by yerricde · · Score: 1

    The solution, at least in the most frivolous cases, is loser pays. I would imagine that most courts would find against the RIAA at this point. If loser pays, then the RIAA would have to pay the legal expenses of these researchers.

    This can be implemented in the current legal system if a defendant countersues on grounds of legal harassment.

    Disclaimer: None of what you see on Slashdot is legal advice.
    --
    Will I retire or break 10K?
  187. �Lawyers don't sue people; people sue people. by yerricde · · Score: 1

    In my book, fragging lawyers counts as violence about as much as a insect exterminator thinks himself a hired killer.

    Lawyers don't sue people.

    Plaintiffs sue people.

    --
    Will I retire or break 10K?
  188. has anyone noticed by roman_mir · · Score: 5
    When I was reading the SDMI challenge attack schemes, I noticed that the people involved into the attacking have a great sence of humour:

    Thus, we had reason to suspect a complex echo hiding system, involving multiple time-varying echoes. It was at this point that we considered a patent search, knowing enough about the data hiding method that we could look for specific search terms, and we were pleased to discover that this particular scheme appears to be listed as an alternative embodiment in US patent number 05940135, awarded to Aris corporation, now part of Verance [5]. This provided us with little more detail than we had already discovered, but confirmed that we were on the right track, as well as providing the probable identity of the company which developed the scheme. It also spurred no small amount of discussion of the validity of Kerckhoffs's criterion, the driving principle in security that one must not rely upon the obscurity of an algorithm. This is, surely, doubly true when the algorithm is patented.

    The stick has two ends to it. On one hand a corporation wants to patent technology that prohibits use/copy circumvention, on the other hand, the same patent can be used as a FAQ for an attacker to circumvent the anti-circumvention mechanism. Of-course, in this case the patent information was not used by the attackers, they only recognized it after the 'oracle' let them know they have won.

  189. PR by DarkLordV7 · · Score: 1

    I wonder how public relations at the RIAA will be doing after the DMCA they keep pushing along as if they owned it is declared unconstitutional?

  190. Free speech? by mybecq · · Score: 3

    We remain committed to free speech and to the value of scientific debate to our country and the world.

    In what way is that commitment evidenced? You only are committed to free speech when no one threatens you with litigation? Sounds like someone else is calling the shots.

    We will continue to fight for these values, and for the right to publish our paper.

    Looks like the towel is in the ring (at least for this round)...
    FWIW, I don't really care what they do -- it's their call. But this kind of rhetoric doesn't hold much water...

  191. Paper Trails by Wintermancer · · Score: 4

    Wow. A paper as a circumvention device? The DMCA is just stretching things too far.

    It has be said before, but really now, what will it take for the DMCA to be overturned?

    Cut to: Business Street - Day
    "Citizen! You are under arrest!"
    "For what?"
    "You are in possesion of an illegal circumvention device!"
    "What the fsck are you talking about?"
    "You have a manual, paper, or other printed material describing how to circumvent, illegally, copyrighted or other intellectually protected material."
    "You mean this!?"
    "Yes, now put the decss t-shirt down and stand away!"

    Big Brother ain't got nothin' on Big Corporations.

    Thank God I live in Canada

  192. Re:Well by pjrc · · Score: 2
    This is why when someone brings a law suit against someone else and looses, they should not only compensate that person/company, but should do so 100X the costs it took to defend themselves. Then the RIAA would have to reconsider next time it was to use terrorism and its bought Senators to push researchers around.

    Unfortunately, a policy like this works both ways, and it would almost certainly chill the efforts of individuals to sue companies who've wronged them.

  193. NOOOO! Fight it! by lowe0 · · Score: 3

    Don't back down! The DMCA doesn't cover security research! This is an opportunity for a young lawyer (does Princeton also have a good law school?) to make a great case that just might break the DMCA.

    If anyone has the specific part of the DMCA covering research, please post it.

  194. Re:This is a purely American viewpoint. by Lakitu · · Score: 1

    In Europe it's generally accepted that there should be limits to freespeech. What transpired in Europe 60 years ago has show to us that freespeech should not be abused to give speaking rights to those who would deny those rights to others.

    I agree with you - it is an American viewpoint. However, who's to say its wrong? Yours is purely a European viewpoint. One thing you have to keep in mind is that words are just words - words do not kill. You can't pass all the blame onto Hitler for the Holocaust. Although his words did incite others' fears, his words did not go out and kill millions of people. There's a lot more to it than some hate-filled speech.

  195. This paper will be published. by SamThePondScum · · Score: 1
    "We look forward to the day when we can present the results of our research to you, our colleagues, through the normal scientific publication process, so that you can judge our work for yourselves."

    Paper gets published in a respected scientific journal next to studies on DNA and plant ecology. Gets reprinted in the online edition. What then?

    --
    -- PondScum, SamThe
  196. Re:Absurd! by Tassach · · Score: 2
    How are we supposed to get tort reform when the corps have bought the lawmakers as well? I'd love an answer to that one.
    Refer to the Bill of Rights. First, we exersize our right "to petition the Government for a redress of grievances." If that ultimately fails, refer to the Second Amendment. The Second Amendment is the enforcement clause for the First.

    --
    Why is it that the proponents of "one nation under God" are so eager to get rid of "liberty and justice for all"?
  197. Re:Absurd! by Tassach · · Score: 3
    The first question I have is, besides being run by big-ass corporations with large sums of cash, how does the RIAA have any real power?
    You said it yourself: large sums of cash. Money = Power. If you have the cash to hire an army of lawyers, you can use the legal system to bully anyone into submission, unless they happen to have (and are willing to expend) sums of cash on the same order of magnitude. This is why tort reform is so desperately needed, so that megacorporations (and governments) cannot use the mere threat of a (baseless) lawsuit to pummel an oppenent into submission.

    --
    Why is it that the proponents of "one nation under God" are so eager to get rid of "liberty and justice for all"?
  198. No, it's not the completed paper! by oddityfds · · Score: 1
    The paper you found (and everybody is mirroring) is not the complete paper they were to present at the conference. That paper has not been released yet. That's clear from what they have posted on their website. Sadly.

    I wonder if it would be risky for them to publish it in another country. Probably. :-(

  199. Re:Been there, done that, US Congress didn't like by oddityfds · · Score: 1
    The following is a quote from a Critical Scientology Site:

    This is the letter that Congressman CARLOS J. MOORHEAD, 27TH DISTRICT, CALIFORNIA sent to the speaker of the Swedish Parliament regarding the Zenon case and the NOTS documents. You can also read the answer from the speaker BIRGITTA DAHL. They forgot something about the Swedish "offentlighetsprincip". The letters are available as well as NOTS, from the Swedish Parliament.

    I have only HTML-ized the letters and fixed the formatting. Now then, Scientology obviously have a great deal of influence in the U.S. These two letters, from the congressman HOWARD COBLE, CHAIRMAN Subcommittee on Courts and Intellectual Property, is almost a declaration of war. The first letter is to Birgitta Dahl, Speaker of the Swedish Parliament, and the second letter is to Laila Freivalds, Minister of Justice, Government of Sweden. Once again, a representative of the U.S congress, forgets about the Swedish "offentlighetsprincip". that makes these letters public forever. This is also an interesting official document. Warren McShane, the President of Religious Technology Center (RTC), writes to the speaker of the Swedish Parliament, complaining about how Sweden treats their secret scriptures.

    Still it seems as if nobody in the cult had a clue that it would be known to the world, thanks to the Swedish offentlighetsprincip.

    I think the material was removed, later on.

  200. Been there, done that, US Congress didn't like it. by oddityfds · · Score: 3

    Some people in Sweden (where I live) tried that with the secrets of Scientology. The information was available for a while, until the US Congress pressured the swedish government a bit... Sigh.

  201. This is a rant. But I think that it's a good rant. by JDALaRose · · Score: 1

    The RIAA, Verance, and SDMI are the most loathesome corporate beasts that I can possibly imagine. While these firms and organizations are acting only in their best interests, which is arguably all that can be expected of them, they continue to ignore the furor that is building in informed segments of the population as regards their activities. I am enraged by the notion that my representatives and senators have been bought and paid for, and have so little mental ability that the mere allusion to anything technological prompts them to roll over like sated puppies while a steam roller of legislative violation, comprising an affront to freedom of speech that any self-respecting founding father (even John Jay) could see coming a mile away. The disappointment and shame I feel for this country is palpable.

    I am proud to be an American, but the day that a professor cannot present a technical paper because of legal bullying made possible by a legal system that has become the plaything of the wealthy and congressmen and women who have degenerated into spineless, ignorant toadies is a day that can inspire nothing but shame and disgust.

    John D. A. LaRose

  202. Re:This is a purely American viewpoint. by JDALaRose · · Score: 2

    It is a purely American viewpoint. It is one that stems from the tremendous faith that we have in what is generally conceived of as a natural system, wherein ideas that are good and true are borne out by their goodness and truth, while bad ideas are found to be so based upon the negative effects that they have, or their inherent "badness." We believe in equity . . . giving every idea a fair shake. If it's evil and so forth, because mankind is generally pretty good, it'll all come out in the wash, with the now-achetypical triumph of good over evil.

  203. Functionality and free expression by gunner800 · · Score: 5
    Judge Kaplan, who "banned" DeCSS as a circumvention device, said that source code is not entitled to First Amendment protection because it is "functional". An academic paper is not functional, it is purely expressive. An academic paper is protected expression. Even the most crack-brained judges don't question this.

    The RIAA might be able to successfully sue the researchers for circumventing the protection at all (since they didn't exactly enter the contest) but the paper itself is still legal. Even Kaplan (collective boo's, hisses) would give the paper protection.


    My mom is not a Karma whore!

    1. Re:Functionality and free expression by quickquack · · Score: 1

      So make a "compiler" which takes the text form of their paper and makes it into the DeCSS code.

      Then it would too be functional.
      ------------

      --
      ------------
      Tonight on Fox: Deadliest Executions Part XVII
  204. Re:It is also akin to schools in the north saying. by kashko · · Score: 1
    There are (at least) two faces to any religion, The spiritual path and the social/cultural phenomenom created when followers of a spiritual path get together

    Religious communities develop distinctive subcultures which are influenced by the parent culture at least as much as the spiritual path. There is a synergy between the two that produces something new.

    Examples of such subcultures are the Quakers, the Wee Free Church and the Ukrainian Orthodox Church.

    A religious community may develop features that are totally antithetical to that religion's spiritual path. The most obvious example is the US religious right and bible belt but the same thing happens in Islam and Judaism. These three religions, along with the religions of Capitalism and Communism, seem to be peculiarly prone to intolerance of other viewpoints, but the phenomenom is no confined to these religions.

    It would take a book that no one has, to my knowledge, written, to explore the reasons this intolerance develops and that is not my aim here.

    You are both right Christianity is a path and a culture. But if you really find "Christian" intolerance intolerable why are you letting it continue unchallenged. If you consider the Buchanans, Robertsons etc not to be "true christians" why are you not fighting them from within the church as creations of the devil designed to ruin the name of Christianity?

    To try to drag this post back on topic, suppose a rich and influential organisation of pseudochristians issued a challenge to anyone who wanted concerning the literal validity of the bible but used threat of legal process to suppress publication of the entries. Would you be as supportive?

  205. Re:Write your congressperson (addresses) by startled · · Score: 1

    Ah, you're right. I tried a few at the www.[twoletter].gov and they worked fine, but I just found some that don't. Ah, well.

  206. Write your congressperson (addresses) by startled · · Score: 5

    Yeah, yeah, same thing every story, but I find it useful, so here are the links:

    Write your Senator.
    Write your Representative.
    Remember, snail mail only-- e-mail really doesn't do shit. And include that return address everywhere, so they know you're in their district. And finally, if your state is considering other similarly draconian measures such as UCITA, write your state government as well (site at www.[two letter state code].gov).

    1. Re:Write your congressperson (addresses) by leviramsey · · Score: 3

      Actually, the state sites are: of the form http://www.state.{two letter abbreviation}.us

  207. Damn commie academics! by EschewObfuscation · · Score: 5

    ...trying to deploy Weapons of Math Instruction!

