The work at the World Wide Web Consortium (W3C) on adding DRM to HTML5 is one of the most disturbing developments in the recent history of technology. The W3C's mailing lists have been full of controversy about this ever since the decision was announced.
Most recently, a thread in the restricted media list asked about the requirements for DRM from the studios -- who have pushed for DRM, largely through their partner Netflix -- and discoverd that these requirements are secret.
It's hard to overstate how weird this is.
Standardization is the process by which all the parties in a technical subject agree on how things should be done. It starts with a gathering of requirements -- literally, "What is the standard required to do?" Without these requirements, it's hard to see how standardization can take place. If you don't know what you're standardizing for, how can you standardize at all?
DRM, by its nature, has secret requirements. That's why attempts to standardize it always end up with unworkable garbage, like the DVB's CPCM. DRM relies on me installing software on your computer that stops you from running other software. For example, you install a browser that plays video in such a way that another program on your computer can't grab the video as the browser shows it on the screen.
This is silly. It's your computer. Whatever steps the browser takes to obscure how it is playing the video back can be unpicked by you, at your leisure, so you can make a tool that gets around it.
Standards are, by their nature, public: they say, "This is what you are expected to do." But if you make DRM's workings public ("here's how we hide the keys from you"), you provide a roadmap for defeating it. Standardized DRM is an oxymoron, like a secret law.
The ensuing Hacker News thread is well worth a read on this.
Re: Watermarking [Re: Campaign for position of chair and mandate to close this community group]
(Image: Shh--Daily Image 2011--April 2, a Creative Commons Attribution (2.0) image from tinfoilraccoon's photostream)
CSIR-Tech is the commercial arm of the Indian government’s Council of Scientific and Industrial Research; after spending ₹50 crore (about USD7.6M) pursuing more than 13,000 “bio-data patents” (patents of no real value save burnishing the credentials of the scientists whose names appear on them), they have run out of money and shut down.
Troy Hunt, proprietor of the essential Have I Been Pwned (previously) sets out the hard lessons learned through years of cataloging the human costs of breaches from companies that overcollected their customers’ data; undersecured it; and then failed to warn their customers that they were at risk.
The World Wide Web Consortium has announced that its members have until April 19 to weigh in on whether the organization should publish Encrypted Media Extensions, its DRM standard for web video, despite the fact that this would give corporations the new right to sue people who engaged in legal activity, from security researchers who […]
Custom coffee vessels are the perfect piece of office flair, but it’s just a matter of time before your VOTE FOR PEDRO mug will start to lose its relevant wit. Why not have a new one every day, with whatever silly nonsense you want sticking off the sides? You can save big on your novelty […]
The Lightning port has thus far resisted the cruel fate that befell the headphone jack, and despite rumors that it may be disappearing come iPhone 8, for the present and foreseeable future, Lightning cables are a hot commodity for iPhone users. As such, we must make do in this strange time in which long, glorified […]
All the filters in the world won’t save your smartphone pics from a shaky hand. To really step up your mobile photography game, you’ll need some kind of mount to hold it steady. You could buy a smartphone attachment for a conventional camera tripod, but who wants to carry that kind of gear everywhere they […]