The other Sony spyware cd application (SunnComm)

GEC: Discuss gaming, computers and electronics and venture into the bizarre world of STGODs.

Moderator: Thanas

Post Reply
User avatar
Faram
Bastard Operator from Hell
Posts: 5271
Joined: 2002-07-04 07:39am
Location: Fighting Polarbears

The other Sony spyware cd application (SunnComm)

Post by Faram »

This is getting silly!

I am happy that I have not bought any cd for some years now, the last one was LoTR ROTK soundtrack.

And no I do not "accuire" them in any other way, radio is quite enuff for me.

But here is the quick and dirty about the SunnComm/Sony spyware.
To summarize, MediaMax software:

* Is installed onto the computer without meaningful notification or consent, and remains installed even if the license agreement is declined;
* Includes either no uninstall mechanism or an uninstaller that fails to completely remove the program like it claims;
* Sends information to SunnComm about the user’s activities contrary to SunnComm and Sony statements and without any option to disable the transmissions.
[img=right]http://hem.bredband.net/b217293/warsaban.gif[/img]

"Either God wants to abolish evil, and cannot; or he can, but does not want to. ... If he wants to, but cannot, he is impotent. If he can, but does not want to, he is wicked. ... If, as they say, God can abolish evil, and God really wants to do it, why is there evil in the world?" -Epicurus


Fear is the mother of all gods.

Nature does all things spontaneously, by herself, without the meddling of the gods. -Lucretius
User avatar
Sharpshooter
Jedi Master
Posts: 1081
Joined: 2004-08-31 10:59pm

Post by Sharpshooter »

Man, first the DRM thing, and now this. Now I'm scared shitless of loading up my new copy of What the Hell Happened to Me...
This has been another blunder by you friendly local idiot.
User avatar
General Zod
Never Shuts Up
Posts: 29211
Joined: 2003-11-18 03:08pm
Location: The Clearance Rack
Contact:

Post by General Zod »

All Sony's doing is making using pirated goods seem much safer than legal stuff. They definitely know how to shoot themselves in the foot.
"It's you Americans. There's something about nipples you hate. If this were Germany, we'd be romping around naked on the stage here."
Datana
Jedi Master
Posts: 1011
Joined: 2002-07-04 03:16am
Contact:

Post by Datana »

Sharpshooter wrote:Man, first the DRM thing, and now this. Now I'm scared shitless of loading up my new copy of What the Hell Happened to Me...
Just disable Autorun and insert the disc while under User privileges rather than as an Administrator. If you have any playback software that can be made to ignore any sessions after the first, you should be able to run the CD just fine without any of the DRM junk (which works primarily by creating a spoofed second session that Windows reads but standalone players ignore).

My usual policy with CCCDs is to rip them losslessly then write them back to a new disc without the copy protection crap, as some types (CDS in particular) screw up my car's CD player. With the new types used by BMG, though, I'll simply not buy their CDs.
Member of the Anti-PETA Anti-Fascist League
RThurmont
Jedi Master
Posts: 1243
Joined: 2005-07-09 01:58pm
Location: Desperately trying to find a local restaurant that serves foie gras.

Post by RThurmont »

On the related topic of the Sony DRM fuckup discovered in October, the Dow Jones Newswires reports that the "fix" for the problem Sony and First 4 Internet came out with actually represents a huge security vulnerability in and of itself.

Apparently, the uninstall makes your computer vulnerable to having code executed on it from any website.

Security experts are rather outraged, and are furious that Sony hasn't come up with an immediate patch. The next security update for Microsoft Windows XP will fix the vulnerability that Sony exploited. Also, there are already several Trojans going about that exploit this vulnerability.

Sony has now basically proven itself to be the world's most unscrupulous company, and I rather hope they suffer for this...
"Here's a nickel, kid. Get yourself a better computer."
User avatar
Faram
Bastard Operator from Hell
Posts: 5271
Joined: 2002-07-04 07:39am
Location: Fighting Polarbears

Post by Faram »

RThurmont wrote:Sony has now basically proven itself to be the world's most unscrupulous company, and I rather hope they suffer for this...
Well that is a ActiveX component that for some reason got marked as "Safe for Scripting"

Sorry mess here
Scriptable methods left behind

The uninstaller leaves behind lots of methods, here are the names:

* GenerateRequestPacket
* ExecuteCode (can crash browser, apparently removed in latest ocx)
* Uninstall
* RebootMachine (exploitable, see demo)
* GetProgress
* OnLoaded
* InitializeDiscScan
* GetNumberOfDiscs
* IsDRMServerValid
* GetAlbumArtist
* GetAlbumName
* GetMaxBurnCount
* GetCurrentBurnCount
* GenerateIncrementPacket
* IsContentOwnerValid
* DoIncrement
* GetInstalledSoftwareVersion
* IsXCPDiscPresent
* InstallUpdate (exploitable)
* GetInstallProgress
* GetCompletionStatus
* IsXCPDiscPresentAsLong
* IsAdministrator

Considering anyone can reboot the computer using these, I suspect security wasn't thought about for even a second during development of this thing. Virus writers and such would be very interested in analyzing what these methods do, in case some of them are remotely exploitable... possibly even by design.
[img=right]http://hem.bredband.net/b217293/warsaban.gif[/img]

"Either God wants to abolish evil, and cannot; or he can, but does not want to. ... If he wants to, but cannot, he is impotent. If he can, but does not want to, he is wicked. ... If, as they say, God can abolish evil, and God really wants to do it, why is there evil in the world?" -Epicurus


Fear is the mother of all gods.

Nature does all things spontaneously, by herself, without the meddling of the gods. -Lucretius
User avatar
Soontir C'boath
SG-14: Fuck the Medic!
Posts: 6860
Joined: 2002-07-06 12:15am
Location: Queens, NYC I DON'T FUCKING CARE IF MANHATTEN IS CONSIDERED NYC!! I'M IN IT ASSHOLE!!!
Contact:

Post by Soontir C'boath »

RThurmont wrote:Sony has now basically proven itself to be the world's most unscrupulous company, and I rather hope they suffer for this...
With all the bad publicity, we can all be sure their fourth quarter will be dismal.

I am very glad I haven't bought anything from Sony in awhile.
I have almost reached the regrettable conclusion that the Negro's great stumbling block in his stride toward freedom is not the White Citizen's Counciler or the Ku Klux Klanner, but the white moderate, who is more devoted to "order" than to justice; who constantly says: "I agree with you in the goal you seek, but I cannot agree with your methods of direct action"; who paternalistically believes he can set the timetable for another man's freedom; who lives by a mythical concept of time and who constantly advises the Negro to wait for a "more convenient season."
RThurmont
Jedi Master
Posts: 1243
Joined: 2005-07-09 01:58pm
Location: Desperately trying to find a local restaurant that serves foie gras.

Post by RThurmont »

I am very glad I haven't bought anything from Sony in awhile.
I'm very glad I haven't bought any Sony stock!

That would hurt...
"Here's a nickel, kid. Get yourself a better computer."
User avatar
DarkSilver
Jedi Council Member
Posts: 1606
Joined: 2004-10-28 08:54am
Location: Librium Arcana
Contact:

Post by DarkSilver »

mmmmmmm

ok, so no more Sony products.....

which is a shame, I was looking forward to watching Spiderman 3.....

-crosses the PS3 off his list of game systems due to Sony boycott-
XBL: Darek Silver | Wii Friend: 5602 6414 0598 0225
LibriumArcana - Roleplaying, Fiction, Irreverence
Trekker (TOS, TNG/DS9-Era) | Warsie (semi-movie purist) | B5'er | TransFan
Cult of Vin Diesel: While it is well known that James Earl Jones performed the voice of Darth Vader, it is less appreciated that Vin Diesel performs the voice of James Earl Jones.
Post Reply