    (email addr is at acm, not mca)
    We are Number One. All others are Number Two, or lower.

    --

    (email addr is at acm, not mca)
    We are Number One. All others are Number Two, or lower.
    --The Sphinx
  208. Re:TAKE THE CASE!! -- AND LOSE! by nick_danger · · Score: 4
    `(2) PERMISSIBLE ACTS OF ENCRYPTION RESEARCH- Notwithstanding the provisions of subsection (a)(1)(A), it is not a violation of that subsection for a person to circumvent a technological measure as applied to a copy, phonorecord, performance, or display of a published work in the course of an act of good faith encryption research if--
    ...

    IANAL either, but it seems to me that the RIAA has standing in this. The bit you quoted merely says that a researcher can in good faith circumvent an encryption method, but it does NOT grant the researcher the right to discuss those circumvention methods with her or his peers. They met all the requirements of (2)(A)-(D) when they broke the encryption. That much was legal. Presenting a paper to tell the world how they did it is not permitted under this law.

    No, boys and girls, they made the right call. Its not likely that they would have prevailed in court. The RIAA's pockets are far, far deeper, and they're in a much better position to kill resistance through litigation. The battle over the DMCA must be chosen wisely, and this case just aint the grail.

  209. Re:Well by Mr.+Barky · · Score: 3

    This is why when someone brings a law suit against someone else and looses, they should not only compensate that person/company, but should do so 100X the costs it took to defend themselves. Then the RIAA would have to reconsider next time it was to use terrorism and its bought Senators to push researchers around

    I bet the corporations would love that. Nobody would ever bring suit against them again. It would be way too risky.

  210. Re:They chose their only option by Decimal · · Score: 5

    Secondly, even if your university doesn't support you you should at least fight for what's right. I'm disappointed that the scientists gave up the fight without making more noise. I guess the career means more to them than the truth. Ok, unlike me they're established scientists and "can't afford" to lose their status, but still...

    But still what ? If they can't afford the social damage, the stress, the time, potentially losing their jobs and especially not the price of the legal battle, what do you really expect them to do?

    Why don't you become the martyr you'd like them to be? You consider all of these things to be less important than the truth, right? Crack the same codes on your own and have your results published. All of us here at Slashdot will be singing your praises while you're in court.

    --

    Remember "Bring 'em on"? *sigh
  211. this sucks by Thu+Anon+Coward · · Score: 1

    what is the world coming to when researchers (who did the work for free, even refusing payment) get shut down? Sounds to me like a counter-lawsuit in the making for abridging of free-speech rights.

    What really needs to be done is have people start talking to their reps in Congress and see about getting some legislation to overturn the DMCA act. But I doubt that will ever happen either since most people say "Oh, other people will take care of this issue for me".

    That's like the rooster telling the fox to guard the henhouse for him because he's too busy doing other things.

    --



    I'm good with numbers - .45, 7.62, 9.....
  212. Re:This is a purely American viewpoint. by fm6 · · Score: 2
    First off, let me apologize for all the idiots who modded you down. You actually got four downmods and four upmods, for a total of 8. The most I've seen on a single post! Next time, please log in, so you'll start from 1 instead of 0. I wouldn't have seen your post at all if it hadn't shown up on my metamoderate list.

    Moderators: grow the fuck up! . This guy is not a troll or a flamer, and you have no business labelling him as such just because you don't care for his opinions. I don't care for them either, but he is expressing a widely-held opinion in a calm and rational matter. It's important that he get a proper hearing.

    Now, let's have an actual discussion:

    In Europe it's generally accepted that there should be limits to freespeech. What transpired in Europe 60 years ago has show to us that freespeech should not be abused to give speaking rights to those who would deny those rights to others.

    I'm aware of how widespread this attitude is in Europe, and how it is used to justify censorship that the U.S. courts would never permit. With all due respect, I have to assert that this attitude is simplistic and short-sighted. It has no logical basis in actual history. Censorship existed in Europe before the war, and did absolutely nothing to prevent the rise of totalitarianism. Indeed, it made things worse, by making it more difficult to deal with the social issues of the day.

    And you're doing it again. Not that I fear Germany starting another war, not with pacifists wielding so much power in national politics. But you accomplish nothing by preventing the neo-Nazis from wearing their swastikas or spouting their racist nonsense. You're just forcing them to do these things where you can't seem them. They become invisible to you, but not the ethnic minorities that suffer at their hands.

    "Free speech" is not simply about everybody's right to say stupid and hateful things. It's about the free flow of ideas, and about making it difficult for people to claim that they are responsible, sovereign citizens while keeping the heads firmly planted in the sand.

    The most dangerous thing about censorship is not its repressiveness, it's the way it allows people to play social ostrich. That is a right I refuse to respect.

    __

  213. Re:This is a purely American viewpoint. (OT) by fm6 · · Score: 2
    I usually define a troll as somebody who feels so strongly about an argument, they continue it long after they have run out of anything to say, assuming they had anything to say.

    But however you define the word, there's no excuse for the kind of abusive moderation we saw in this case. It would be pretty stupid to think this guy was "trying to jerk us around". Then again, "stupidity" is often the label that seems to apply when the real problem is a lazy application of ignorant prejudice.

    __

  214. Re:Best possible result by kerrbear · · Score: 1
    They won't.

    They did. This was a main story on NPR this morning (27th).

  215. You can't teach science without evidence? by thebiss · · Score: 1

    Really? I'm going to call my Congressman next time a Physics teacher talks about gravitons, or the Higgs boson, or the "Big Bang."

    It's a good thing there's scientific evidence about anal sex -- I'd have to call about that too!

    --
    Beware: I believe all are created equal, and have the right to life, liberty, and the pursuit of happiness.
  216. Re:Wonder what those RIAA lawyers must be saying ? by Dyolf+Knip · · Score: 2
    I wish I had a shotgun and that I were left loose in the RIAA building with a license to kill.

    There goes the theory that violent games don't influence people to commit violence

    In my book, fragging lawyers counts as violence about as much as a insect exterminator thinks himself a hired killer.

    --

    --
    Dyolf Knip
  217. Re:Wonder what those RIAA lawyers must be saying ? by Dyolf+Knip · · Score: 2

    On second thought, that's a little harsh. Perhaps that should apply to the kinds of lawyers in question; ie, ones who drool at the thought of pointless, endless, heartless litigation.

    --

    --
    Dyolf Knip
  218. Re:Lawyers don't sue people; people sue people. by Dyolf+Knip · · Score: 2
    It's more of a nasty loop.

    Lawyers get laws passed (hell, how many congressmen are lawyers?) that let plantiffs sue people over the time of day who then pay lawyers gobs of money letting them get even more litigious laws passed.

    Who can deny that the DMCA is practically a license to sue?

    --

    --
    Dyolf Knip
  219. Re:This is a purely American viewpoint. by Fat+Rat+Bastard · · Score: 5
    Only morally and socially acceptable speech should be fully allowed to be spoken freely

    ...and there in lies the rub. Who decideds what's "morally and socially acceptable speech?" The great irony of your statement is that Hitler did exactly what you propose. He surpressed speech that didn't adhear to his vision of what was "moral and socially acceptable." This is EXACTLY the reason the first amendment is fought for tooth and nail here.

    If you don't have anything nice to say, say it often.

    --

    If you don't have anything nice to say, say it often.
    - Ed the Sock

  220. Of course the genie is out of the bottle. by jayfoo2 · · Score: 1

    Now why would they be trying to stop this. Only one reason I can think of. If they let this be presented then they couldn't go after anyone who posted the paper.

    I wonder if /. is going to b e getting a letter from hillary and her band of merry men.

  221. How about this ... by John+Jorsett · · Score: 5

    We get a friendly congressbeing to insert DeCSS, the Princeton research, and anything else being threatened by the RIAA, MPAA, CIA, NAACP, et al into the Congressional Record. Then let these groups take on the federal government if they dare. Not only will it be entertaining, it'll let the legislature find out what it's like to be on the receiving end of one of their laws. It might even get the Congress to decide what they really meant in the DMCA.

  222. Re:RIAA didn't do anything by monkeydo · · Score: 1

    These people don't work for the RIAA, so the RIAA can't take away their jobs. If their employers threatened them, then you should be up in arms about that.

    The RIAA does not have the power to seize anyone's home or property (everyone here seems to have forgotten that they are just a corporation) And in this country, the government can't even do that without deu process.

    Since the authors willing agreed to remove the paper from publication the RIAA never had to go to court and have them injoined. It is not clear that the DMCA is even applicable in this case, and now the matter will never be decided, that was the CHOICE of the authors and their attorneys.

    Although threatening someone with the force of law can sometimes be coercion it almost certainly is not in this case. The letter was a standard cease and desist letter. If you get such a letter and believe you are doing nothing wrong, you are free to keep doing it.

    --
    Si vis pacem, para bellum
    The only thing more annoying than a Libertarian is an (un|mis)informed Libertarian
  223. Re:RIAA didn't do anything by monkeydo · · Score: 1
    I'm sorry, I don't understand your response. You stipulate that threatening someone with the force of law can be a tool of coercion, but you're asserting that in this case it's not-- simply because the instrument of the threat was only a cease-and-desist letter?

    When it comes to coercion, threat of harm is not the same as a threat of a lawsuit or legal action. If I tell you that I will kill your wife and children if you don't help me rob a bank then you are being coerced. If I tell you that I will report you to the IRS for tax evasion if you don't help me then you are not. The RIAA does not have the power to prevent the publication of anything. They also don't have goons that go around breaking peoples knees. What they have is lawyers who are very good at protecting what they see as their best interests. Contrary to the slashdot babble filling a lawsuit != winning.

    Had the authors decided to publish no harm would have come to them, the RIAA probably would have gotten a preliminary injuction against them and then the RIAA would have to prove (to a judge) that the paper should be confidential.

    --
    Si vis pacem, para bellum
    The only thing more annoying than a Libertarian is an (un|mis)informed Libertarian
  224. RIAA didn't do anything by monkeydo · · Score: 2

    RIAA doesn't have to power or authority to silence anyone. RIAA asked the reseachers not to publish the paper, and they didn't. Sure, hey could have asked nicely instead of threatening a lawsuit but they did what they thought they had to in order to get the desired result. You're mad at them because these "academics" gave in instead of fighting? Why aren't you upset at the authors who chose not to present to paper?

    If I sent you and email and threatend to sue you if you ever posted to /. again would you care?

    As for all the people bitching about the DMCA, remember that the RIAA only threatend to use the DMCA, at this point whether or not they would have won is ambiguous since no judge ever got to hear the issue.

    --
    Si vis pacem, para bellum
    The only thing more annoying than a Libertarian is an (un|mis)informed Libertarian
    1. Re:RIAA didn't do anything by dachshund · · Score: 1
      These people don't work for the RIAA, so the RIAA can't take away their jobs. If their employers threatened them, then you should be up in arms about that.

      Although threatening someone with the force of law can sometimes be coercion it almost certainly is not in this case. The letter was a standard cease and desist letter. If you get such a letter and believe you are doing nothing wrong, you are free to keep doing it

      The reason Felten and his colleagues withdrew the paper was because they felt that there was a serious chance of a lawsuit from the RIAA, and that some of the authors did not have the resources or felt that their employers did not want the legal exposure they would have been subject to, should the RIAA have sued.

      So you see, you are not exactly free to keep doing something if you cannot afford the costs of defending yourself, or if your employer tells you not to because they are concerned about the impact of litigation. Now, I know for a fact that many private research employees don't have carte-blanche to publish anything they want (I am one), especially if it was worked on during company time. If their employers say "don't publish", it's likely that they have no recourse, and their employers might legally be able to terminate them even if paper is published over their objections (or they might be able to block the publication.) So the decision is not in their hands, and they really can't do anything about it.

      It is not clear that the DMCA is even applicable in this case, and now the matter will never be decided, that was the CHOICE of the authors and their attorneys.

      As I understand, Felten intends to publish the paper anyway, after removing the names of those people whose employers did not wish them to be part of the effort. At least, I hope so.

      Although threatening someone with the force of law can sometimes be coercion it almost certainly is not in this case. The letter was a standard cease and desist letter.

