Technology Review - Published By MIT
Advertisement

The Encrypted Chip

Continued from page 1

By Kate Greene

Wednesday, April 19, 2006

smaller text tool iconmedium text tool iconlarger text tool icon

One of the major possible uses for chip-level encryption, according to Wagner, is for keeping music and videos from being distributed in ways that violate copyright laws. That possibility is the "elephant in the room," he says. Currently, digital rights management (DRM) is programmed into products such as CDs or DVDs, and software such as iTunes and Windows Media Player. The DRM policies of iTunes, for example, limit the number of times a CD can be copied.

Depending on the type of DRM tools used, they're "pretty easy to bypass," Wagner says. "All you have to do is tamper with the software" to remove the feature that counts the number of times a CD has been burned, he explains. But when DRM software is coupled with encrypted hardware, the software containing DRM is much more resistant to tampering.

At the hardware level, Wagner says, there's already an encryption technology called a Trusted Platform Module (TPM), which is an extra chip inside a computer that can help enforce DRM policies when used with compatible software. Such an chip could protect the DRM software of iTunes or Windows Media Player from being tampered with. While the TPM chip doesn't directly impose DRM, it makes it much more difficult to bypass the DRM on software. Microsoft's upcoming operating system, Vista, is designed to support computers that have TPM.

SecureBlue might offer stronger DRM protection than TPM, though, because IBM's encryption is integrated into the processor itself, instead of residing on a separate chip. This "enables computer manufacturers to build DRM protection that is hard to subvert," Wagner says.

"I can certainly imagine this being marketed as a DRM solution," says Bruce Schneier, founder and CTO of Counterpane Internet Security, a Mountain View, CA company. Building security onto a single chip would eliminate the "tamper attack" on the connection between a separate security chip and processor, he says.

Of course, stronger DRM for computer hardware has different implications -- depending on which side of the digital-rights debate one sits on. For Hollywood, Wagner says, the technology would be beneficial because it would prevent consumers from copying music and illegally distributing it. However, more DRM security built into a computer could also restrict how people use music and video, he says, even when it's legitimate, from copying CDs to transferring a movie from a computer to a portable video player.

IBM has not announced whether its SecureBlue customers (undisclosed at this time) intend to use the chips as a DRM tool, and the company also declined to comment on the issue of DRM.

But Berkeley's Wagner says the company's technology is reminiscent of the type of technology that "one might consider if one wanted to build DRM protection that is harder to break." If SecureBlue is able to give Hollywood "more control over people's computers," he says, the technology is "likely to be pretty controversial."

Comments

  • Security chain on devices
    Security for security sake is fine. And I think chip based encryption works well in this environment. If however, you want DRM this may be trickier as at some point the device needs to output to a human. This is essentially a decryption at which point it could be copied. Unless Hollywood are willing to implant decryption chips in our brains there will always be a point at which copyright can be copywronged.
    Rate this comment: 12345
    Guest (Brett)
    04/19/2006
    Posts:1
    • Virus differentiation
      I often have to turn off my anti-virus software to get certain programs to work correctly.  What happens when I can't turn it off?  "Oops... sorry.  We blocked the proper operation of a piece of software who's originators lacked the funding to develop with our chip."  How will this affect the open source community?
      Rate this comment: 12345
      Guest (Jonathan)
      04/19/2006
      Posts:1
  • Distribution Control App OK
    If my devices are associated to each other by their security chip, and the license for software usage is defined, then there is nothing wrong with using this chip to control content distribution.  Some limits on the results of detecting inappropriate distribution are needed.  You can notify me that this copy is illegal and stop the file, but you can't report it or disable my system in any way by allocating any resource beyond the notification to user and file script interrupt.
    Rate this comment: 12345
    Guest (Roger)
    04/20/2006
    Posts:1
  • For secure data today, use BlackDog Linux
    There are slao inexpensive, secure data, fit-in-your-pocket devices like BlackDog which use thumbprint authentication already.
    Rate this comment: 12345
    Guest (Richard Karpinskl)
    04/30/2006
    Posts:1

Log In

Forgot your password?     Register »
Advertisement

Videos

White Matter
Technology Review November/December 2009

Current Issue

Natural Gas Changes the Energy Map
The United States has vast supplies of this cleaner fossil fuel. But how should we use it?
Featured Content
Sponsored by:
White Papers

Twelve ways to reduce costs with SQL Server 2008
Find out how to reduce costs and get more efficient

Download

Total Economic Impact of SQL Server 2008 Upgrade
Forrester reports on increasing productivity and management capabilities

Download 

Achieving Cost and Resource Savings with UC
How Office Communications Server R2 and Exchange Server can make your business smarter and more efficient

Download 

The Compelling Case for Conferencing
Read how you can improve workload support and find IT efficiencies

Download

How Windows Server 2008 R2 Helps Optimize IT and Save you Money
Read how you can improve workload support and find IT efficiencies

Download

Windows Server 2008 R2 Hyper-V Live Migration
See how Windows Server 2008 R2 and Hyper-V enable virtualization and Live Migration

Download
Advertisement
Subscribe to Technology Review's daily e-mail update. Enter your e-mail address

TECHNOLOGY RESOURCES
Advertisement
MIT Massachusetts Institute of Technology © 2009 Technology Review. All Rights Reserved.