Breaking News

Come Visit Geometric Future at Computex 2025 for Exciting New Cases and PC Accessories Gaming Beyond Limits, AI Beyond Imagination ASRock at Computex 2025 Acer releases many new products ahead of Computex 2025 DeepCool Unveils New Product Lineup at COMPUTEX 2025 KIOXIA Leads with Its Industry-Defining Breakthroughs and Technologies at COMPUTEX 2025

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Software Writers Spot Open Source in Sony BMG CDs

Software Writers Spot Open Source in Sony BMG CDs

Optical Storage Nov 18,2005 0

Controversial copy-protection software used by music publisher Sony BMG on music CDs appears to have tapped an open source project, raising questions about copyrights, software experts said on Friday. The XCP program, developed by British software firm First4Internet and used by Sony BMG to restrict copying and sharing of music CDs, is already highly controversial because it acts like virus software and hides deep inside a computer where it leaves the backdoor open for malicious hackers.

Sony BMG earlier this week said it would recall some 4.7 million CDs with the software, after the discovery of the first computer viruses last week that took advantage of the weakness.

The XCP program will have installed itself on a Windows-operated personal computer when consumers want to play 49 title CDs from Sony BMG. The programme forces consumers to use a music player that comes with the program.

This music player contains components from an open source project, the popular LAME MP3 player.

"Multiple software components on the CD have references to the LAME open source MP3 code," Finnish software developer Matti Nikki said in an e-mail.

After unraveling the code, others found similar evidence.

"We can confirm that at least 5 functions in the XCP software are identical to functions in LAME," said Thomas Dullien at security software firm Saber Security in Bochum, Germany, which specializes in the analysis of complex software.

Open source software, if used, needs to be identified as such, so that it can be freely shared with others. Developers on Slashdot.org and other Internet bulletin boards could not find an open source reference in the copy-protection software.

If open source software is tightly integrated into a single executable program, the whole application has to become open source software, even open source software such as LAME whose MP3 encoder is licensed under the more relaxed Lesser General Public License (LGPL), a lawyer said.

"That's the flipside of open source: If you don't respect the open source rules, the old regime of copy protection comes back in full force," said attorney and Internet specialist Christiaan Alberdingk Thijm at law firm SOLV in the Netherlands.

There was LAME and other LGPL code in the program, and significant amounts were tightly integrated into the executable program, Saber Security said.

"We can confirm the existence of significant amounts of code from FAAC (which is LGPL) in the executable ... These functions are part of ECDPlayerControl.ocx, thus directly integrated into the executable," Dullien said in an email.

First4Internet, which sold the XCP software program used by Sony BMG on its CDs, declined to comment on the news-story.

Sony BMG, which also declined to comment, has positioned itself as a defender of artists' rights.

It re-emphasized last week that copy-protection software is "an important tool to protect our intellectual property rights and those of our artists."

Responding to public outcry over the unsecure software, the music publishing venture of Japanese electronics conglomerate Sony and Germany's Bertelsmann AG said last week it would temporarily suspend the manufacture of music CDs containing XCP technology.

Microsoft's anti-virus team said earlier on Tuesday it would add a detection and removal mechanism to rid a PC of the Sony DRM copy-protection software, because it jeopardized the security of Windows computers.

Sony BMG last week was targeted in a class action lawsuit complaining it had not disclosed the true nature of its copy-protection software.

Damage Runs Deep For Sony-BMG

Trying to gauge the damage caused by Sony-BMG rootkit DRM could take years to comprehend. The gaping wound caused by Sony-BMG exists well beyond infected computers, security problems, and a tarnished reputation. The record label entire philosophy on P2P networking, Internet piracy and DRM has been effectively destroyed.

The last thing record labels want is a tremendous amount of attention drawn to the implementation of DRM. As if Sony-BMG actions weren bad enough, drawing negative publicity to the DRM issue on only compounded the situation.

Now people are very aware of the Sony-BMG fiasco and the implementation of DRM. What was once largely invisible to the average customer has been shot right into the spotlight. The term 'DRM' is now associated with malignancies such as virus, malicious software, and Trojan.

This situation has already delayed the implementation of DRM on CDs. Sony-BMG has ceased the manufacture of CDs with XCP software, and does not expect to reinstate their DRM policy until sometime next year. Other record labels are also coming under increased scrutiny for their DRM products, forcing EMI to state, "we don't use rootkits." With so much public scorn now directed towards DRM, record labels are facing the very real possibility that DRM in its current incarnation can no longer manage to exist.

Sony-BMG has managed to accomplish in 16 days what bloggers, the Electronic Frontier Foundation, writers, journalists, and niche sites have been working on for years. Sony-BMG has destroyed the music and movie industry arguments against P2P, and brought mainstream attention and public distaste to the DRM debate.

Tags: sony BMGDRM
Previous Post
Lite-On IT Concerned About Sony-NEC Joint Venture
Next Post
Panasonic Develops First Chipset for Multi-format Blu-Ray Drives

Related Posts

  • W3C Greenlights DRM for the Web

  • DRM Could Come To JPEG Format

  • DRM Keeps Music Sales Down: study

  • Free Software Foundation Urges W3C to Reject DRM in HTML Video

  • Ubisoft To Fix Security Hole Exposed By Games' Plug-in

  • EU Decision on Sony and Universal EMI Take-over Expected In August

  • Studios And Storage Firms Push DRM For Cloud Content

  • Google, Microsoft And Netflix Propose HTML Video Copy Protection

Latest News

Come Visit Geometric Future at Computex 2025 for Exciting New Cases and PC Accessories
Enterprise & IT

Come Visit Geometric Future at Computex 2025 for Exciting New Cases and PC Accessories

Gaming Beyond Limits, AI Beyond Imagination ASRock at Computex 2025
Enterprise & IT

Gaming Beyond Limits, AI Beyond Imagination ASRock at Computex 2025

Acer releases many new products ahead of Computex 2025
Enterprise & IT

Acer releases many new products ahead of Computex 2025

DeepCool Unveils New Product Lineup at COMPUTEX 2025
Cooling Systems

DeepCool Unveils New Product Lineup at COMPUTEX 2025

KIOXIA Leads with Its Industry-Defining Breakthroughs and Technologies at COMPUTEX 2025
Enterprise & IT

KIOXIA Leads with Its Industry-Defining Breakthroughs and Technologies at COMPUTEX 2025

Popular Reviews

be quiet! Light Loop 360mm

be quiet! Light Loop 360mm

be quiet! Dark Rock 5

be quiet! Dark Rock 5

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

G.skill Trident Z5 Neo RGB DDR5-6000 64GB CL30

G.skill Trident Z5 Neo RGB DDR5-6000 64GB CL30

Arctic Liquid Freezer III 420 - 360

Arctic Liquid Freezer III 420 - 360

Crucial Pro OC 32GB DDR5-6000 CL36 White

Crucial Pro OC 32GB DDR5-6000 CL36 White

Crucial T705 2TB NVME White

Crucial T705 2TB NVME White

be quiet! Light Base 600 LX

be quiet! Light Base 600 LX

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed