Categories: SecurityWorkspace

Intel Admits Theft Of Copy Protection Protocol

Intel is investigating how a master key for the High-bandwidth Digital Content Protection [HDCP] protocol used to protect digital content made its way to the Internet.

Developed by Intel, the HDCP protocol is used to protect video and audio content as it is transmitted between devices such as Blu-ray players and high-definition televisions [HDTVs] and to verify the device receiving the content is licensed to do so.

The master key is used to generate keys meant for consumer devices. On 14 September, it was reported that a secret master key for HDCP had been posted on the Internet. Intel confirmed the key was legitimate on 16 September.

Security properties destroyed

“We’re investigating how it might have been obtained, how someone might have determined it,” Intel spokesperson Tom Waldrop told eWEEK.

Anyone who knows the master key can generate keys, which “destroys both of the security properties that HDCP is supposed to provide”, blogged Ed Felten, director of the Centre for Information Technology Policy at Princeton University.

“HDCP encryption is no longer effective because an eavesdropper who sees the initial handshake can use keygen to determine the parties’ private keys, thereby allowing the eavesdropper to determine the encryption key that protects the communication,” Felten wrote. “HDCP no longer guarantees that participating devices are licensed, because a maker of unlicensed devices can use keygen to create mathematically correct public/private key pairs.”

Waldrop said that in order for someone to use the device keys, “they also would have to find a way to design those into some kind of hardware”.

Legal action

“Build a box, make a chip that implements it… for all practical purposes that’s what would have to be done in most cases that can be conceived of, and those things aren’t trivial,” the spokesperson said.

Waldrop added that the company would pursue legal action if need be to protect its intellectual property.

“Should someone use this published information to create a circumvention device there are definitely enforcement actions that could be taken… we would avail ourselves of the legal remedies as appropriate at our choice,” he said.

Brian Prince eWEEK USA 2014. Ziff Davis Enterprise Inc. All Rights Reserved

Share
Published by
Brian Prince eWEEK USA 2014. Ziff Davis Enterprise Inc. All Rights Reserved
Tags: Copyright

Recent Posts

Microsoft Faces EU Antitrust Charges Over Teams

Microsoft faces formal EU antitrust charges over videoconferencing app Teams after concessions to European Commission…

14 hours ago

New Jersey Apple Store Workers Vote Against Unionisation

Workers at New Jersey Apple Store vote against joining union as post-pandemic labour drive at…

14 hours ago

OpenAI Adds Voice Conversation To New ChatGPT Model

Microsoft-backed OpenAI releases new AI model GPT-4o with voice conversation capability, desktop app and updated…

15 hours ago

SpaceX Prepares Fourth Starship Test

SpaceX prepares fourth Starship test flight, launches more Starlink satellites, shows EVA suit for commercial…

15 hours ago

SpaceX Contractors In Texas Remain Unpaid

SpaceX and its contractors have left construction bills unpaid in Texas, angering many smaller suppliers,…

16 hours ago

US To Make 30 Percent Of Advanced Chips By 2032

US to triple domestic chipmaking capacity and control 30 percent of advanced chips by 2032…

16 hours ago