      I'm sorry, I don't understand your response. You stipulate that threatening someone with the force of law can be a tool of coercion, but you're asserting that in this case it's not-- simply because the instrument of the threat was only a cease-and-desist letter? The letter quite explicitly threatens a lawsuit if said activities are continued, so I'm not sure what your point is. If someone threatens you to get you to do something, it's certainly possible that you're being coerced-- regardless of whether the threat arrives on a cease-and-desist or wrapped around a brick tossed through your window. And the fact that the action threatened hasn't been carried out yet does not make it any less coercive.

    2. Re:RIAA didn't do anything by dachshund · · Score: 3
      If I ask you to do something, and threaten to take away your job, home and all of your posessions (and I've demonstrated that I've got the means and the will to do it), how is that not coercion?

      Answer? It is.

  225. Another mirror here by wulffi · · Score: 1
    I fear that USA will fall behind when cooperations are able to bully scientists into silence.

    But here is another mirror sdmi-attack.zip

    Have fun

  226. Re:This is a purely American viewpoint. (OT) by Golias · · Score: 1
    A "Troll" is typically defined as somebody who plays "devil's advocate"... saying controversial things that they don't really believe in order to provoke a lot of angry responses.

    Those who modded this guy down as a troll probably suspected that he was jerking us around.

    Personally, I have meet enough people who actually think like this guy to believe that he probably means it... but the people who modded him down may have thought otherwise.

    Not every negative moderation is an expression of opposition to the content. I have occationally applied negative moderation to a post which I agreed with only to have howls of bias against the viewpoint follow shortly afterwards.

    I actually had mod points to spend when I saw his post, but did not moderate it one way or another, partly because I didn't see the need for it, and partly because I wanted to reply.

    It's all kind of subjective. That's why we have lots of moderators.

    --

    Information wants to be anthropomorphized.

  227. Re:This is a purely American viewpoint. by Golias · · Score: 2
    You may mod me down for saying this, but this is a purely American viewpoint.

    Rather than mod you down unfairly, I will save my mod points and give you an honest reply.

    You are somewhat correct in saying that free speech is an American viewpoint. It is also one of the things I love about America.

    More than the prosperity, more than the lack of overcrowding, more than anything else, the thing that makes me want to live in America and makes me willing to lay down my life to protect it for future generations (if I must), is the freedoms we hold as absolute.

    You obviously do not hold these freedoms as highly as we do here. That's fine with me. Better that you stay on your side of the ocean and grumble about how misguided we are than emmigrate to our shores and vote for tyrants would would limit our precious liberty.

    But to give credit where credit is due... most of our ideas about the inherent and self-evident liberties of Man came from great European thinkers. Voltaire in particular comes to mind. I regret to see that his ideas have not taken hold as well on his own continent as they have here.

    France does not have a lot of important exports, but if you want wine, oboe reeds, or philosophy from the Age of Enlightenment... they are pretty tough to beat. (On the other hand, California wineries make great cabernet, oboe reeds can now be made synthetically, and the supply of Age-of-Enlightenment philosphers ran out a long time ago, so I guess we don't really need France for much any more.)

    --

    Information wants to be anthropomorphized.

  228. Comment removed by account_deleted · · Score: 1

    Comment removed based on user account deletion

  229. My own special mirror (in swedish chef) by stype · · Score: 1

    Courtesy of dialectalizer, heres my local mirror in swedish chef:
    Reedeeng Betveee zee Leenes:
    Lessuns frum zee SDMI Chellenge-a
    -Stype

    --
    -Stype
    Bus error -- driver executed.
  230. 376,123,647,460,789th mirror by JCCyC · · Score: 1

    As they say, the more the merrier.

  231. Wonder what those RIAA lawyers must be saying ?? by cOdEgUru · · Score: 2

    Lawyer 1 : Can you imagine those geek punks decided not to share the SDMI crack with us ?

    Lawyer 2 : Really ??

    Lawyer 1 : And they even told us that they dont want the prize money which they could have got in the first place. What a bunch of jerkoffs ?

    Lawyer 2 : Thats so stupid dude. I mean, why else would they wanna crack this stuff. I mean..if not for money, then what the fuck for ?

    Lawyer 1 : Dunno. maybe for the betterment of humanity...(both laughs)

    I wish I had a shotgun and that I were left loose in the RIAA building with a license to kill. Oh man, it would be a frag fest by the time I come out.

  232. One word damns them to heck and back by fatphil · · Score: 1

    The Arsemunch RIAA lawyers, that is
    "
    If your research is released to the public this is exactly what could occur.
    "
    _Could_.

    There exist baseball bats in the world. I _could_ batter the living shit out of the litigious scum.

    So I guess they have to arrest me now.

    And you - because you could do it too...

    FP.
    --

    --
    Also FatPhil on SoylentNews, id 863
  233. Where is the EFF? by bwohlgemuth · · Score: 2

    This should be something the EFF and the ACLU should be tackling. A scientific review, that is not-for-profit, being censored by an industry that put out the challenge to the public to break it's code.

    This would be in the same vein as Apple suing someone because they made their themes look as pretty as OS X. Oh wait, they did....nevermind...

    B

    --
    Flamebait .sig for sale, low mileage, one owner only.
    Serious inquiries only.
    1. Re:Where is the EFF? by Hamfist · · Score: 2

      The problem is you won't see the EFF or the ACLU unless there's an actual lawsuit. They may report it on there pages (haven't checked yet) but as far as action goes, nothing. Now if the RIAA, et al. decides to file a lawsuit against a publisher of the paper, expect to see them jump in. I don't expect a lawsuit because it is too likely to fail, causing a strong precedent against the DMCA and the program as speech point of view.

  234. That's a shame. by Wordsmith · · Score: 4

    It would have been really great to see a legitimate challenge here. The issues at stake are almost identical to those in the DeCSS case, but having professors fight the good fight means a lot more to judges and the public than the free-speech claims of a few hackers.

    1. Re:That's a shame. by haplo21112 · · Score: 5

      I agree, this is akin to schools in the bible belt saying you can't teach evolution. These scholars(of course we are too, most of the stuff I do because I want to learn, and see if it can be done, I just don't do it for a school), should be allowed to publish this paper with out reprisal! I believe they have a fundamental right to do so. Knowledge should be free, and the DMCA is toliet paper, that oughta get brought up as being unconsitutional and thrown out in anycase.

      --
      Power Corrupts,Absolute Power Corrupts Absolutely, leaving one person(group)in charge is absolutely corrupt.
    2. Re:That's a shame. by kenthorvath · · Score: 1
      did anybody else notice the mispelling of DMCA by the RIAA?!!!

      Digital Millennium Copyright Act ("DCMA")

    3. Re:That's a shame. by Joffrey · · Score: 4

      The irony here is that the RIAA claims to support freedom of speech. What hypocrites.

      From the RIAA's site: RIAA's Freedom of Speech Page

      The First Amendment of the Bill of Rights to the U.S. Constitution guarantees four freedoms: freedom of religion, speech, press and assembly. The Bill of Rights was ratified on December 15, 1791. Since that time, those freedoms have been discussed, debated, fought and died for. Since that time, millions of immigrants have come to America to secure those freedoms. The Founding Fathers knew what they were doing. They believed in the power of ideas and debate, not censorship.

      The freedom of speech concept came from England. During the Glorious Revolution of 1688, King James II was overthrown, then William and Mary were installed as joint monarchs. The following year, the English Parliament secured a Bill of Rights from William and Mary that granted "freedom of speech in Parliament." One hundred years later our founding fathers were wise enough to expand that principle to everyone, not just members of Parliament.

      In his 1801 inaugural address, President Thomas Jefferson reaffirmed the principle of free speech saying, "If there be any among us who would wish to dissolve this Union or to change its republican form, let them stand undisturbed as monuments of the safety with which error of opinion may be tolerated where reason is left free to combat it." Reason is the tool to use to change opinions--not censorship.

      During World War II, addressing Congress, FDR expressed the hope that the four freedoms would be embraced the world over. He said, "We look forward to a world founded upon four essential human freedoms. The first is freedom of speech and expression--everywhere in the world." Clearly we are not there yet. Freedom of speech is not a right in every country in the world. Yet, just as clearly, it is a freedom desired in every corner of the world.

      Most students recognize Voltaire's defense of free speech...

      "I disapprove of what you say, but I will defend to the death your right to say it."

      The underlying premise is, if the government censors you today, I could be next tomorrow, perhaps for an entirely different reason. That's why it is so important to uphold the principle, even when in practice it is difficult to do so. There's no challenge involved in defending someone you agree with; the stretch is standing up for your opponent--so that everyone's rights are preserved.

      For as long as the First Amendment has protected our right to free speech and expression, elements have tried to undermine that right. Censorship often raises its ugly head during trying times when our nation faces difficult, seemingly insoluble problems. That is why Justice Louis Brandeis opined in Whitney v. California in 1927, "Fear of serious injury cannot alone justify suppression of free speech and assembly. Men feared witches and burned women. It is the function of speech to free men from the bondage of irrational fears." Brandeis knew what Jefferson knew--reason and free speech, not fear and censorship, should prevail.

      The Supreme Court reaffirmed this position in its 1997 decision on the Communications Decency Act (CDA) that sought to limit material placed on the Internet. RIAA was active in a broad coalition of industry and civil liberties groups that opposed the CDA. The high court struck down the law. In an opinion written by Justice John Paul Stevens, the high court decided, "Notwithstanding the legitimacy and importance of the congressional goal of protecting children from harmful materials, we agree with the three-judge district court that the statute abridges the freedom of speech protected by the First Amendment."

      --
      No, really! I'm one of the *good* lawyers!
    4. Re:That's a shame. by netglen · · Score: 1

      If they weren't willing to fight for their rights, then they should have just taken the money and donated it to EFF.

    5. Re:That's a shame. by fors · · Score: 1

      That could get you in some serious legal trouble. The USPS has regulations against sending biohazards through the mail.

      --
      "If there is nothing you are willing to die for, then you are not really alive." Myself
    6. Re:That's a shame. by Tech187 · · Score: 1

      Unfortunately, the decline of the American Universities can be dated back about a half decade before Reagan became President.

      The decline lies in the gradual takeover of the Universities by the 'New Left' and their radical ideology. This occured in the late 70's, and accelerated during the Reagan era, in spite of who was our President at the time.

    7. Re:That's a shame. by CUTTLER! · · Score: 1

      When you make a deal with the devil you will burn in heck.

  235. Typical RIAA by blitzrage · · Score: 2

    Wow, this totally amazes me! Who'd have thought that the RIAA would try to supress information. Aren't they all for open source?

    I'm just waiting for the day for the RIAA to dig themselves a grave. I being a musician, this concerns me. I hope to be able to distribute my music without having to ask the RIAA (or anybody) permission to let anyone else hear it.

    I guess I just don't understand why the RIAA has any sort of grounds to suppress this.

    --

    I have no signature
    1. Re:Typical RIAA by sdo1 · · Score: 1

      They DON'T have any grounds to supress it, but my the mere threat they know that they can.

      --
      --- What parts of "shall make no law", "shall not be infringed", and "shall not be violated" don't you understand?
  236. This makes NO sense... by zoward · · Score: 1

    Why would the SDMI threathen a lawsuit, unless they were going to go ahead and use - in whole or in part - the algorithms that the team of researchers have already punched holes in! One would think they would go back to the drawing board in search of something secure (or change their acronym to IDMI...).

    --
    "Can't you see that everyone is buying station wagons?"
    1. Re:This makes NO sense... by HiNote · · Score: 5

      No, it makes perfect sense. The SDMI is threatening a lawsuit because their watermarking techniques were never _really_ meant to provide security. They were meant to provide the facade of security so that they can claim it "adequately" protects their music and sue the pants off anyone who tries to break it. It's all been carefully crafted. Last fall they opened their watermarking algorithms to the "hacker" community for a month to see if they could break it. 1 month. Which they thought wouldn't be enough time. Part of the _legal_ restrictions of the "contest" were that if you cracked it, you couldn't tell anyone how. Another part of the _legal_ restrictions of the contest was that trying to crack the watermarks the day after the contest ended was a violation of the DMCA. The contest was a complete success, for the SDMI anyway, and now they have proof that the watermarks are "adequate." This adds beef to their claim that the DMCA applies to their watermarks and can do what they have been wanting to do all along: sue (or threaten to) everyone and anyone who pisses them off. Say, for instance Dr. Felten

    2. Re:This makes NO sense... by rtechie · · Score: 1

      As someone who worked inside this industry, including SDMI itself, I can 100% assure you that it's the APPERANCE of security that is important, not the actual practice. Why? Because all the DRM companies that design these systems KNOW that they will eventually be cracked. They're just trying to snow the majors long enough to get them to adopt their system. The majors aren't stupid though. They know that these systems won't work. SDMI is just a tool to delay the issue. They hope the "problem" of online music will go away. They hope to push the "online music pirates" to the margin and keep them there, like the "warez doodz". That's why Napster was such a threat. Napster is user friendly, and works well. Napster is MAINSTREAM.

