Welcome | Sign In
ECommerceTimes.com
Security

New Hack Attack Widens Cracks in HD DVD

Print Version
E-Mail Article
Reprints
New Hack Attack Widens Cracks in HD DVD

A hacker has revealed the location of the "processing key" vital to the high-definition disc antipiracy system. This could give computer cryptography buffs a relatively easy way to find the so-called "volume keys" needed to circumvent the highly-touted -- and expensive to develop -- Advanced Access Content System designed to prevent disc piracy.


eMarketer Whitepaper: Optimizing the E-Commerce Experience
From the Web to the Contact Center, are you prepared to proactively engage and keep your savvy customers? Read how e-commerce leaders are optimizing their sites with ratings, reviews, live help, Web analytics, mobile and more.

Relentless attempts by those determined to undermine the copy-protection technology used on HD DVD movies continue to yield successes.

The newest discovery, revealed on the Doom9 Forum by someone with the screen name "Arnezami," involves the location of the "processing key" vital to the high-definition disc antipiracy system. This could give computer cryptography buffs a relatively easy way to find the so-called "volume keys" needed to make movie copies.

To do that, they can use a program called HDDVDBackup developed by another Doom9 Forum member -- named "Muslix64" -- and revealed in late December. Even without Arnezami's discovery, users have been finding, and publicizing, the volume keys for about a month, resulting in the copying of several high-def films including "King Kong," "Mission: Impossible" and "Jarhead," according to published reports.

A Way Around AACS

Arnezami's work should allow people to more easily find the title keys, circumventing, at least temporarily, the highly-touted -- and expensive to develop -- Advanced Access Content System (AACS) designed to prevent disc piracy.

The program that he created slows the playback of an HD DVD disc and allows him to search for changes in critical locations in memory, according to Arnezami. Both his work and that of Muslix64 involved the software-based WinDVD players that run on personal computers.

The AACS Licensing Authority has not issued a response to the latest hack, but it could issue what it calls "revocation keys" that would disable players until they obtained new keys, possibly over secure Internet connections.

Harder, but Not Impossible

"It's a sort-of multi-step process to hack that technology," Bill Rosenblatt, founder of Giant Steps Media Technology Strategies, told TechNewsWorld. "Unlike with the DVD encryption where, once you discovered the set of keys you were done ... the AACS scheme is designed to be stronger. It's not as simple to break."

However, the need to allow people to play high-definition movies on their computers is proving to be the AACS' weak knee, Rosenblatt suggested.

"The HD DVD encryption is stronger, but if you implement it on software in a PC ... it's not a very effective way to hide encryption keys because there always is going to be somewhere in memory that somehow, if you're a clever enough hacker, you're going to be able to figure out where they are," he added.

Arnezami's efforts are just another step in the typical hacker progression, agreed ABI Research Director Michael Wolf.

"It is somewhat significant. It's more serious than the previous one [because] it shows a method of acquiring these things," he told TechNewsWorld. "It's a knowledge-base these guys build on. This method will be used by another guy and built upon. They keep getting progressively more sophisticated."

No Big Deal to Average Joe

While all this is very exciting to the hackers, both Wolf and Rosenblatt said high-def movie copies are not about to become commonplace. "The impact of these hacks is limited," Rosenblatt said, adding "these hacks still require some degree of technical savvy" to implement.

"It means very little to John Q. Public," asserted Wolf. He doubted the world will see pirated copies of high-def movies shared over peer-to-peer networks -- as happens by the millions with music files -- anytime soon. Nevertheless, Wolf is sure the entertainment industry will not give up the fight for effective digital rights management (DRM) systems for high-def films.

"An HD disc is almost a perfect digital master," he observed. "If you can copy that, you are allowing pirates to have an almost perfect digital master, so I think it's worth the investment. But there is no perfect copy protection. Ultimately this stuff gets cracked."


Print Version E-Mail Article Reprints More by Fred J. Aun


Related News Alerts

Hacker Activate Alert | Search Archives

More by Fred J. Aun

Intel Feels Fury of OLPC Scorned
January 09, 2008
"Over the entire six months it was a member of the association, Intel contributed nothing of value to OLPC," said OLPC. "Intel never contributed in any way to our engineering efforts and failed to provide even a single line of code to the XO software efforts even though Intel marketed its products as being able to run the XO software."
Yahoo Pumps Up Mobile Effort in Bid to Get a Jump on Google
January 08, 2008
"Yahoo's ultimate goal is to bring the best possible Internet experience to the billions of mobile consumers around the globe," said Marco Boerries, executive vice president of Yahoo's Connected Life division. "We believe that to succeed on such a scale, the best strategy is to open up our mobile platform in order to tap the innovation and talent of the world's developers and publishers."
Wikia's Search Philosophy: It Takes a Village to Challenge a Giant
January 07, 2008
"What you see here is our first alpha release," says a greeting on the Wikia Search site. "We are aware that the quality of the search results is low. Of course, before we start, we have no user feedback data. So the results are pretty bad. But we expect them to improve rapidly in coming weeks, so please bookmark the site and return often."
Don't miss a story -- sign up for our FREE e-mail newsletters and view the latest headlines at a glance.
Tech News Flash [ View Sample ]
E-Commerce Minute [ View Sample ]
ECT News Network Weekly Newsletter [ View Sample ]
Shortcuts
ECT News Network Information
Reader Services
Corporate
ECT News Network