[IP] Sony DRM -- from bad to worse]
-------- Original Message --------
Subject: Sony DRM -- from bad to worse
Date: Tue, 15 Nov 2005 15:49:11 -0500
From: Steven M. Bellovin <smb@xxxxxxxxxxxxxxx>
To: dave@xxxxxxxxxx
Sony has compounded their arrogance -- silently installing abuseable
software on your machine -- with apparent incompetence, at least on the
part of their vendor. According to Ed Felten's blog
( http://www.freedom-to-tinker.com/ ), the removal tool that
First4Internet supplies is an ActiveX control marked "safe for
scripting". That means it can be invoked by any web page -- and it can
be used to install new software on your machine....
The problem was first found by a Finnish researcher named Muzzy; see
http://hack.fi/~muzzy/sony-drm/ for details.
--Steven M. Bellovin, http://www.cs.columbia.edu/~smb
-------------------------------------
You are subscribed as roessler@xxxxxxxxxxxxxxxxxx
To manage your subscription, go to
http://v2.listbox.com/member/?listname=ip
Archives at: http://www.interesting-people.org/archives/interesting-people/