Sony Rootkit Phones Home
strider44 writes "Mark from Sysinternals has digged a little deeper into the Sony DRM and discovered it Phones Home with an ID for the CD being listened to. XCP Support claims that "The player has a standard rotating banner that connects the user to additional content (e.g. provides a link to the artist web site). The player simply looks online to see if another banner is available for rotation. The communication is one-way in that a banner is simply retrieved from the server if available. No information is ever fed back or collected about the consumer or their activities." Also on this topic, Matt Nikki in the comments section discovered that the DRM can be bypassed simply by renaming your favourite ripping program with "$sys$" at the start of the filename and ripping the CD using this file, which is now undetectable even by the Sony DRM. You can use the Sony rootkit itself to bypass their own DRM!" Update: 11/07 14:21 GMT by H : Attentive reader Matteo G.P. Flora also notes that an Italian lawyer has filed suit against Sony on behalf of the Italian equivalent of the EFF. Translation availabe through the hive mind. Update: 11/07 15:18 GMT by H : It does appear that in fact Sony does see through the $sys$ - see Muzzy's comment for more details.
Somewhere in the distance, I hear Nelson shouting, "Ha ha!"
I smell a DMCA violation on the /. front page!
Cue the Sony lawyers in 4..3..2....
Depends on whether it still has minutes left on its plan.
DRM software bypasses... itself?! Wait...
I have to hand it to Sony marketing execs. Ordinarily they would be hard-pressed to sell even a few dozen copies of that CD. Throw in some DRM and now you have millions of geeks buying the CD trying to break it (or verify somebody else's claims of having broken it). That stuff is so good you can't even torrent it.
here 'ya go ... which raises an interesting question - what if ET tries to play a Sony CD - what is the timeout option for the "phone home" packet if the ping times are overly long?
Hulk SMASH Celiac Disease
>>You can use the Sony rootkit itself to bypass their own DRM!"
... uh ... Sony.
Isn't that a DMCA violation ? Sony had better do something about this by suing
Apparently their new business model is something like this : (Cue Underpant Gnomes)
1. Release rootkit into the wild, including ability for it to bypass your own copy protection.
2. ?
3. Sue self into oblivion. Wait, shouldn't item 3 be "Profit" ?
And anything else the botnet operator who uses Sony's holes to own your machine wants to know.
-jcr
The only title of honor that a tyrant can grant is "Enemy of the State."
It's a perfectly cromulent word.
Yeah, let's demolish the entire system of law while we're at it -- I'm sure the market will provide something better.
// This is not a sig.
you insensitive clod!
Is proper English that hard?
You must be new hear.
pedent
Either that, or "buttle" is what the guy in the tuxedo is doing when he brings a tray of cocktails.
John
J.
You're only jealous cos the little penguins are talking to me.
to see the kit added to major antivirus detection list.
Trojan detected: WIN32.DrmSony.SPY@mm - Threat: medium; class: Spyware, Rootkit, OS-damage.
Known to cause CD drive malfunction, secretly uploads third party data, prevents certain userspace programs from running, hides from the OS, installs itself without user consent.
OS infection prevented.
Warning: E:\ Volume is Read-Only. The virus cannot be removed (cause: Data written to non-erasable CD.)
Recommendation: Back up all non-infected data from the medium by re-burning it to a new blank CD, destroy infected disk.
Anagram("United States of America") == "Dine out, taste a Mac, fries"
Igor Presnyakov stole my hat
No, this is some horrible mistake! I think the man you really want is Harry T uttle
the preceding comment is my own and in no way reflects the opinion of the Joint Chiefs of Staff
Don't they need rye bread to breed the ergot that fuels the management / marketing team?
the preceding comment is my own and in no way reflects the opinion of the Joint Chiefs of Staff
I emailed this post to your english teacher. She's dead now. Are you happy?
Finding other idiots on