  237. Best possible result by arkansas · · Score: 5

    Seriously, this is the best result anybody interested opposed to the DMCA could possibly have hoped for. It exposes the DMCA for what it is - a crude weapon intended to bully and threaten. There are very few things that could attract as much attention as the thought that purely academic research is being suppressed. Felton's letter will sqay opinions strongly against the tools used to threaten these researchers. I, for one, welcome this as the critical step in the road to seeing these laws repealed (or at least completely rewritten).

    1. Re:Best possible result by Rogerborg · · Score: 1
      • Seriously, this is the best result anybody interested opposed to the DMCA could possibly have hoped for

      Seriously, you've got very low expectations. Here's the best result I can think of:

      • Paper is published.
      • Lawsuit is brought.
      • Judge dismisses suit as frivilous, awards costs to the defendents, fines the plaintiffs back the vinyl age.
      • Natalie Portman stars in the film version.
      • With me as her love toy. With lots of sex scenes. And no body doubles.
      --
      If you were blocking sigs, you wouldn't have to read this.
    2. Re:Best possible result by Dokta_C · · Score: 3

      It's already on the front page of bbc news online.

      At the very bottom though...

  238. Re:welcome to the USA, Leave your rights at the do by ephraim · · Score: 1

    Well, since you asked...

    I claimed "donation to EFF" as a tax deduction on my income tax forms last year.

    Go to http://www.eff.org/ to read more about them and click on the "Join EFF" link in order to donate cash.

    These are some of the only guys actually bothering to defend fair use rights in court, and your donated money is well spent.

    This isn't meant to knock writing letters to congressional representatives (which is also a good exercise), but the issue in question is currently being decided by courts and not by congress. Money sent to the EFF allows them to take on more court cases which deal with garbage like the lawsuit threat against Professor Felten.

    /EJS

  239. Re:TAKE THE CASE!! by GungaDan · · Score: 1
    As one of many individuals who decide on a daily basis what research involving human subjects is permissible at my institution, I take exception to your comment. Of course, we base "permissible" on silly notions like degree of risk, likelihood of benefit, etc., so maybe we're more legit.

    What this really looks like to me is a nifty parallel to the pharmco research sponsor who constructs a well-thought-out study, contracts my institution to do it, and then declines my insititution the right to publish any findings that make pharmco's new drug look like less than a blockbuster.

    This kind of intrusion by four-letter entities such as PRMA, RIAA, MPAA, etc. have significantly eroded academic freedom, and the problem will only get worse as institutions of higher learning continue to whore themselves out to the highest bidder, in order to get that new football stadium built, or, better yet, to cover higher salaries for their faculty, to make up for the shameful corporate bondage they've been placed in.

    --
    Eloi are stupid, throw morlocks at them!
  240. Slippery Slope by Jason+Levine · · Score: 1

    The question of "what is a cirumvention device" is a huge slippery slope in the DCMA.

    First a program that circumvents decryption (ala a compiled DeCSS) is a circumvention device.... I can buy that, though I'd argue that that in and of itself shouldn't make compiled DeCSS illegal.

    But what if you get uncompiled DeCSS code and compile it for yourself? Well then the source code must be a circumvention device. Along with whatever medium you have it on (be it CD-ROM, floppy disk, or T-Shirt).

    But what if you describe a general outline of how to circumvent some encryption. Not source code, but what's commonly known as pseudo-code. This won't compile, but a skilled programmer might be able to translate it into actual source code. Well, then we must make pseudo-code illegal too!

    What if you don't use code, but instead just describe in plain sentences how to decrypt something? Now I guess we must make language a cirumvention device as well!

    Who needs free speech when speech itself becomes illegal?

    --
    My sci-fi novel, Ghost Thief, is now available from Amazon.com.
  241. Wrong icon by jchristopher · · Score: 1
    Why does this have the censorship icon? No one was censored.

    There may have been threats, or implied threats, yes. But no one stopped them from publishing their material.

    They simply made a decision not to publish, given the facts that it might be found illegal. (Regardless of whether the law that makes it so is right or wrong).

    It's certainly a crummy choice to have to make, but let's be real. They buckled under financial and legal pressure. They were NOT censored.

    1. Re:Wrong icon by Zeinfeld · · Score: 3
      There may have been threats, or implied threats, yes. But no one stopped them from publishing their material

      Censorship is any attempt to control publication of information. In this case the threats were successfull, it would have been a censorship issue regardless.

      The fact that it is a threat of a civil lawsuit is irrelevant. One of the oldest censorship laws still in operation is the English Libel law which was expressly intended as an effective means of censoring the press.

      Self censorship is still censorship. The audience at the conference was prevented from hearing the paper.

      --
      Looking for an Information Security student project suggestion?
      Try http://dotcrimeManifesto.com/
  242. They should've called their bluff by AnalogDiehard · · Score: 3

    Had the RIAA actually gone ahead with the threat, they would've crossed the battle line and in time dug their own grave.

    Read here:

    http://www.law.cornell.edu:80/constitution/const it ution.billofrights.html#amendmenti

    The first amendment says that Congress shall pass no law abridging the freedom of the press (read: the presentation paper) or the freedom of speech (read: the formal presentation).

    The DMCA was made into law by Congress. It doesn't matter whether the RIAA or whoever lobbied for its passure. Only Congress has the power to make law, not the lobbyists. Therefore if the DMCA can be used to diminish the freedom of the press or freedom of speech, then a court would've declared the DMCA unconstitutional.

    It has happened before. The EPA was deriled by the courts when their severe restrictions placed on wetlands that belonged to private owners was found to have violated the fourth amendment's rights against unreasonable seizure of private property.

    --
    Eternity: will that be smoking, or non-smoking? I Corinthians 6:9-10
  243. Grab your copy now by dropdead · · Score: 2

    http://http://www.theregister.co.uk/content/8/1843 4.html



    The RIAA seem's to have trouble understanding if you want to keep something a secret you don't ask unpaid members of the public to do your work. Just because you look foolish does not mean people are not allowed to point that out in public.

    --


    By definition, a government has no conscience. Sometimes it has a policy, but nothing more. - Albert Camus
  244. Re:They chose their only option by Peter+Dyck · · Score: 4
    I can't believe this.

    As a scientist this disappoints me on two fronts.

    Firstly, apparently Princeton decided not to defend their scientists. This most disappointing and signals how modern universities are dependent on the external funding.

    Secondly, even if your university doesn't support you you should at least fight for what's right. I'm disappointed that the scientists gave up the fight without making more noise. I guess the career means more to them than the truth. Ok, unlike me they're established scientists and "can't afford" to lose their status, but still...

    Ok. This matter is political all the way, so I might as well say this: this is what we'll all end up with if WTO gains more ground. Please remember, that his is not just a US issue.

  245. good analogy by maddogsparky · · Score: 2
    Galileo was threatened by the church heirarchy with excomunication if he did not recant his finding. Pope John Paul II apologized for church official being wrong in his case more than 400 years after it happened.

    Galileo did recant, as the church was the equivalent of a large-multinational government during his time. Excomunication was worse than being sued-it was basically telling you that you had no rights in a society that was controlled by the church heirarchy. He would not have only been poor, he would have been homeless, ostricised and potentially tortured.

    --
    science is a religion
  246. I think there's prior art by maddogsparky · · Score: 2

    I looked at the patent, and the first 18 or so claims look like they are described by a TV and cable decoder. I didn't read the rest of the 27 claims (too much legaleeze is bad for the brain -just look at the decisions and arguments made by lawyers, judges and politicians). ;-)

    --
    science is a religion
  247. Re:Why aren't we boycotting the RIAA and MPAA yet? by t14m4t · · Score: 1
    We may want to boycott the RIAA and MPAA, but we don't want to not get their goods.

    Admittedly, I have a strong dislike for the practises of these two corporations. I would like for nothing better than the DMCA (and UCITA, for that matter) to get shot, ridden over by a car, and then buried in a ditch, along with whoever voted/lobbied for them. (Note: my argument is geared toward music, but is also applicable to video.)

    However, music that I like I still want on CD. I am not willing to log on to napster and download an entire CD (I only get CDs when I like virtualy all the songs on them), then burn it so that I can hear it in my car. The time and effort is just not worth.

    In short: for me, a boycott is not a viable alternative.

    I want their products. As much as I may dislike the RIAA and MPAA and their business practises, listening to the (RIAA-controlled) radio is not an option.

    It's just too much for me.

    People that are willing to give up new CDs (or make their own) and are willing to do this have my respect. For me, I have too much other stuff that needs to get done.

    t14m4t

    --
    67.5% Slashdot Pure I guess I need to work on that.... :)
  248. Re:Well by smagruder · · Score: 1
    What if this scheme wasn't applied to individual plaintiffs, but only organizational ones? Of course, nowadays, corporations get legal treatment as individuals, which is perverted. So, take away that perversion and we might start to see the beginning of the end to some of this madness.

    Steve Magruder

    --
    Steve Magruder, Metro Foodist
  249. Who let the laws out? (woof, woof...) by smagruder · · Score: 2

    Well, the DMCA is obviously one of the worst laws ever passed by Congress. But instead of expecting good people like Felten to undergo the punishment of expensive legal wrangling to eventually overturn the DMCA in the courts, why not attempt to democratically bring down the law in Congress itself?

    This whole situation is making matters ripe for a strong grassroots movement to begin doing the good work to force Congress to repeal this bad law. We've got the Internet to spread this movement like wildfire. What's stopping us?

    Oh, that's right. The elected dictators don't give a shit about what's best for the public. But it's at least worth a try to shake up the politician-elite class (from their brain-dead antics) as hard as we can.

    Steve Magruder

    --
    Steve Magruder, Metro Foodist
  250. Re:Well....said! by smagruder · · Score: 2

    Bully for all you said, and I'm now starting to lament that I didn't cast my vote for Nader last November. Ralph was right about corporatism.

    We're seeing increasing "attacks" (for loss of a better word) against ordinary consumers and citizens by corporations who think there are no limits to what they can perpetrate, all in the name of profit. This is all not just an issue with the SDMI and RIAA, but a much more far-reaching issue.

    The next time you feel your freedom being restricted, like in the case of simply not being able to make a copy of your favorite music, remember that a corporation or corporate-financed organization is most likely to blame. And compared to the auspices of government, corporations are in the process of building up far greater power than governments could ever muster in trampling the people's will and economic well-being. This is what the anti-globalists are ranting about... the eventual loss of freedom in favor of the new "corporate monarchies."

    Yes, I believe in capitalism, but only as part of an overall scheme that embraces wide competition, true democracy, freedom of information and the self-determination of all people. The big corporations DO NOT WANT THIS SCHEME... they want ABSOLUTE POWER.

    Steve Magruder

    --
    Steve Magruder, Metro Foodist
  251. Re:This is a purely American viewpoint. by 5KVGhost · · Score: 1
    Ah, I see. So only by restricting freedom can freedom be made to flourish. What a remarkable insight.

    As we all know, enduring a hateful word, or even co-existing in the same room as someone who's thinking offensive thoughts, is much more dangerous and hurtful than being killed in cold blood, so those laws are completely justified.

    And, of course, the people who happen to be in power are clearly the ones best qualified to decide what sorts of speech are OK, and which are just too dangerous or offensive for the masses. And if you happen to disagree with their decisions, well, clearly you're up to no good. It makes everything so much simpler. I wonder why anyone would think otherwise?

