New User? Need help? Click here to register for free! Registering removes the advertisements.

Computer Cops
image image image image image image image image
Donations
If you found this site helpful, please donate to help keep it online
Don't want to use PayPal? Try our physical address
image
Prime Choice
· Head Lines
· Advisories (All)
· Dnld of the Week!
· CCSP News Ltrs
· Find a Cure!

· Ian T's (AR 23)
· Marcia's (CO8)
· Bill G's (CO11)
· Paul's (AR 5)
· Robin's (AR 2)

· Ian T's Archive
· Marcia's Archive
· Bill G's Archive
· Paul's Archive
· Robin's Archive
image
Security Central
· Home
· Wireless
· Bookmarks
· CLSID
· Columbia
· Community
· Downloads
· Encyclopedia
· Feedback (send)
· Forums
· Gallery
· Giveaways
· HijackThis
· Journal
· Members List
· My Downloads
· PremChat
· Premium
· Private Messages
· Proxomitron
· Quizz
· RegChat
· Reviews
· Google Search
· Sections
· Software
· Statistics
· Stories Archive
· Submit News
· Surveys
· Top
· Topics
· Web Links
· Your Account
image
CCSP Toolkit
· Email Virus Scan
· UDP Port Scanner
· TCP Port Scanner
· Trojan TCP Scan
· Reveal Your IP
· Algorithms
· Whois
· nmap port scanner
· IPs Banned [?]
image
Survey
How much can you give to keep Computer Cops online?

$10 up to $25 per year?
$25 up to $50 per year?
$10 up to $25 per month?
$25 up to $50 per month?
More than $50 per year?
More than $50 per month?
One time only?
Other (please comment)



Results
Polls

Votes: 981
Comments: 19
image
Translate
English German French
Italian Portuguese Spanish
Chinese Greek Russian
image
image crkatk: DRM: Hacker Drills Hole in iTunes Security Blanket image
Crack Attack
Hacker Drills Hole in iTunes Security Blanket
By John P. Mello Jr.
www.TechNewsWorld.com,
Part of the ECT News Network
November 25, 2003

If enthusiasm for the pay-per-tune business were dulled by hackers, no tears would be shed in some corners of the Internet. We don't think that digital rights management is a good deal for consumers, Greg Bildson, COO of the online file-sharing service LimeWire, told TechNewsWorld. Paying 99 cents for digitally restricted songs robs the consumer of usability. DRM will always be a target for hackers.

Apple Computer lured millions of PC users into its online music store when it released a version of its popular iTunes software for Windows , but it also attracted a less savory element -- hackers.

Just 10 days after the release of WinTunes, a crafty codesman at Trinity College began distributing MyTunes, a program that turns the Apple software into a peer-to-peer pirate ship a la Kazaa, Grokster, Morpheus and BearShare.

And now a hacker of some repute -- Jon Lech DVD Jon Johansen, who at 15 invented DeCSS, a program that defeats the encryption scheme for DVD movies -- has unleashed QTFairUse, an application that can extract the contents of digitally-protected files, such as the DRM AAC files sold at the iTunes store, as they're played through Apple's multimedia player QuickTime .

Intercept and Strip

Andrew Orlowski, writing for The Register, explained that Johansen has written a simple command-line utility that installs a type of system file -- called a DLL -- that can dump the output of a QuickTime stream directly into a separate file without bringing along copyright protection.
The idea is that the application intercepts decrypted AAC data from QuickTime after authorization has taken place and outputs raw ACC data stripped of digital rights management (DRM) protections.

These output files, however, are unplayable in their raw form in most players, a bulletin at MacRumors.com said. The reason for this is that these files represents the true 'raw' AAC data that has been passed through to QuickTime to play. All header information has been removed.

To create playable files from the raw data, a user would have to package the files to add the appropriate MPEG headers. But the stripping application does work as suggested -- removing DRM from protected AAC files, although is not of any practical use in its current form, said the bulletin on MacRumors. The next step for hackers, then, would likely be to develop an application to automate the creation of the appropriate headers so the extracted files could be played anywhere.

Not a Damper?

Apple's offices are closed for the week of Thanksgiving and no one from the company was available for comment on QTFairUse.

Johansen's latest escapade won't put a damper on the online pay-per-tune business, asserted Tim Deal, a senior analyst with Technology Business Research, a market research firm in Hampton, New Hampshire. These types of incidents are isolated, he told TechNewsWorld. With the ease of download and the low cost for these music distribution sites like iTunes, very few people are going to exploit these weaknesses before Apple is able to respond and make their code more secure.
Although activity from hackers like Johansen might appear simply to be a nuisance, Deal asserted that Apple might benefit from the mischief. These hackers keep Apple honest by making its developers write more effective code, more effective security for their programs.

No Tears Shed

If enthusiasm for the pay-per-tune business were dulled by hackers, no tears would be shed in some corners of the Internet.

We don't think that digital rights management is a good deal for consumers, Greg Bildson, COO of the online file-sharing service LimeWire, told TechNewsWorld. Paying 99 cents for digitally restricted songs robs the consumer of usability. DRM will always be a target for hackers.
We support open systems that don't hide anything from the user and don't place artificial restrictions on what an Internet user can do, he added.

Arms Race Continues

Those kinds of restrictions can only lead to an arms race between hackers and the watch dogs of digital rights, argued Wayne Rosso, CEO of Madrid, Spain-based Optisoft, developers of Blubster, Piolet and MP2P Technology.

This incident clearly highlights the fact that any technology can be hacked, he told TechNewsWorld. I think that the record companies know this, but figure that all they want to do is put speed bumps in the way of the general public. Once again, he said, this leads to an arms race.
I'd just like to know what it would take for these guys to finally see the light and agree to a licensing scheme that would give everybody what they wanted -- the user experience that still feels 'free,' a reasonable sum for artists and content owners, and untethered files, he said.


Source: ECommerceNetwork
Posted on Wednesday, 26 November 2003 @ 04:55:00 EST by phoenix22
image

 
Login
Nickname

Password

· New User? ·
Click here to create a registered account.
image
Related Links
· TrackBack (0)
· Linux Artist
· Microsoft
· HotScripts
· Apple
· W3 Consortium
· CSS Standard
· More about Crack Attack
· News by phoenix22


Most read story about Crack Attack:
Beware Attacker from IP 200.55.7.235 and Whole 200.x.x.x Block

image
Article Rating
Average Score: 5
Votes: 1


Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


image
Options

Printer Friendly Page  Printer Friendly Page

image
"Login" | Login/Create an Account | 2 comments | _SEARCHDIS
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register

Re: Hacker Drills Hole in iTunes Security Blanket (Score: 1)
by ([email protected])  on Wednesday, 26 November 2003 @ 20:07:38 EST
(User Info | Send a Message)
Something that seems to have been forgotten is the no small matter of sound degredation. Copy protection has a terrible effect on sound quality.

I may be in a small minority here, but l Would prefer to pay for the music l want in the format l want and, in turn, be rewarded with true high fidelity recordings. The heavier the copy protection, the greater the sound degredation.

There is simply no comparison between well engineered high fidelity recordings and lossy, compressed copy protected crap that is passed off as music, regardless of it's genre.

In the long term, people will become so used to what passes for quality recordings they will have forgotten what good quality really sounds like.

Maybe that's what the recording industry has in mind for the long term.

It doesn't take much for a starving man to convince himself that the stale bread he is eating is, in fact a juicy steak.

If the Freeloaders keep on doing what they do and the recording industry keeps on adding layer upon layer of copy protection, the Muzak heard in shopping malls and countless other places will eventually become appealing, maybe even desirable. Is that what we really want?