Spyware
Record label pays the price for an anti-piracy scheme gone wrong

Sony settles lawsuit from rootkit fiasco

Record label faces the music

Tom Sanders in California

Sony BMG has settled a lawsuit with the State of California over rootkit technology illegally installed on computers. 

The record label has agreed to pay a $750,000 fine and will reimburse consumers up to $175 to offset the cost of repairs required to uninstall digital rights management software that the company bundled with several of its music CDs.

Advertisement

The settlement also bans Sony from distributing CDs with bundled DRM technology without proper disclosure.

The settlement stems from last year's rootkit fiasco. In an attempt to prevent illegal copying of its music, Sony bundled anti-piracy software on several of its music CDs that installed automatically when a user inserted the CD in a computer.

To prevent consumers from uninstalling the application, the software used rootkit technology to hide the files and the processes from the user and the system.

Security experts argued that the rootkit was poorly engineered and that worm authors could exploit it simply by placing the characters '$sys$' in front of a file name.

Although Sony initially denied that its software posed a security risk, the company was proved wrong when the Stinx-E Trojan started exploiting the rootkit's features.

An estimated 450,000 Californians purchased one or more of the malware infested CDs, but the state is not aware of how many tried playing the CDs on their computer and are therefore eligible for compensation.

The complaint accused Sony of 'false or misleading advertising', 'unfair and unlawful businesses practices', and 'unauthorised access to computers'.

"Companies that want to load their CDs with software that limits the ability to copy music should fully inform consumers about it, not hide it, and make sure it does not inflict security vulnerabilities on computers," said California attorney general Bill Lockyer.

"To its credit, Sony BMG learned this lesson and has stopped the practices that led to this lawsuit.

"But the settlement further protects consumers by prohibiting similar conduct in the future and requiring Sony BMG to pay consumers back for out-of-pocket expenses they incurred to repair harm to computers caused by the software."

Sony settled a class-action lawsuit in January from a group of consumers, agreeing to exchange CDs and pay up to $7.50 in cash.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Related whitepapers

Related jobs

Most watched

V3.co.uk weekly debrief, 13 Nov 09

This week we discuss the inaugural V3.co.uk Summit

Summit: Salesforce.com on SaaS and information overload

How web services contribute to data headaches

Analysis and Reports

Remote access - Three steps to getting connected

3.4 million UK professionals now work from home – is your company equipped?

Cost benefits of a global collaboration network

This white paper is a must read for organisations looking for evidence of the bottom-line benefits of high-definition video and voice communications

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

White paper library

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you over 6,000 white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Spotlight

V3.co.uk weekly debrief, 13 Nov 09

This week we discuss the inaugural V3.co.uk Summit

Fingers on keyboard

New Flash vulnerability discovered

Web sites could be vulnerable to Flash attacks

Chris Adams

Summit: Microsoft Office to the rescue

Chris Adams, Office Client product manager for Microsoft UK, explains...

Illegal downloader

Industry and human rights campaigners united in opposition to "three strikes" plan

Critics says government proposals to curb illegal downloading are unworkable...

Primary Navigation