    -Bryan

  252. It's gonna get cracked anyways. by $kr1p7_k177y · · Score: 1

    We know the new standard has been cracked, so it's just a matter of time before someone redoes the work, and releases it covertly.

    What we have here is a case of the managers of the RIAA covering their own asses, knowing that the new scheme is going to crumble... hopefully after they've moved on.

  253. didn't see it earlier by Mynn · · Score: 1

    upon further research, it seems you are correct *this* time.

    --

    Face it, people are stupid, and the internet is the place where they all meet.
  254. Let's slashdot the by Placido · · Score: 1

    RIAA. (Nice site BTW.)


    Pinky: "What are we going to do tomorrow night Brain?"

    --

    Pinky: "What are we going to do tomorrow night Brain?"
    Brain: "I would tell you Pinky but this 120 char limi
  255. Isn't the point moot, though? by 2nd+Post! · · Score: 5

    If the challenge has been met, by these researchers, then it means it can be met again and again(the whole point of scientific process and such)

    Which means any player or device that uses any of these technologies can be hacked or cracked or tampered with (or not, depending on what the research conclusions were) reliably and consistently.

    Which means *not* publishing is actually fraud and lying to the various stock holders and people in charge of the music industry who may otherwise never know that they are about to pull another 'CSS'

    Right?

    Geek dating!

  256. Will the paper fit on a t-shirt (front/back)? by tenzig_112 · · Score: 2
    If so, look for it soon at ThinkGeek.

    Wearing it will result in a series of cease & dissist notices- how's that for clothing making you feel important. For my case, I have other means of getting sued.

  257. Re:NOOOO! Fight it! by mikeskoglund · · Score: 1

    i think it's more likely that the DMCA wouldn't apply -- either because the text of the statute doesn't contemplate a research paper, or because their work would be protected by the first amendment. the click-through license, on the other hand, could be a problem, depending on what court is asked to construe and apply it.

    anyway, since the paper has been leaked and mirrored, we should know soon whether the RIAA is serious about litigating over this issue.

    p.s. princeton hasn't have a law school.

  258. Sue the MPAA! Sue the RIAA! by ubernostrum · · Score: 1

    Amateur filmmakers - put your work on DVD, then sue the MPAA...by enforcing the use of CSS and other encryption techniques, they are distributing "circumvention devices" (give me a DVD, you've given me the information to crack the DVD) and are in violation of the DMCA.

    Ditto SDMI and suing the RIAA - if you distribute such a crappy encryption scheme, you're really distributing a circumvention device.

    Or at least I'd be willing to bet Kaplan would rule that way...

  259. RIAA Intimidation? Fight back! by Wrangler · · Score: 3

    C'mon, people! We're Americans! They restrict *our* freedoms, we restrict theirs! This should be enough for everyone to get started. Write. Call. Mailbomb. Make 'em sorry that they f**ked with other peoples' liberty!

    Registrant:
    Recording Industry Association of America
    (RIAA2-DOM)
    1330 Connecticut Ave., NW #300
    Washington, DC 20036
    US

    Domain Name: RIAA.ORG

    Administrative Contact, Billing Contact:
    McCaffrey, Howard (HM66) hmccaffrey@RIAA.COM
    Recording Industry Association of America, Inc.
    1330 Connecticut Ave., NW Suite 300
    Washington, DC 20036
    202-857-9618 (FAX) 202-775-7253
    Technical Contact:
    Dean, Christopher (CD7268) cdean@RIAA.COM
    Recording Industry Association of America, Inc.
    1330 Connecticut Ave., NW #300
    Washington , DC 20036
    202-857-9616 (FAX) 202-775-7253

    Record last updated on 27-Feb-2001.
    Record expires on 09-Jan-2003.
    Record created on 08-Jan-1997.
    Database last updated on 25-Apr-2001 23:27:00 EDT.

    Domain servers in listed order:

    PDNS1.ISC.CW.NET&nbs p; 208.134.245.2
    PDNS3.ISC.CW.NET&nbs p; 208.134.245.10
    NS4.CW.NET&nbs p; 204.70.4 9.234

    slashdot % traceroute -n 208.134.245.2
    traceroute to 208.134.245.2 (208.134.245.2), 30 hops max, 40 byte packets

    ...
    17208.134.242.20989.558 ms90.012 ms95.870 ms
    18208.134.242.11095.463 ms !X94.116 ms !X89.937 ms !X
    Oh, look!A firewall!Guess they're safe, huh?

  260. DCMA Unconstitutional by HaeMaker · · Score: 1

    This is more proof that the DCMA is unconsititutional. It has chilled highly valuable speech. Hopefully the EFF will see this and seek an injuctiontion against enforcement and get the "fair use" aspect clarified.

  261. RIAA == wanna-be media dictators by Darth+RadaR · · Score: 1
    As you are aware, at least one of the technologies that was the subject of the Public Challenge, the Verance Watermark, is already in commercial use and the disclosure of any information that might assist others to remove this watermark would seriously jeopardize the technology and the content it protects.

    Technically, cassette recorders have been doing the same thing for years. What a load of rubbish.

    Information is going to be freed no matter how lame of an attempt the RIAA or anyone else is going to place in order to keep it caged.

    --
    /*drunk.. fix later*/
  262. Well by Auckerman · · Score: 4
    "Litigation is costly, time-consuming, and uncertain, regardless of the merits of the other side's case. Ultimately we, the authors, reached a collective decision not to expose ourselves, our employers, and the conference organizers to litigation at this time."

    This is why when someone brings a law suit against someone else and looses, they should not only compensate that person/company, but should do so 100X the costs it took to defend themselves. Then the RIAA would have to reconsider next time it was to use terrorism and its bought Senators to push researchers around. "We remain committed to free speech and to the value of scientific debate to our country and the world. We believe that people benefit from learning the truth about the products they are asked to buy. We will continue to fight for these values, and for the right to publish our paper."

    I like the language he chose here: "We believe that people benefit from learning the truth about the products they are asked to buy.". This sums up the nature of the music industry as it exists today. All of the weathy labels have united to form a monolopy over artists. These artists are forced to release their copyright, or they don't get the large resources of the Labels promotional firm at thier disposal. As a result of this, these companies hold the copyrights to the majority of the popular music in the United States and work togethor, with hardware makers, to force on the public any format the RIAA wants. If they wanted to switch to an "encrypted" cd format in the next 5 years, just like MPAA did with DVD's, they could. Then when "DeCSS" for music comes out so people can encode mp3s, or listen to there "AudioDVDs" on Linux, the RIAA could sue some kid into the ground for breaking their equivalent of ROT26 encryption.

    Fucking bullshit, I tell you. I no longer fear my govt, I fear the companies the Senators are giving the power too. Before you pass me off as some "Rage against the Machine" fanatic, I'm not. I'm just pissed that the RIAA has more control over the Senators and Represenatives that I voted for, that my fellow citizens and I.

    I say publish the damned paper, break all of their encryptions, and take a piss on the steps of the steps to the RIAA's lawyers.

    --

    Burn Hollywood Burn
  263. Read the paper that the government has forbidden by rabtech · · Score: 2

    Read the paper that the RIAA, SDMI, and our government say is illegal.

    http://www.theregister.co.uk/extra/sdmi-attack.h tm

    http://www.boneville.net/slashdot/sdmi-attack.ht m

    Download, mirror, link... rinse & repeat. Don't let the scum of humanity dictate the rules. I would encourage anyone and everyone: Anytime any corporation threatens to sue in order to supress information, ensure by copying and distributing it that the information they are attempting to supress stays free forever.
    -------
    -- russ

    "You want people to think logically? ACK! Turn in your UID, you traitor!"

    --
    Natural != (nontoxic || beneficial)
  264. Moral relativism by mike260 · · Score: 1
    Who decideds what's "morally and socially acceptable speech?"

    The same guys who decides what's morally and socially acceptable behaviour and make laws based on that. In an ideal world, that's honest polititians who work hard to accurately represent an educated, informed and fair-minded populace.

  265. Indymedia gagged and scientific discourse limited by teatime · · Score: 1

    Every day it gets worse. I mean scientists not being able to express their research. Independent sources of media facing intimidation. I know this is may not be completely relevant bto the story above but it relates to all of our rights concerning freedom of speech . Basically a gag order has been placed on Indymedia by some law enforcement agency. The EFF has taken an interest in the case. It's basically like the NYT getting investigated by the government and not being able to publish anything about about it. The story about it is at Wired. It looks like our right to publish and speak freely are getting more and more limited by the day. I am getting very tired of corporate consortiums and the government consistantly working to limit our ability to express ideas.

    This point in history is very important if you believe in freedom. I encourage everyone to do whatever is in their power to fight censorship and the limitation of the expression of ideas no matter what form the ideas take.

  266. Re:Have Corporations replaced Religions? by trentfoley · · Score: 1

    I offer my appologies; but, I didn't mean to belittle torture.

    IANAL -- my wife is. That is why I equated lawyers to torture ;)

  267. Have Corporations replaced Religions? by trentfoley · · Score: 4

    It really wasn't that long ago that scientists were persecuted by the Roman Catholic Church. Some may argue that it continues to do so to this day. But back when, if you said that the Earth revolved around the Sun, you were a heretic. And, when The Church declared people to be heretics, it was fair game to go after them in the eyes of the fearful public.

    Now, I have always felt that organized religion was the most effective method of mind control, with the bonus of making a profit. But, now I see that organized religion was nothing more than a precursor to the corporations that are now controlling the masses, and making huge profits. The corporations are the ones now declaring people as heretics, by calling them hackers. These same corporations dictate what science is suitable for publication using the same fear techniques the Church used: fear of persecution. Ok, this time it is lawyers instead of torture. But, I don't see that much difference, really.

    My question is: Who will be the next Martin Luther?

    Thanks, I'm feeling much better now.

    1. Re:Have Corporations replaced Religions? by Ape8888 · · Score: 1

      It always amazes me that some people need to actually SEE misery to comprehend it...

  268. Real or Imaginary? by not_the_resurrection · · Score: 5

    In the world of animal experiments it's not unheard for a group to publish papers under the name of one person in the group. This person is typically paid danger money to compensate their risk from animal extremists.

    Would somebody be prepared to stand up and publish papers written by somebody else to deal with the SDMI extremists? Would we be prepared to pay them danger money?

    Another alternative might be to publish under a pseudonym. The Student's T-test is named after the statistician Gossett who published in the name "Student". Student worked for the Guinness brewery, but they didn't allow publication to be associated with the brewery. (The "drink guiness makes you smart" slogan didn't go down well :-)

  269. Not an Issue of Censorship... by Fatal0E · · Score: 2

    ...yet. I don't think it's an issue of any of the Universities not willing to back them up but they have to have a strategy before they can test the DMCA in this fashion. Think about it. If you knew that you were gonna be sued over the content of a seminar or publication you would do everything to prepare beforehand. The cancelling of the talk/publication of the subject is a CYA move, which is not a bad thing. It would be bad if it never gets published but I don't think the researchers will remain quiet about this.

    Maybe they are either gonna wait for the DeCSS case to conclude, or maybe they are going to reorganize to protect the parties that can't afford to have their names appear at the top of a breif but I suspect that this is Far from over.

  270. LOL Re:This is a purely American viewpoint. by Essron · · Score: 1
    In Europe it's generally accepted that there should be limits to freespeech. What transpired in Europe 60 years ago has show to us that freespeech should not be abused to give speaking rights to those who would deny those rights to others.

    So you are saying the the RIAA and the MPAA should be denied THEIR freedom of speech? I'd dig it if it weren't hippocritical of me.

    Does anyone know a better way to annoy the RIAA other than sending hatemail at http://www.riaa.com/Contact.cfm ? I guess all those Y2K supplies I stockpiled will help me resist the coming police state ;)

  271. Full Support by vodoolady · · Score: 1

    This is just insane, time to start writing congressmen.

  272. lets all give money to support their legal fees... by twigstamc420 · · Score: 2

    I for one would be willing to donate...

  273. Free speech by necrognome · · Score: 1

    We remain committed to free speech and to the value of scientific debate to our country and the world.

    -- to bad the IP lawyers don't...

    --


    Let's get drunk and delete production data!
  274. The fact is, high court judges are corrupt. by Magnus+Pym · · Score: 2

    There is a simple reason why the RIAA is able to get away with this. The US high court judges are corrupt as they come, and corporations know it. They might have different political ideologies, but the nomination process makes it impossible for honest judges to go up the ladder, since both parties are beholden to the same corporations. Thus we have sleazy, unethical slimeballs like "Judge" Kaplan and the cunning bastards in the US appeals court spouting whatever nonsense that they want and getting away with murder.

    Of course, the journalists whose job it is to expose these criminals are themselves beholden to the same corporations! They are employed, directly or indirectly, by the media companies who constitute the RIAA. Thus we have the unholy alliance that operates without any fear of exposure or reprisals.

    Magnus.
  275. THE RECANTATION OF GALILEO GALILEI^H^H^H ED FELTEN by MillionthMonkey · · Score: 2

    THE RECANTATION OF GALILEO GALILEI^H^H^H^H ED FELTEN

    I, Ed Felten, Associate Professor of the Department of Computer Science, Princeton University, of Princeton, aged forty-something years, arraigned personally before this tribunal, and kneeling before you, most Eminent and Reverend Record Industry Lawyers, Inquisitors general against heretical Fair-Use and Digital Piracy throughout the whole American Republic, having before my eyes and touching with my hands, a printed copy of the Digital Millenium Copyright Act, written by Corporate Lobbyists and duly ratified without question or concern by their paid Representatives in Congress -- swear that I have always believed, do now believe, and by the entertainment industry's help will for the future believe, all that is held, litigated, and proxy-legislated by the Recording Artists of America ("RIAA") and the Motion Picture Association of America ("MPAA").

    But whereas -- after a threat had been legally intimated to me by these powerful Corporate Plaintiffs, to the effect that I must altogether abandon the false opinion that a digital watermark may be effectively removed from a digital audio signal, and that the resulting signal shall suffer no loss of fidelity or audio quality relative to the original while yet removing the said watermark sufficiently to prevent its detection by SDMI-compliant devices, and that I may hold, defend, publish, or teach in any way whatsoever, verbally, in a technical scientific journal, or at a scientific proceeding, the said doctrine, and after it had been notified to me that peer-reviewed scientific disclosure of the said doctrine was contrary to the fair provisions of the Digital Millenium Copyright Act -- I wrote and printed a scientific paper in which I discuss this doctrine already condemned in great technical detail, and adduce arguments of great cogency in its favor, without presenting any viable solution to the resulting attendant Question of how Powerful Corporations will be able to extract Payment from individual Consumers for the same song, album, or movie Many Many Times; and for this cause I have been pronounced by the Legal Office of the aforementioned Plaintiffs to be vehemently suspected of HERESY, that is to say, of having held and believed that legitimate scientific Research does not constitute criminal activity under any reasonable legal Standard, that intellectual Freedom and open scientific Debate is vital to the future of a Democracy, and that free speech as guaranteed in the Constitution is more inviolate than a fucking stupid law enacted solely to protect corporate profit margins by muzzling all those who would dare to point out any technical shortcomings in poorly conceived half-assed industry copy-protection schemes:

    Therefore, desiring to remove from the minds of your Eminences, and of all other litigious Corporations with well-financed teams of Attorneys, this strong suspicion, reasonably conceived against me, with sincere heart and unfeigned faith I abjure, curse, and detest the aforesaid errors and heresies, and generally every other error and sect whatsoever contrary to the said RIAA and MPAA; and I swear that in the future I will never again say or assert, verbally or in writing, anything that might furnish occasion for a similar suspicion regarding me; but that should I know any heretic, or other legitimate scientific researcher suspected of similar heresy, I will denounce him to the high-powered Legal Departments of these two corporate Entities, or to the Inquisitor and ordinary of the place where I may be. Further, I swear and promise to fulfill and observe in their integrity all gag orders that have been, or that shall be, imposed upon me by the RIAA and MPAA. And, in the event of my contravening, (which God forbid) any of these my promises, protestations, and oaths, I submit myself to all the pains and penalties imposed and promulgated in the Digital Millenium Copyright Act, general and particular, against such delinquents. So help me America, and this flag that stands for it, which I touch with my hands. I, the said Ed Felten, have abjured, sworn, promised, and bound myself as above; and in witness of the truth thereof I have with my own hand subscribed the present document of my abjuration, and recited it word for word in Pittsburgh, PA, in the Fourth International Information Hiding Workshop, this twenty-sixth day of June, 2001.

  276. Then WHY isn't the patent listing itself... by GeneralEmergency · · Score: 2

    ...considered an illegal circumvention device under the DMCA?


    "A microprocessor... is a terrible thing to waste." --

    --
    "A microprocessor... is a terrible thing to waste." --
    GeneralEmergency
  277. We believe in free speech unless someone sues us?? by Shivetya · · Score: 1

    huh?

    Basically they believe in free speech but cave in when threatened. Thats like saying a drowning man is wet, we all know it, but it doesn't mean anything in the end.

    --
    * Winners compare their achievements to their goals, losers compare theirs to that of others.
  278. Egads... by RareHeintz · · Score: 5
    I seem to remember Bruce Schneier and others railing against the DMCA and its proposed variants before the U.S. Congress passed them, claiming that it would impair their ability to do legitimate research into security. At the time, they were written off as cranks (at least, by Congress), but it now appears to have come to pass - corporations have purchased (from elected officials who are supposed to be working for the citizenry, no less) the right to censor scientific and technical knowledge that threatens their outdated business models.

    And how does the paper represent a "circumvention device"? DeCSS fits that definition, for sure - download the software, and you can rip DVD's. (Disclaimer: I'm not at all agreeing that that should be illegal - I'm just saying that DeCSS is a real circumvention device.) But there is no way to combine the paper and a piece of encrypted music and get unencrypted music out. One must first complete the non-trivial task of creating software or hardware that acts upon the knowledge in the paper - in short, the device has yet to be created (at least for widespread distribution).

    Time to write my representatives again...

    OK,
    - B
    --

    1. Re:Egads... by eXtro · · Score: 1
      The funny part about this is that they're shooting themselves in the foot in my opinion. They've got a community of people, skilled in the relevant practice and theory, who've said "your algorithm is weak". They could use an open forum (like anybody serious about using cryptography would) to harden their algorithms. Instead they want to silence the research instead.

      So, even if it wasn't too late (the paper itself is already on the net and has shown up on gnutella) they'd still have a weak algorithm. An algorithm that will be scrutinzed by a large number of programmers and cryptography afficionados. It might take this community longer but it still would end up with any weaknesses uncovered.

      A few wealthy groups of people who's interests will be harmed by this insane lack of due diligence need to sue the RIAA. Make the RIAA pay out of its pockets for supporting, endorsing and using these progress killing clauses in the DMCA.

    2. Re:Egads... by Zeinfeld · · Score: 2
      The statements in the hearings by the congressmen are very significant. They establish the fact that it was not the will of Congress to empower the SDMI group to act in this manner.

      The fact that the act would be unconstitutional if that was the intent is also relevant of course.

      --
      Looking for an Information Security student project suggestion?
      Try http://dotcrimeManifesto.com/
  279. Re:This is a purely American viewpoint. by daniel_isaacs · · Score: 1

    "According to the USA laws ... holocaust denial are not considered crimes. "

    Since when should refusal to accept a verifiable fact be a criminal act? Should we inprison the members of the Flat Earth Society, too?

    Frankly, I don't care that it's an American idea. Occasionaly, we have good ones. That Europe doesn't quite appreciate it matters little to us. That was sorta the point to begin with.

    --
    - Dan I.
  280. Then They better fess up with the cash. by RogueAngel7 · · Score: 1

    "Felten and colleagues declined the cash prize and its accompanying restrictions, but have been threatened anyway"

    "To get the prize shout your mouth about your findings..."

    "Well then we dont want the cash."

    "Oh. Well then, shut your mouth or we'll sue you."

    I'm saying the contest holders better fess up with that cash prize then. Of course we all know how likly this is. (Snowball + Hell, draw your own conclusion)

    Hey maybe I could use this type scenario in the future.

    Hold a contest and require the winner to not tell anyone. When the winner tells me about it to claim the prize, I'll just say they violated the rules by telling me, and skimp out on the prize!

    on second thought, that would just make me a dirty rotten bastard like the people that held this contest...

    RA7
    -

    --
    "Consistency is the hobgoblin of small minds" - RWE
  281. Re:Why aren't we boycotting the RIAA and MPAA yet? by Mastagunna · · Score: 2

    Boycotting will give them grounds to cry about. Rather then people seeing it is people boycotting they will blame it on filthy pirates. They are there for a reason, they are lowlife scum, the cream of the crop of big business. So boycotting gives them ammo, when you are boycotting, write to you local papers, and congress men, MP's or what ever saying you are boycotting, that way we can say that Napster is not hurting them, but thier bad tactics.

  282. Re:This is a purely American viewpoint. by samjam · · Score: 1

    "Only morally and socially acceptable speech should be fully allowed to be spoken freely, hateful and harmful speech should be restricted fully"

    So if I find what you said to be socially unacceptable and immoral (as I do) will you stop saying it?

    Sam

  283. PRINCETON SHOULD TAKE THE LAWSUITS ON! by daveym · · Score: 2

    Guess who has more money? The record industry or Princeton?

    Princeton is sitting on a GIGANTIC HEAP of money. All the legal $$ from this case would not even dent the endowment. If the professors were really serious about publishing their papers, I would bet the U would back them up.

    ...of course, why publish when it is on the web in so many places? In fact, I am glad that they're won't be a lawsuit--less $$ for the lawyers, one less dispute settled by a stupid judge! Court sucks!

    --
    "Chill, Orrin!"---Trent Lott
  284. Re:TAKE THE CASE!! -- AND LOSE! by Andux · · Score: 2
    Presenting a paper to tell the world how they did it is not permitted under this law.
    Not permitted by that law, no. But you seem to have forgotten something...

    Congress shall make no law respecting an establishment of religion, or prohibiting the free exercise thereof; or abridging the freedom of speech, or of the press; or the right of the people peaceably to assemble, and to petition the Government for a redress of grievances.
    They obviously have a right to publish it. The question is, does the RIAA have a right to sue them, and on what grounds?
    --
    (Do not sign anything.) -- Fell, Planescape: Torment
  285. Re:TAKE THE CASE!! by Andux · · Score: 5
    IANAL, but unless the case winds up in front of our good old buddy, the honorable Judge Lewis "Link Nazi" Kaplan, I think it should be fairly easy to win. Quoth the DMCA:

    `(2) PERMISSIBLE ACTS OF ENCRYPTION RESEARCH- Notwithstanding the provisions of subsection (a)(1)(A), it is not a violation of that subsection for a person to circumvent a technological measure as applied to a copy, phonorecord, performance, or display of a published work in the course of an act of good faith encryption research if--

    `(A) the person lawfully obtained the encrypted copy, phonorecord, performance, or display of the published work;

    `(B) such act is necessary to conduct such encryption research;

    `(C) the person made a good faith effort to obtain authorization before the circumvention; and

    `(D) such act does not constitute infringement under this title or a violation of applicable law other than this section, including section 1030 of title 18 and those provisions of title 18 amended by the Computer Fraud and Abuse Act of 1986.

    --
    (Do not sign anything.) -- Fell, Planescape: Torment
  286. Oops by fibonacci8 · · Score: 5

    "You may, of course, elect not to receive compensation, in which event you will not be required to sign a separate document or assign any of your intellectual property rights, although you are still encouraged to submit details of your attack." They're encouraging the submission of details of a successful attack. Unfortunately they didn't say to whom they encourage it to be submitted. *mischievous grin* I'd recommend submitting it to several major news sources per the agreement.

    --
    Inheritance is the sincerest form of nepotism.
  287. Want the paper? by Jormundgard · · Score: 1

    Here's the paper.

  288. Dear Mr. Successful-Security-Consultant by Gruneun · · Score: 5

    Last week, after paying an outrageous sum of money for an ADT security system, I posted a sign outside of my house. The sign offered my DVD player to anyone who could find a way into my house.

