Trying to extract Widewine key: A journey to failure
github.com
github.com
> In the end, I only extracted about half of the RSA key.
Not a cryptographer, but i thought half the rsa key was all you needed with coopersmith's attack.
Looking at this page https://www.cryptologie.net/article/222/implementation-of-co... it looks like the exponent isn't even an input to the algorithm when doing key recovery
Not that I think that this is morally wrong, just that I've always been concerned that people who try this and gain enough attention could face legal penalties. I would not do something like this without taking measures to stay anonymous. A similar case is the PS3 hacking case.
The idea itself is nice; I get the point. If I'm a studio I want people to pay for the product. DRM doesn't encourage people do that at all. It's like the idea of media blackouts in local markets: you're just driving people to alternative sources, not to buy a cable package.
But, apparently not Widevine and not the kind of HN reader who wrote the article. They spent weeks trying to extract the key and failed. The article is a story of their failure.
Although the real answer is probably: studios require it in their contracts and netflix has to play nice.
That would happen with or without DRM.
A good enough DRM system does not have to be 100% unbeatable all the time. It's sufficient to:
a. Delay a hacked release until after most of the sales have already occurred. This is very often the case with successful game DRM. A crack after six months is irrelevant because virtually all the sales are in the first month or so. A crack that comes out after everyone with interest has already ponied up doesn't matter much, and in fact an unbeatable DRM that never gets cracked would suggest misallocation of resources!
b. Focus cracks on a handful of specialists who can then be investigated and potentially prosecuted or bought out. A DRM so easy 100,000 people can crack it is very different to a DRM that only 5 people have cracks for and where they keep their cracks private. The latter becomes amenable to non-technical approaches. Again, an unbeatable DRM would probably represent a waste of effort.
There are quite a few DRM schemes that have achieved this level of good-enough success which is why despite decades of people railing against it in online forums such as this one, it sticks around regardless.
It’s also why HDCP exists to prevent capture from HDMI etc.
>It is my honest opinion that DRM is a malignant tumor growing upon various forms of media, and that people that either implement or enforce implementation are morally repugnant and do no good to society. With that in mind, I was sad to learn in May 2021 that the original extension would soon be rendered obsolete.
I really can't agree more. I don't use, and never have, services that require DRM. I buy my games from gog.com and itch.io and the like, get media from free-to-air television and state broadcasters, and buy music either from the artist or from good and reputable music labels like hyperion.co.uk. I buy books in a dead-tree form, or as DRM-free PDFs. I will simply not buy, use, or support DRM and I occasionally tell firms that I am not giving them business because of their inane corporate decisions.
This might seem like a hard rant, but all of these binary blobs can be broken with varying degree of difficulty -- as this person's work shows -- because DRM is fundamentally pointless. It's such a waste of human endeavor! Think how many CPU cycles are burnt doing this! Estimate what the total cost of HDCP + Widevine + DRM etc is on the planet! It is pointless, insulting, and frustrating!
</rant>.
I dunno, it gave this person a lot of trouble and the result is maybe a very narrow victory that doesn't practically matter? And this is the lowest level of widevine security - L3 which is basically assumed to be owned. Good luck with L1 which uses trusted compute primitives. DRM has won.
And I'm saying this as someone who agrees DRM is a threat to society as we're taking things that the world could otherwise have for free and denying it them so we can instead charge a small % for it. So we're intelligent enough to build this kind of technical sophistication but we are unable/unwilling to figure out a different model for financing it.
Fundamentally, you are going to show a video and play an audio stream. Fundamentally, it can be recaptured perfectly because it must be displayed and played perfectly. There is simply no way around it. DRM can only make life hard for the regular Joes.
Oh god, that’s a level of hell I haven’t even imagined. I wonder if the future could ever become as dystopian as that for real. What it would take for that to happen, and how.
Seems to work pretty well, since too my knowledge those are only ever leaked by audience members pointing a hidden camera at the screen (with all the quality issues that entails).
Ultimately I’ve come to believe that DRM and it’s cousin of system security is an economic game. So DRM useless in that it will probably be cracked after some time, but that time can translate to revenues or control until that point. It depends on how much money you have to throw at either hardening and cracking systems. It’ll likely become harder (i.e. more expensive) in the future to crack hardware DRM in the future as the technology becomes more sophisticated and classes of vulnerability are discovered and mitigated. But then the cracks become more valuable both for anti-DRM or anti-security.
1: https://raelize.com/blog/espressif-systems-esp32-bypassing-s...
Current DRM is all about shoving the decryption part as deep in to a chip as possible and betting on the fact that it is physically too hard to extract that info. So it will always be exploitable with some amount of effort.
But DRM fundamentally needs to have the decryption key available at the end user's device - which at least in my opinion, makes it better described as "provably mathematically impossible".
"The Internet is the ultimate dongle" - John Carmack
The downvotes are for a shit take disconnected from the reality of people who aren't determined not to pay for something.
It sure is when I can load an entire show on a Plex instance and can sync it on my mobile device without any arbitrary limitation (like how many episodes I can sync, or synced copies that expires after a while which I experienced abroad on Netflix).
Step 2. The content you want is not there or available on any other legal platform for your country.
Step 3. ????
Whenever a service provides content in a way which I can access DRM free, I make sure to reward them for it by voting with my wallet. I sometimes also tell them to make sure they understand that one of the factors in my decision to give them money was the fact that they offered the content DRM free. But not because I wanted to re-upload it for free via bittorrent or show it in a cinema to all my friends, but precisely because I wanted to watch it on my computer without having to install crazy whitebox crypto nonsense.
I don't think normalising having to run someone else's crazy whitebox crypto nonsense on your computer is a good idea. Even if most people don't know or care.
That's the beauty of the asymmetry against DRM, only a single decoded file (which will always happen) is enough for seeding to everybody.
Since you are running the exploit locally without affecting other peoples machines, I imagine it would be close to impossible to work out what exploit they are using.
They can only try again next time (for 8K?).
Can you show that this can reliable get rid of the fingerprinting? This particular method could be countered by only including the fingerprint info in a few random frames, then you'd be able to retrieve the account info of all the accounts that participated in ripping. I don't think finding a method to counter any sort of fingerprinting is as easy as "just averaging the pixels".
They just straight decrypt any files, which were at some point laying in the open on CDNs.
I believe, sooner or later it will come to the point when the only way left for DRMed content to work will be to have each stream individually encrypted, and watermarked at the backend at an enormous computational expense.
Please, sell me a watermarked but DRM-free video file that I can use with any player on any device. If I share it, you'll know it was me, but otherwise I have complete freedom. Win-win.
Movie theater watermarking is done during playback, but if Netflix was going to do watermarking, it would have to be done prior to delivery of streamed bits or it would be susceptible to the same "it's just software" attacks as any other local software-only approach to DRM.
But someone needs to pay to create those things in the first place. Payment for work after the fact is the basic incentive.
People are against DRM not because they don't want to pay for content, but because they want to be able to play the content they pay for. And not in breach of the license they have been sold.
I have every interest in participating in the content market and paying people to make content. I have no interest in having to buy special proprietary hardware or run special proprietary code on my computer just to do it.
Are we? Where are the studios making feature-length movie-quality content and putting it on YouTube to be supported by ad money? There isn't even an equivalent to TV in that form factor. All of the new content that requires any sort of production budget (actor salaries, non-trivial special effects) is on platforms with subscription fees and DRM to require those subscription fees because we can't have these things for free.
Seriously though, those of us who don’t like DRM need to switch messaging from “It’s bad AND it’s pointless/useless!” to “It’s bad!” The “it’s pointless” part has clearly been interpreted as a challenge, and now we’ve got incredibly invasive junk creeping in at all levels of hardware and software, and it’s not actually inconveniencing everyday consumers that much (hackers and powerusers are a different story), and it’s working better all the time.
I’m not sure exactly how to make this argument these days, but smugly saying “DRM will always be pointless in the end!” isn’t actually true, and I feel like we need to focus on the fact that the measures being taken to make it not pointless are impinging on both user privacy and the ability of open ecosystems (like Linux distros and more open hardware) to be useful for everyday media playback.
The only way to stop this is to abolish copyright.
The only way to enforce copyright in the 21st century is to destroy computing freedom. I'd rather sacrifice the entire copyright industry than have computers that only run software they approve.
https://www.amazon.com/gp/feature.html?ie=UTF8&docId=1000265...
> every song from Amazon MP3 is DRM-free and encoded in high-quality 256-kbps MP3 format. This means that they will play on any MP3 player, so you don't need to worry about file format compatibility or licenses that expire.
A business model for one thing does not generalize.
Sell things for money generalized pretty well in basically every other field. It actually generalized pretty well in video too. This is just adding "remove the DRM". It'll be fine once all the old studio execs retire...
Let's start with the most obvious: "sell things for money" hasn't worked out that well in music. Streaming services (with DRM) are 83% of revenue in the music industry now: https://www.businessofbusiness.com/articles/vinyl-record-sal...
