ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Industry watch Toolkit

RIAA calls hacking claim a hoax

Published: 15 Jan 2003 08:56 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Claims that the music industry hired a group of hackers to create a worm to infect peer-to-peer networks are being dismissed by security experts.

In an advisory posted to security mailing lists, a group called Gobbles Security delivered its latest vulnerability -- a real one found in a relatively unknown MP3 player -- wrapped in an apparent joke aimed at the Recording Industry Association of America. The main part of the advisory consisted of Gobbles' claims that its programmers had created a "hydra" -- a worm capable of spreading in a variety of ways -- that infects all major music software.

The RIAA, the organisation that represents major music publishers, wasn't amused. "It's a complete hoax," said an RIAA spokesman, who asked that his name not be used. "It's not true."

Security experts agreed. Steve Manzuik, moderator of vulnerability information site VulnWatch, received the advisory on Sunday. But because of the apparent joke, he held the document until the vulnerability was verified a day later.

"This is typical Gobbles, is it not?" Manzuik said. "Cause a stir, but also release useful information."

The true vulnerability is not found in the major music players -- Windows Media Player, WinAMP and Xmms are among the players Gobbles names -- but in the MPG123 music player, a relatively unknown piece of open-source software.

Mailing list BugTraq also decided to post the advisory. "In this case, it contained valid vulnerability details, so we decided to publish it," said Oliver Friedrichs, senior manager at computer security firm Symantec, which owns the mailing list.

This is not the first time that the RIAA has been a potential target of hacker humor. Over the weekend, unknown hackers hit the organisation's site and replaced some content with false releases. In July, the music industry's Web site was hit by vandals in an attack that caused the pages to be available sporadically for four days.

The music industry isn't hacking back, but someday it might. A bill sponsored by representatives Howard Berman, a California Democrat, and Howard Coble, a North Carolina Republican, would allow copyright owners and such groups as the RIAA and the Motion Picture Association of America to disable, block or otherwise impair a "publicly accessible peer-to-peer file-trading network". Nowadays, that's called hacking.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
76 out of 122 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:







Discussions

0xyGen 0xyGen

Please help me in choosing web hosting

Sunday 20 July 2008, 10:32 AM

1 post
1000030281 1000030281

Facebook Bans Firefox 3

Sunday 20 July 2008, 2:33 AM

1 comment

Featured Talkback

When all is said, if Microsoft produce the best product people will buy it and thats a good thing. If people have to buy their product because no one else can produce an alternative, only because interoperability protocols are kept secret, then thats a bad thing.

By: pround

Read full story:
EU court crushes Microsoft's antitrust appeal