Doom9 Researchers Break BD+
An anonymous reader writes "BD+, the Blu-ray copy protection system that was supposed to last 10 years, has now been solidly broken by a group of doom9 researchers. Earlier, BD+ had been broken by the commercial company SlySoft." Someone from SlySoft posts a hint early in the thread, but then backs off for fear of getting fired. The break is announced on page 15.
A hearty congratulations to the brilliant programmers of Doom9, including Oopho2ei - who claims not to be a "professional programmer".
Help stamp out iliturcy.
Unfortunately this will probably just mean that a ton of consumers will be SOL when they implement new encryption schemes on BluRay that aren't supported by some existing players.
The common man proves that if man can make it, man can break it.
This is a lesson companies will NEVER LEARN when it comes to DRM.
Still waiting on Serviscope_minor to wake up to fucking reality and realize that Jessica Price isn't going to fuck him.
The content must contain sufficient information for the content to be decoded. Anything one software can do, another software can do (see Knuth, et seq). Therefore if there's an available software that can decode the encrypted content it must be possible for open software to decode the encrypted content. Removing the encryption using open software eliminates the protections against copying provided by the closed software and the game is over.
Thus DRM is a fool's errand. It always has been.
The illusion of protectability is however easy to sell for vast sums of cash to content owners who desperately want it to be possible.
Help stamp out iliturcy.
I don't really care if I can copy my BluRay disks or not (I'm too lazy to back up my movies - if I break a disk and I like the film, I get a new one).
But I would love to be able to play my legally bought films under Linux without having to reboot (or having to go to jail for that matter). Maybe one day. :)
Hoping some expert can describe how this all works to the masses out here. From a quick glance through the forum, this is what I think is happening...
BD+ movies are released with corrupted data
A conversion table is required to fix the corruption
The conversion table is built using code on the BD+ disk that runs on the BDVM.
The bulk of the work on the forum thread seems to be an effort to reverse engineer the opcodes and libraries (called TRAPs?) available in the BDVM, and to reimplement the VM.
I'm not a security or crypt expert, but I can't imagine how anyone can expect this kind of security to remain secure for 10 years.
I think a quote from a famous internet wordsmith is in order here:
gadgetophile.com
I don't really care if I can copy my BluRay disks or not (I'm too lazy to back up my movies - if I break a disk and I like the film, I get a new one).
Clearly you have no children living with you.
When information is power, privacy is freedom.
no one I know seems to fall into your generalization of people not buying Blu-Ray discs or players because of DRM.
We shall see. Most people don't know really why they're not trusting of innovation in content technology. The advantages of open content though are immediately obvious and so when the content owners open up the content it starts flying out the door.
All in all, because Blu-Ray is 10x the bandwidth of any online "HD" movie source (and I use that term loosely for online offerings) and because online DRM is so much worse, I don't see it going away. Instead I see it likely to win over DVD-- DRM or not-- but not until manufacturing costs ramp down due to better technologies and economies of scale.
"Never underestimate the bandwidth of a station wagon full of backup tapes." Technology has passed this one by, but the truth of it remains. Content providers would do well to sell the right to the content separately, and let people figure out how to get the content on their own. If they must, they can offer content at kiosks you take your external hard drive to. The tree huggers should like the idea of transport-media free content distribution at the very least - that's less mylar disc in the landfill.
Consider this. Is a DRM-free H.264/AAC mp4 file more convenient, or is a DRM-laden disc that you can play in your car, computer, PS3, portable system, or friend's house by carrying around a 16 gram disc?
For the car and portable system a downrezzed movie that fits on an 8GB SDHC card are sufficent, and that form factor is considerably more convenient than a disc that doesn't even fit in your pocket - and is too fragile to carry that way anyway. People do this on their EEE all the time. A 360GB external 2.5" USB drive is bigger and heavier but smaller than a BD with case so it still fits in your pocket, is less susceptible to scratching, fits multiple movies on one disk, and has many other advantages.
Open content means you can make backups. You can convert to your target platform. You can move your content to where you want it and any technology that can play it will continue to play it for all time. DRM content does not have any of these advantages. Most importantly that last one.
Help stamp out iliturcy.
"can even execute arbitrary code on the machine"
Oh excellent. I think I'll skip BD, thank you.
Samsung has a $200 player which comes with 4 free movies. Given that the movies retail for $35 a pop, that is $140 in free movies with a $200 player. The rumors is said player will go for $150 on Black Friday. A player for $150 with $140 in free movies is a pretty good deal.
The biggest problem with BluRay is retail stores charging $35 for movies. DVDs are often selling for $10 or less. Knock BluRay prices down to $25 a movie or less and I'll bite.
Gotta be careful with that math. The movie is WORTH $10-$15 (based on DVD pricing and people's apparent willing to pay that), so it's $60 worth of movies claiming to be a $140 dollar value, just like the blue-screen commercials where they give away the '$100 value' worth of the stuff they couldn't sell in the last blue-screen ad and really just don't want cluttering up their warehouse (here, you throw this away!).
Millions bought our "shiny penny" for $100 and millions more bought our "crisp 10 spot" for $150, but if you act RIGHT NOW, you (yes, you) can have BOTH for the low low price of $99.95! You know It the deal of a lifetime BECAUSE I'M SHOUTING!
I am proud of having been a contributor of the Doom9 forums. Go and pay you tribute: they demonstrated to the industry once again that DRM is a sick idea and will NEVER work.
P.S. Now I can go and buy a BD recorder. Just as I did with the first DVD Writer after deCSS.
And here's the hilarious part: as soon as they (the movie publishing industry) do start trying to be clever with BD+ attacks trying to find the Doom9 VM and variants thereof, they'll screw up discs so they're unplayable on numerous legitimate players. Pretty much the only thing that hasn't sunk BD+ so far is the fact that there are very few different models of player in circulation. As it is, it's still fallen over before.
You are not alone. This is not normal. None of this is normal.