Breaking News

Synology Unveils DiskStation DS225 Plus New PS5 system update beta previews DualSense wireless controller pairing across multiple devices EnGenius Multi-Gigabit Switch Delivers 2.5G Performance with 90W PoE Viltrox’s AF 90mm F3.5 Lens for the DJI Inspire 3 EnGenius Announces Affordable ECW520 Access Point

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Sony Recalls 'Rootkit' CDs

Sony Recalls 'Rootkit' CDs

Optical Storage Nov 16,2005 0

Just a few days after the decision of the Japanese giant to suspend the production of its CDs that use a controversial copy-protection technology, Sony now says it will pull the albums off store shelves entirely. The record label is also offering to exchange the CDs for non-DRM versions. Anyone who has purchased one of the Sony's 'protected' CDs can exchange the purchase, Sony said. The company added that it would release details of its CD exchange program "shortly."

Sony reported that over the past eight months it shipped more than 4.7 million CDs with the so-called XCP copy protection. More than 2.1 million of those discs have been sold.

"We share the concerns of consumers regarding discs with XCP content-protected software, and, for this reason, we are instituting a consumer exchange program and removing all unsold CDs with this software from retail outlets," Sony said in a statement. "We deeply regret any inconvenience this may cause our customers."

Sony's copy-protection software was created by British company First 4 Internet. The software is installed on a computer's hard drive when certain Sony compact discs are put in the CD player and the listener accepts a license agreement.

The software then hides itself using a controversial programming tool called a "rootkit," which takes over high-level access to some computing functions. The rootkit blocks all but the most technically savvy users from being able to detect its presence.

Sony has worked with antivirus companies to help their products pierce this veil of invisibility, and has posted a patch on its Web site that will uncloak the hidden software. It also said it would temporarily stop manufacturing discs using the First 4 Internet tools.

However, two Princeton researchers have discovered a security flaw in the software provided by Sony to uninstall its controversial DRM.

According to the report, when a user fills out the Web-based form to request the download, an ActiveX file called CodeSupport is loaded onto the computer. However, after the user leaves Sony's site, the file is still marked as "safe" for scripting.

The result of this error on First 4 Internet and Sony's part is potentially severe. Any site could call the CodeSupport file and ask it to perform functions, such as downloading and installing malicious code. Because the software does not make sure the code it is running actually comes from Sony, it opens the door for anyone to take advantage of an affected system.

Sony later replaced that Web-based uninstall tool with one that downloads a program with its own instructions, as opposed to one that accepts instructions from Web sites. The researchers said the new program appeared to be safe.

Tags: DRMSony
Previous Post
Microsoft Enters Supercomputer Market
Next Post
NTI Offers Blu-ray Burning SDK for Licensing

Related Posts

  • Sony Introduces the RX1R III

  • Sony launches a high-resolution shotgun microphone with superior sound quality and compact design.

  • Sony introduces the FX2 compact camera

  • Celebrate Days of Play 2025 starting on May 28

  • Sony introduces WH-1000XM6

  • Sony Introduces Xperia 1 VII

  • Sony announces DualSense wireless controller for Death Stranding 2

  • Sony announces that PS5 price will rise in Europe, Australia and New Zealand

Latest News

Synology Unveils DiskStation DS225 Plus
Enterprise & IT

Synology Unveils DiskStation DS225 Plus

New PS5 system update beta previews DualSense wireless controller pairing across multiple devices
Gaming

New PS5 system update beta previews DualSense wireless controller pairing across multiple devices

EnGenius Multi-Gigabit Switch Delivers 2.5G Performance with 90W PoE
Enterprise & IT

EnGenius Multi-Gigabit Switch Delivers 2.5G Performance with 90W PoE

Viltrox’s AF 90mm F3.5 Lens for the DJI Inspire 3
Drones

Viltrox’s AF 90mm F3.5 Lens for the DJI Inspire 3

EnGenius Announces Affordable ECW520 Access Point
Enterprise & IT

EnGenius Announces Affordable ECW520 Access Point

Popular Reviews

be quiet! Light Loop 360mm

be quiet! Light Loop 360mm

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

Noctua NH-D15 G2

Noctua NH-D15 G2

Soundpeats Pop Clip

Soundpeats Pop Clip

be quiet! Light Base 600 LX

be quiet! Light Base 600 LX

be quiet! Pure Base 501

be quiet! Pure Base 501

Terramaster F8-SSD

Terramaster F8-SSD

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed