Skip to main content

Sony Rootkit Fiasco Prompts Federal Warning

At the RSA Conference 2006 in San Jose, Department of Homeland Security official Jonathan Frenkel warned that if software distributors continue to distribute rootkit-like software designed to circumvent or defeat computer security measures, legislation or regulation may be necessary to rein in their practices.

Frankel was discussing the 2005 incident where XCP copy protection software embedded on selected Sony BMG music titles was found to compromise the security of Windows computers, and was later exploited by Windows malware. The software also installed itself without disclosing its presence and was difficult for users to remove without severely compromising Windows. The incident proved to be a public relations fiasco for Sony, whose repeated attempts to obscure, downplay, and minimize the issues only put more egg on their faces. Sony has since withdrawn the products and is working to settle private, state, and class action lawsuits.

Recommended Videos

“We need to think about how that situation could have been avoided in the first place,” said Frenkel. “Legislation or regulation may not be appropriate in all cases, but it may be warranted in some circumstances.” DHS officials reportedly met with Sony after news of XCP copy protection woes broke to express strong concerns over the product, but have not taken any formal action.

One open question is what the U.S. government or the Department of Homeland Security could do to prevent similar incidents in the future. Although Sony BMG was clearly cognizant of the technology in the XCP copy protection software, there is no reason to suspect the company distributed the digital right management system with the deliberate intent of compromising the security of customers’ computers (as much as Sony did desire to limit users’ ability to use their computers in ways it felt impinged on Sony’s rights). Any number of software products may contain bugs and loopholes which compromise user security, often in interoperation with other products. It’s unknown to what degree regulation or legislation could prevent those holes from being discovered and exploited; further, industry watchers note any civil, criminal, or regulatory penalties may simply serve to stifle product development and innovation as firms weigh the costs of new liabilities against their product development plans.

Despite the Sony fiasco, rootkit-like copy protection schemes don’t seem to be going away. Security developer F-Secure reported that it had found similar copy protection technology developed by Settec on a German DVD release of the film Mr. and Mrs. Smith.

Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
I’ve been gaming on a 27-inch 4K OLED monitor for the past week, and it’s glorious
Path of Exile 2 running on an Asus gaming monitor.

A 27-inch 4K OLED gaming monitor is a big deal. Samsung just announced its own version, and we'll likely see more at CES. Based on what Asus has told me, I'm one of only a few reviewers who've been gaming on one of these new monitors for the past week or so. I’m talking about the Asus ROG Swift PG27UCDM, and the sharpness it brings is incredible to play on.

But before I continue gushing -- a caveat.

Read more
Samsung blew me away with its 3D gaming monitor prototype last year — now, it’s a real product
Lies of P on Samsung's glasses-free 3D gaming monitor at CES 2024.

Flash back almost exactly a year to the day. I was sitting in a half-built demo area playing on a Samsung prototype gaming monitor. The company had loaded up Lies of P -- one of my favorite games of last year -- and I was proceeding through a midgame Mad Clown Puppet mini-boss. It wasn't just standard gameplay, though. It was glasses-free 3D, and it worked well enough that I was able to play a game as difficult as Lies of P amid construction noise and blinding lights without breaking a sweat.

At CES 2025, Samsung is turning that prototype into a real product with the Odyssey 3D.

Read more
Samsung’s pair of new gaming monitors includes a 500Hz OLED
Fortnite running on the Samsung Odyssey OLED G6 at CES 2024.

If you thought CES 2025 wouldn't be exciting for OLED gaming monitors, you're wrong. Samsung is already setting the stage for the show with a pair of new OLED gaming monitors under its Odyssey brand, one of which takes the display tech to places it's never gone before with a blistering 500Hz refresh rate.

The Odyssey OLED G6 is a new 27-inch 1440p QD-OLED offering from Samsung that can reach 500Hz, which is a massive leap forward for OLED displays. Last year, we saw monitors like the Alienware 27 QD-OLED that could clear 360Hz at 1440p, as well as dual refresh rate displays like the LG UltraGear Dual Mode OLED that could reach 480Hz at 1080p. With Samsung's new display, you have can have your cake and eat it, too -- you get a full 1440p resolution and that insane 500Hz refresh rate.

Read more