    I have come to find out that you realized I left my window open. I know you spent a long time studying my house and its security system. It is a feat to be proud of. While I understand you don't really want my DVD player and you were not attempting to steal additional items, I must ask that you do not reveal the open window to anyone else. While it may protect others from similar security flaws, revealing this could cause others to steal things from my house.

    Perhaps, I should have studied the house more or asked you to look at it before I moved my belongings inside, but that is immaterial and I will sue to protect my interests

    Sincerely,
    Mr. Cocky-Ass-Caught-With-My-Pants-Down

  289. New at ThinkGeek by Husaria · · Score: 1

    The SDMI code on a shirt!
    But seriously
    Its showing off to them if one takes the time to think about it...but guess what, what they do next, well, it'll be cracked anyway and we'll be here posting about it. RiAA can't win

  290. This is like PGP by Greenisus · · Score: 1

    Phil Zimmerman got away with publishing his book on encryption when it was controversial with the government, so these guys should be able to do it too.

  291. Moreover - Re:I'll say it again. by Zeinfeld · · Score: 2

    Don't forget filing RICO charges as well.

    --
    Looking for an Information Security student project suggestion?
    Try http://dotcrimeManifesto.com/
  292. Strategies by Zeinfeld · · Score: 4
    At this point the key strategy should be to encourage SDMI members to resign.

    This is not as hard as it may appear since most of the members are technology companies looking to hawk their technology. Those whose watermarks etc. have not been choosen are thus likely to be looking for an excuse to withdraw on principled grounds.

    If an industry standards group is not going to endorse my technology then it is not exactly in my interests to continue to endorse them but resigning for that reason is going to look kind of bad. Give such folk an excuse to dis SDMI without looking bad and they will be out.

    Another group that might well be detached is the second tier of device manufacturers. Sony is the only company to have tried to deliver an SDMI compliant device, an MP3 player that was a spectacular failure until the SDMI component was disabled.

    The plain fact is that the record labels have not lived up to their side of the deal, they have not made their content available to download even if you do implement SDMI.

    Another company that might be detachable is Microsoft. They have their own DRM package which works pretty well without the SDMI schemes. If Microsoft were to leave SDMI it would effectively be dead.

    The fact is that SDMI has met none of the goals it set out to meet. The technology missed what the promoters admitted was the critical market window. We are now in the post Napster period in which the RIAA and labels are getting complacent about the net again, believing that the court case will kill Napster. The court case probably will kill Napster but the replacements will be even harder to deal with.

    Having failled to come up with a secure scheme and having resorted to threats of lawsuits to supress discussion of the flaws in the scheme it is going to be very hard for SDMI to credibly claim that it will deliver a security scheme good enough to entice the labels to permit their content to be sold over the net. Without that key belief SDMI is nothing. Chiariglione would not be stepping aside as director if SDMI was coasting along to a huge success.

    --
    Looking for an Information Security student project suggestion?
    Try http://dotcrimeManifesto.com/
  293. SDMI surrenders by Zeinfeld · · Score: 4
    From Salon On Thursday, Oppenheim released a backpedaling statement: "The Secure Digital Music Initiative Foundation (SDMI) does not -- nor did it ever -- intend to bring any legal action against Professor Felten or his co-authors.

    A blatantly untrue statement. Or rather it is true to the extent that the creep does not claim that they did not threaten legal action, merely claiming that the threats made were unfounded. However as the Salon article points out the RIAA realized it had screwed up big time.

    With the first ammendment implications of the DMCA being debated next week the last thing the RIAA needs is a proof that the act is unconstitutional and being used to chill free speech.

    Proof that the RIAA and SDMI folk are not as smart as the cryptographers. Which is pretty much as expected. I mean if you are going to pick stupid fights best not choose folk whose entire mindset is attack and counter measure to six or seven degrees out.

    --
    Looking for an Information Security student project suggestion?
    Try http://dotcrimeManifesto.com/
  294. That's IT. by AllNightLong · · Score: 1

    I say we nuke the RIAA from orbit.

    It's the only way to be sure.

  295. A Wonderful Sign, I Think... by nanojath · · Score: 1
    Let's all look at the bright side: SDMI has made it clear that they've decided that since they are failing in the exceptionally difficult challenge of creating sucessful watermarking technology, rather than fix what's wrong they will attempt to ameliorate the failure of their technology by taking on the absolutely IMPOSSIBLE challenge of attempting to control information on how their watermarking technology can be diverted.

    The Princeton research group's FAQ reads like a textbook on why these SDMI yahoos are hosed. They don't really understand what they need to achieve and they're unwilling to expose their work to a real challenge that will measure its potential effectiveness in the real world. Furthermore, if they treat scientists with this kind of contempt, it will eventually become common practice to hand a copy of any disputed/DMCA attacked paper under the table to the free information advocates, people who's lives revolve around making this kind of information available. Let them release weak protection with established divversion techniques if that's what they really want. The sooner they fall off the face of the earth.

    --

    It Is the Nature of Information to Transgress Artificial Boundaries

  296. Re:NOOOO! Fight it! by dachshund · · Score: 1
    The DMCA doesn't cover security research! This is an opportunity for a young lawyer (does Princeton also have a good law school?) to make a great case that just might break the DMCA

    Unfortunately, that argument wouldn't really challenge the DMCA at all. If a lawyer argues that Felten was within the bounds of the DMCA, the best that could happen is that the RIAA would lose the case, and maybe have to pay costs. It might even wind up strengthening the DMCA.

  297. Spurious Litigation by MopOfJustice · · Score: 2

    I am saddened to think that reasearch (with no profit attached) can be halted this way. If the RIAA had even the slightest trace of intelligence, I'd think they'd support such public research so that they can improve their own products, unless of course they knew their watermark was bogus in the first place. Hey, that sounds a little like fraud to me...

    --
    ----------- Sig what?
  298. Yes it is; glad I live here. by cryptochrome · · Score: 1

    It may be dangerous sometimes and always contentious, but it beats having others think for me. I'm glad I live in America.

    cryptochrome

    --

    ---If you can't trust a nerd, who can you trust?

  299. Re:Why aren't we boycotting the RIAA and MPAA yet? by cryptochrome · · Score: 1

    Wanting to watch and listen to what you want to is certainly a valid problem with this boycott idea. Unlike boycotts for material goods, there is no perfect alternative or substitute for a particular movie or album. But let's face it, that's what you'd have to give up. As long as you can't bear to be without that latest album, they'll have us over the barrel.

    Personally, I don't mind the radio and I haven't wanted to watch a movie in some time ('cause they're mostly crap). I'm not saying that you should engage in what the corporations call "piracy" per se. I AM saying that we should cut off the flow of money to them. And we need to be very public about it. Individually choosing not to buy is good, but a mass action with media coverage that will bring in other people would be priceless. The uncertainty of a fiscal quarter with revenue slashed in half would probably be enough to start some real change.

    So what should you do?
    Borrow from a someone who already has it.
    Put off your purchases for a fiscal quarter.
    Cultivate an interest in music from indy labels.
    Buy CDs directly from the band.
    Corrupt youth.
    Get a decent mp3 player to hook up to your car.
    Make lots of noise.
    Start or join a good hotline server.

    and c'mon timothy, michael, CmdrTaco - slashdot has influence and power. Why not use it for something other than killing interesting websites?

    cryptochrome

    --

    ---If you can't trust a nerd, who can you trust?

  300. Why aren't we boycotting the RIAA and MPAA yet? by cryptochrome · · Score: 5

    Dear Slashdot users and moderators,

    Why aren't we formally boycotting the RIAA and MPAA yet? We talk alot about legal arguements and political wrangling, but let's face it, the corporations definitely have the edge there. But as consumers, we ultimately have control over the almighty dollar. We should show them who's boss.

    It's not like we don't have a reason, what with all the bullying, monopolizing, and litigation they jerk us around with. It's not like their business models aren't totally outdated. And it's not like geeks don't have influence - particularly slashdot. We're some of their biggest consumers. Make enough of a ruckus, hit 'em in the pocketbook, and they'll bend. Hell, we might even be able to take them out and give control back to the artists.

    Love 'n Stuff,
    cryptochrome

    P.S. And just something to consider - years ago there was this big corporate squabble between VHS and Betamax. Everyone said it was stupid and expensive to have two standards, which is why a single DVD standard was settled on early. Then they split it up into 8 standards (aka "Region codes"), meaning you can't watch movies from foreign countries without a new player. Jerks.

    P.P.S. And now would be a great time to hurt the film and TV industry, what with the double whammy of writers and actors strikes.

    --

    ---If you can't trust a nerd, who can you trust?

  301. TAKE THE CASE!! by allknowing · · Score: 4

    I seriously think a "Johnny Cochran" of some sort should take this case pro-bono. I know it would mean endless hours, weeks , months or even years to finally finish this case and maybe win but just think of the potential precedent here.
    It would mean so much to free speech.

    More here...: http://www.ramdac.org

  302. They chose their only option by Anonymous+Admin · · Score: 4

    In our legal system, where a person may be sued for any reason whatsoever, You have no hope of winning unless you can outspend your opponents. Otherwise, under a mountain of motions, you will simply lose by default.

  303. Re:TAKE THE CASE!! -- AND LOSE! by Rogerborg · · Score: 1
    • The battle over the DMCA must be chosen wisely, and this case just aint the grail.

    I'd like to hear people's fantasy cases then. Go wild, come up with a scenario that's a no brainer even for a circuit judge.

    --
    If you were blocking sigs, you wouldn't have to read this.
  304. Re:This is a purely American viewpoint. by Rogerborg · · Score: 1
    • "Oh, eek. It's an attack of the nazi beach bunnies with the 60 point IQs, eek, eek."

    Kind of funny, but you can make the same argument for the US Marines. And in both cases, the guys actually giving the orders are intelligent, educated, well spoken, persuasive, and utterly convinced that they are fighting the good fight. They also look a lot like me and thee, only in fatigues and smart suits respectively.

    --
    If you were blocking sigs, you wouldn't have to read this.
  305. Re:Well done RiAA by Rogerborg · · Score: 1
    • What a great way to publicise the findings of this paper. Without the threat of legal action, its presentation would probably have been largely unnoticed outside its field.

    Sure, now that there's some angry geeks onboard, that about wraps it up for the DMCA then.

    Seriously, can you find this story outside the geek press?

    --
    If you were blocking sigs, you wouldn't have to read this.
  306. Re:This is a purely American viewpoint. by Rogerborg · · Score: 1

    Have you actually seen any pictures of Hitler, Adolf? Let me say this again, slowly:

    The people giving the orders are not the same as the mindless pack animals carrying them out. They're not dumb, or inbred, or easily recognisable, and that's the danger.

    --
    If you were blocking sigs, you wouldn't have to read this.
  307. Re:This is a purely American viewpoint. by Rogerborg · · Score: 2
    • You actually got four downmods

    Defending freedom of speech by suppressing an article that questions it. Downmodders: are you even dimly aware of the dichotemy?

    --
    If you were blocking sigs, you wouldn't have to read this.
  308. Re:It is also akin to schools in the north saying. by Rick+the+Red · · Score: 4
    It is also akin to schools in the north saying you can't teach creationism (or at least acknowledge that some people believe that) - schools seems to repress Christianity which can be damaging to children whose culture is based around Christianity.

    What nonsense! As a Christian, this offends me. Christianity is not a culture, it's a religion. Many people try to label their bias and prejudice as "christianity" and defend it with the banner of religious freedom but it's all redneck asshole intolerance to me. You may come from a culture of intolerance, but don't call that "christianity". True Christianity is all about tolerance (Love your neighbor as yourself and all that).

    "Creationism" is not science, it's religious belief foisted upon school boards in a cloak of psudo-science in an attempt to get around the First Amendment. Next time you want to force everyone in your community to pray to your god, think how you'd feel if someone else tried to make you pray to their god.

    Finally, this (the RIAA legal threats) is nothing like the example you site. It's more like if, say, you wished to teach a class in comparitive religion and the Scientologists sued you for using their copyrighted materials. For that reason alone your post is not at all "insightful" (more like "inciteful") and should have been modded down as Flamebait.