The price of music is dramatically lower. Its consumption model is entirely different - a song may be played dozens of times on a radio station or a streaming platform, each performance for pennies. Video, on the other hand, is predominately a single-shot mechanism. There's enough new content that almost no customers will watch the same piece of video multiple times. You have to make back all of your revenue in that initial purchase. Combined with higher production costs, you need higher prices. You also need a guarantee people will have to pay those prices to justify the investment and even begin the process. DRM is such a guarantee.
Second, the price is identical. Streaming providers charge $10/month (or very close to it) regardless of what the content is. Also, albums when new are $10-$20, and movies new are $10-$20.
Did you not see the name in the link? More to the point, can you point me to a major music store which does use DRM? I'm not aware of one. Perhaps you've been pirating music so long you missed the shift? It happened around 2009.
Here's an article from 2014 about the steps to remove DRM from your pre-2009 library. Tl;Dr, delete and redownload from Apple, no DRM! This is Apple's recommended approach.
In any case, I don't listen to music very often. When I want to listen to something, I just look up specific songs on YouTube. I never cared enough to "pirate" music but I can tell you that the quality of "pirated" music is orders of magnitude higher than whatever is sold by Amazon. The people in those communities go to truly incredible lengths to ensure they have the highest quality audio possible. Companies generally just want to push out a release for the lowest possible cost.
I care more about films, series, video games and software in general. You'll find that in those categories DRM is the rule.
Does that sum it up?
You could play single-player, or reverse engineer it and try to create a private server and modified client to play with others who choose to use the same modified client, but unless the implementation is unusually poor, the "DRM" is pretty much unavoidable if you want to play on the official servers.
Prevent screenshots, prevent skipping ads, prevent recording (remember VHS recorders?), enforce region locking.. so many legal activities can be effectively made illegal, since manufacturers cannot both support DRM, and offer these options.
I think that this ease of circumventing DRM is actually an indirect, but major, reason why movie theaters will never really go away. Online streaming new movie releases is great for direct-to-consumer business, but it comes with the risk of losing control of your distribution due to ease of piracy. Why would a frugal person pay $30 for "premier access" to a new movie on Disney+ when they can just go to Pirate Bay and torrent a perfect-quality rip for free? It's much easier to keep AMC Theatres in line than a global network of average Joes.
For content distributors DRM is still worth in because of the power it gives them in dictating how the content can be viewed. They can demand hardware manufacturers to give them prominent placement, or be blocked. They can sell the same content over and over again for every screen type and platform individually, with rules and prices at maximum each will bear. They can set their own rules, instead of relying on general provisions of the copyright law.
We're not (yet) at the point where actual content keys are rotated frequently, because that sounds like a lot of effort though technologies exist for this already, they're just not in widespread use.
Yes, but so far no big Netflix-like website did it. It's a credible guess that all encrypted L1 content long been downloaded, and is just waiting decryption (NF used to use HTTP to serve encrypted files in the open, without any API wall some years ago)
This is only about key management.
Very likely it's not the Shield now which leaks L1, but an actual key recovery because they get the stream even before it gets watermarked in the secure domain.
My guess, it's Qualcomm's debugging TZ applets. They cannot really revoke keys because they will take down a giant amount of Snapdragon based handsets for which manufacturers don't bother to put a single OTA.
This is also likely why Netflix uses such a silly restrictions as refusing to run on old Android version numbers on some Snapdragon handsets, which are easily root bypassable.
Not really. Popular streaming-exclusive shows often get 1080p versions released within a few hours, and the 2160p versions released within a few days.
No idea what encryption Amazon use, but suffice to say it is thoroughly broken by someone out there. Given the expense of acquiring those presenters and the production costs of their shows, and how they bring people to the Prime video platform, I suspect Amazon is reasonably interested in keeping that content protected.
When this was done in software, I understand that open source decoders could have been modified to pipe the clear stream to disk, but now the software basically just hands the encrypted blob to a "trusted" hardware decoder.
Or am I missing something?
edit: DRM library still doesn't get to "fully FLOSSed"
Last time I checked (a few months ago) they didn't even support Chrome (either Windows or Mac) for UHD, they required Safari, Edge or their own Windows app.
You can't watch UHD content on Edge for Linux, for example, because the necessary DRM isn't implemented.
I also seem to remember that Netflix on Windows (don't know about mac) also requires hardware decoding support for HEVC1 (or whatever their codec is). I never got it to work with an intel GPU (8th gen udh630 — supposed to support it) but it worked with an AMD GPU.
I don't know a lot about how everything works below the hood, but you can probably find some of the details on the Microsoft website [0] if you want.
My understanding was that there was some kind of compositing going on, in hardware, where the display server would tell the GPU to display the output between some coordinates, but the server itself wouldn't know what the actual output would be.
Here is the libva documentation which seems to support this: http://intel.github.io/libva/group__api__prot.html