The Sony Rootkit

If I were a Windows user, I think this story would have been the last straw.

On Oct. 31, Mark Russinovich broke the story in his blog: Sony BMG Music Entertainment distributed a copy-protection scheme with music CDs that secretly installed a rootkit on computers. This software tool is run without your knowledge or consent — if it’s loaded on your computer with a CD, a hacker can gain and maintain access to your system and you wouldn’t know it.

The Sony code modifies Windows so you can’t tell it’s there, a process called “cloaking” in the hacker world. It acts as spyware, surreptitiously sending information about you to Sony. And it can’t be removed; trying to get rid of it damages Windows.

Why the hell is autorun on by default in Windows? Why does such an insecure “feature” even continue to exist?

Post a Comment

Your email is never shared. Required fields are marked *

*
*