    --
    If all this should have a reason, we would be the last to know.
  309. Re:It is also akin to schools in the north saying. by Rick+the+Red · · Score: 4
    Christianity is not a culture, it's a religion.
    I did not say it was a culture; I said my culture is based on Christianity

    That's where we fundimentally differ. If I agree to this point, then I agree to all your other points. But I don't. I don't believe your culture is based upon Christianity. I do believe it is based upon someone's idea of what they think Christianity is, but it's not my idea of Christianity.

    Many people try to label their bias and prejudice as "christianity" and defend it with the banner of religious freedom but it's all redneck asshole intolerance to me.
    Racial slurs aside (must be a part-time-attend-Easter-and-Christmas-only-Christi an), my arguement is about freedom for all.

    It wasn't a racial slur, it was a geographic one. My mistake; instead of 'redneck' I should have said 'cracker'.

    You may come from a culture of intolerance, but don't call that "christianity". True Christianity is all about tolerance (Love your neighbor as yourself and all that).
    Since you don't know me, I don't know how you came up with that conclusion.

    You said "Northern schools" and then went on about how you were prevented from sharing your "culture" with your classmates because it was a "christian-based" culture. I believe you were prevented from sharing your religious beliefs with your classmates, and to me you apparantly equate proselytizing with "sharing your culture." That is what makes me think that your "culture" is one of intolerance (typically found within the "bible belt" as the earlier post put it). Consider the example of the Methodist family from Wisconsin who moved to (I believe it was) Alabama, and were called Devil Worshipers by the Baptist town. This is intolerance, and it's ingrained in their (the Baptist's) culture, but it certainly is NOT based on Christianity. Sharing this "culture" would certainly involve telling everyone else that they are damned to Hell if they don't change their evil ways and do as the majority, and your post sounded like that's what you were trying to do. If you believe that culture is "christ-based" then you may have a point, but I believe that culture is intolerance-based, and that your teachers were correct in preventing you from "sharing" it with your non-Christian classmates.

    --
    If all this should have a reason, we would be the last to know.
  310. corporate bullying and columbine by corporatewhore · · Score: 1
    well duh....this is why we have the problem with our kids you greedy fat-assed pricks (no-not you. I'm ranting...)

    we live in a world where bullying isn't just for schoolkids, and we all know it...

    vote for me someday...

    --

    you think it's easy, but you're wrong...

  311. IP carried to its illogical extreme by r_j_prahad · · Score: 3
    Lest we offend those holding intellectual property rights in the form of registered trademarks, we should replace the plaque at the base of the Statue of Liberty with one that more accurately portrays the current climate of liberty and freedom in the U.S.

    "The New (1)" by (2) (3)

    "(4) (5) your tired, your poor, Your (6) (7) yearning to (8) (9), The (10) (11) of your (12)ing (13). (14) these, the homeless, (15)-(16) to (5). (17) (18) (19) (20) beside the (21) (22)."

    1. Trimble Navigation Ltd. 2. Seattle Lab Inc. 3. Michael D'Aigle (indiv) 4. Give Music Group 5. Mancini Enterprises 6. Mark Mandzick (indiv) 7. Mass USA Inc. 8. Love and Beauty LLC 9. Andrew Suttner (indiv) 10. David Bascom (indiv) 11. Jay Thaxton (indiv) 12. Pepsi Cola Corp. 13. SD&M AG Corp. 14. Benjamin Slotznick (indiv) 15. Applied Materials Inc. 16. American Restaurant Corp. 17. Net Apparel LLC 18. Lift Apparel 19. Marble Sportswear Inc. 20. Lightsand Communications Inc. 21. Samuel Kevin Price (indiv) 22. Storefront Door Service, Inc.

  312. On DeCSS being a "Circumvention Device". by kanayo · · Score: 1

    And how does the paper represent a "circumvention device"? DeCSS fits that definition, for sure - download the software, and you can rip DVD's. (Disclaimer: I'm not at all agreeing that that should be illegal - I'm just saying that DeCSS is a real circumvention device.)

    I beg to differ from your statement that DeCSS is a circumvention device. Just like CSS is the specification for an encryption method, DeCSS is also, in my humble opinion, just a specification. It is a specification which, I agree, can be used to implement a device that can play encrypted DVDs, but it is not, in itself, a circumvention device. DeCSS is just something that tells one how to do something, and in my opinion is protected by Free Speech. The specification can be in any form, speech included, but does not do ANYTHING until you actually implement it.

    P.S.:
    But just watch. The next thing you know is that they will lobby to rid us of even our freedom of speech. We cannot afford to just sit and let that happen.

  313. More abolishment of free speech by Anemophilous+Coward · · Score: 1
    Threats were made against the authors, against the conference organizers, and against their respective employers.

    Hrm, threats against the conference organizers? Isn't that analogous to free speech suppression? Like suing the newspaper for printing someones editorial?

    Oh yeah, forgot, already happened against 2600. *sigh*

  314. Re:TAKE THE CASE!! -- AND LOSE! by berzerke · · Score: 1

    They obviously have a right to publish it. The question is, does the RIAA have a right to sue them, and on what grounds?

    Alas, yes. In the US, anyone could sue anyone over anything. Doesn't mean the case has merit, or that you'll win. Just means you can sue.

    Until awarding lawyer fees becomes common practice in the US, this abuse will continue. How many cases have started just to use discovery, then once the desired info is gained, the case is dropped?

  315. I'll say it again. by Obliqueness · · Score: 1
    This is a piece of U.S. law that adequately describes the actions of the antagonists:
    Title 18, Ch. 41, Section 875

    (d) Whoever, with intent to extort from any person, firm, association, or corporation, any money or other thing of value, transmits in interstate or foreign commerce any communication containing any threat to injure the property or reputation of the addressee or of another or the reputation of a deceased person or any threat to accuse the addressee or any other person of a crime, shall be fined under this title or imprisoned not more than two years, or both.

    ____________________________________________
    --
    The American Dream went to hell in a handbasket when someone decided that "The Customer" was King, and the customer beli
  316. Why did they ever start on this? by slashdot.org · · Score: 1

    I don't quite understand why they ever endeavoured on their path, if they are not willing to pull it through, when the expected happens. I mean, the whole 'challenge' stank from the beginning. The RIAA's behaviour should not come as a surprise.

    I don't know what legal ground the RIAA and companions have to threaten with a lawsuit, but it would have been extremely naive of these guys if they hadn't checked in advance what they could legally make public about their experience.

    That the RIAA was going to threaten regardless was really a given, so I don't understand why this is a reason to hold back. These guys should have been prepared.

    Of course on the other hand, the RIAA and friends literaly flooding everyone and their brother with legal threats is just a disgrace. I don't know the legal system well enough, but in my opinion, they had better have _very_ good legal grounds to do so, or otherwise I hope this behaviour will be punished. It can not be that orginizations will be able to control by shear abuse of power.

    Or, the abuse of legal threats (especially from very powerful organizations) should be a very serious crime by itself.

    Thank you.

  317. Done already by Spamalamadingdong · · Score: 1

    The full text of the paper was leaked, and was the subject of a Slashdot article a few days ago. Click on the "Cryptome" link.
    --
    spam spam spam spam spam spam
    No one expects the Spammish Repetition!

  318. more DMCA evil by nate1138 · · Score: 2

    This is the biggest crock of shit. Invite someone to break your crypto, then threaten to sue them when they do, and want to share the results. When will these idiots learn that security through obscurity and lawsuits doesn't work. Don't get me wrong, I do believe that copyright needs to be protected, and that content providers have EVERY right to compensation for their works, but the consumers have rights too. Like fair use, parody, etc. Making the reverse engineering of these infantile protection schemes (read DeCSS) illegal is wrong. Sorry about the rant, it couldn't be helped.

    --
    Where's my lobbyist? Right here.
  319. Withdraw DMCA by gbender · · Score: 5

    I just send an email to the RIAA asking them to contact their congressmen to have DMCA withdrawn. Hopefully this will take care of everything.

  320. Re:Wonder what those RIAA lawyers must be saying ? by PW2 · · Score: 1

    I wish I had a shotgun and that I were left loose in the RIAA building with a license to kill. Oh man, it would be a frag fest by the time I come out.

    There goes the theory that violent games don't influence people to commit violence.

  321. Re:It is also akin to schools in the north saying. by PW2 · · Score: 1

    Christianity is not a culture, it's a religion.

    I did not say it was a culture; I said my culture is based on Christianity; (the other cultures I mentioned also contain Christians) - when a culture is based/relies on a religion, you will see religious events and religious structures and religious people become an important part of that peoples' culture and heritage.


    What nonsense! As a Christian, this offends me!
    Many people try to label their bias and prejudice as "christianity" and defend it with the banner of religious freedom but it's all redneck asshole intolerance to me.


    Racial slurs aside (must be a part-time-attend-Easter-and-Christmas-only-Christi an), my arguement is about freedom for all.


    You may come from a culture of intolerance, but don't call that "christianity". True Christianity is all about tolerance (Love your neighbor as yourself and all that).

    Since you don't know me, I don't know how you came up with that conclusion.


    Next time you want to force everyone in your community to pray to your god, think how you'd feel if someone else tried to make you pray to their god.

    This was not one of my goals (the forcing part) - I don't know where you got that from; I was discussing freedom for all;


    Finally, this (the RIAA legal threats) is nothing like the example you site. It's more like if, say, you wished to teach a class in comparitive religion and the Scientologists sued you for using their copyrighted materials. For that reason alone your post is not at all "insightful" (more like "inciteful") and should have been modded down as Flamebait.

    I'll agree that I'm not on topic when viewing my comments against the main story, but I'll argue that I am on-topic when viewing the parent comment.

  322. Re:It is also akin to schools in the north saying. by PW2 · · Score: 1

    Too bad I didn't attend your school (I wish I could have); not every public school is as open as your's was.

  323. Re:It is also akin to schools in the north saying. by PW2 · · Score: 1

    You have (some good)/(some great) points; I just don't want my argument/opinion associated with some of those bad stereotypes you mentioned. Just because I'm advocating/preserving my freedom doesn't mean that I am trying to belittle someone else.

  324. Re:It is also akin to schools in the north saying. by PW2 · · Score: 1

    Nice story about some (or even many) Baptists in Alabama, but I fail to see how that specific story can be used to prove that I'm intolerant. Your intolerance to see me as a tolerant person with an opinion is starting to turn this discussion into a childish, albeit fun disagreement.

    (I'm even tolerant of your use of the word 'cracker')

    I suggest that you save some money and take a trip across Europe and see how Christianity is very much a part of the history and culture there. What more can I say?

  325. ummm by the_2nd_coming · · Score: 2

    OK this is just an example of bullying by the RIAA, Fair Use, and even the original copyright Laws state that educational use is permitted, and therefor exempt from any action taken by a copyright holder.

    I say they should stand up and hold their ground.
    If everyone just appeases groups like the RIAA out of fear of lawsuits then we have surrendered our rights.

    what makes it worse is that we didn't even get threatened with our lives.

    --



    I am the Alpha and the Omega-3
  326. Is reading the paper danagerous by actiondan · · Score: 4

    If I read the paper and have the knowledge it contains, does that make ME an illegal circumvention device?

  327. Well done RiAA by actiondan · · Score: 5

    What a great way to publicise the findings of this paper. Without the threat of legal action, its presentation would probably have been largely unnoticed outside its field.

    Now that free speech is involved however...

    When will large organisations learn that trying to suppress information just leads to its wider distribution?

  328. Absurd! by unobtrusive_spork · · Score: 1
    The ire I am feeling right now towards the RIAA cannot truly be represented here.

    The first question I have is, besides being run by big-ass corporations with large sums of cash, how does the RIAA have any real power? They are not a government, correct? So where do these guys get off acting like this?

    People comment frequently about the coporation of America, and about globalization and how it should not be. Surely there is more we can do other than protest/riot outside of globalization meetings, and rant and rave about how we're not gonna buy RIAA sanctioned albums/CD's, because we keep buying them, and we keep buying goods from the companies supporting globalization.

    The DMCA is a sad affair, and it makes me sick to see that the good professor has given into the legal bullying of the RIAA. Perhaps it was mandated by the university to him, I don't know.

    There must be a better way to make ourselves truly heard.

    --
    I'm the serious spork.