Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror
×
DRM Government Software United States Hardware Technology

Feds Say Hacking DRM To Fix Your Electronics Is Legal (vice.com) 124

An anonymous reader quotes a report from Motherboard: The Librarian of Congress and U.S. Copyright Office just proposed new rules that will give consumers and independent repair experts wide latitude to legally hack embedded software on their devices in order to repair or maintain them. This exemption to copyright law will apply to smartphones, tractors, cars, smart home appliances, and many other devices. The move is a landmark win for the "right to repair" movement; essentially, the federal government has ruled that consumers and repair professionals have the right to legally hack the firmware of "lawfully acquired" devices for the "maintenance" and "repair" of that device. Previously, it was legal to hack tractor firmware for the purposes of repair; it is now legal to hack many consumer electronics.

Specifically, it allows breaking digital rights management (DRM) and embedded software locks for "the maintenance of a device or system in order to make it work in accordance with its original specifications" or for "the repair of a device or system to a state of working in accordance with its original specifications." New copyright rules are released once every three years by the U.S. Copyright Office and are officially put into place by the Librarian of Congress. These are considered "exemptions" to section 1201 of U.S. copyright law, and makes DRM circumvention legal in certain specific cases. The new repair exemption is broad, applies to a wide variety of devices (an exemption in 2015 applied only to tractors and farm equipment, for example), and makes clear that the federal government believes you should be legally allowed to fix the things you own.

This discussion has been archived. No new comments can be posted.

Feds Say Hacking DRM To Fix Your Electronics Is Legal

Comments Filter:
  • Fix, not upgrade (Score:4, Interesting)

    by olsmeister ( 1488789 ) on Thursday October 25, 2018 @03:10PM (#57536617)
    Notice the phrase "original specifications".
    • Re: (Score:2, Interesting)

      by Anonymous Coward

      Notice the phrase "original specifications".

      And if the original specifications include a bug in the software, isn't fixing it an upgrade?

      • by Tinsoldier314 ( 3811439 ) on Thursday October 25, 2018 @03:36PM (#57536711)

        Notice the phrase "original specifications".

        And if the original specifications include a bug in the software, isn't fixing it an upgrade?

        A bug in the software isn't fundamental to the advertised value of the good. A tractor isn't advertised as, "60 HP diesel with bugs in the onboard software!".

        • Re:Fix, not upgrade (Score:5, Interesting)

          by omnichad ( 1198475 ) on Thursday October 25, 2018 @04:35PM (#57537059) Homepage

          Oh, good. I have a stack of DVDs where the advertised purpose is to have a license to watch a movie. Format shifting it is just correcting an implementation bug.

          • Exactly, how is it with making archive copies of owned DVDs now - honestly asking?
            • by r1348 ( 2567295 ) on Thursday October 25, 2018 @06:22PM (#57537465)

              Just do it, seriously. As long as you don't post a torrent somewhere, nobody's gonna bother you.

              • by AmiMoJo ( 196126 )

                Unless you try to cross a border... Border security in some countries has been known to use people's ripped music and movies against them, usually because they want to steal the device it's on or detain them for some other reason.

              • Just do it, seriously. As long as you don't post a torrent somewhere, nobody's gonna bother you.

                Wasn't there a case in the US that someone was convicted of making personal copies (no selling, no publicly available) of something (sorry do not remember the details)?
                Asking being honestly curious.

            • Easy and convenient. Even with Blu-Rays. They all sit on a storage server and my original discs are stored away safely in a closet where I never touch them. I use MythTV but there are a multitude of players that will handle MKV files with H.264 video and AC-3 or DTS-MA audio, which is what I transcode to in Handbrake.

              • by KlomDark ( 6370 )

                What are you using to extract the MKVs from the BluRay? Is there a Handbrake plugin that I don't know about?

        • Then why are Microsoft products considered to be adding value?

          • by KlomDark ( 6370 )

            Or Apple with all their "holding it wrong" and "slow down the device when the battery gets old" stuff...

      • Normally, the specifications for how the software should behave wouldn't specify that it should be buggy.

        A notable exception is several software products were designed to be compatible with / emulate Internet Explorer, specifically including emulating some of its more important bugs.

        There may be decisions made in which the designers chose something they thought was good. You think it's bad, so you call it a bug. "Fixing" (changing) that probably wouldn't be restoring it to its original specification, thoug

    • Re:Fix, not upgrade (Score:5, Interesting)

      by rtkluttz ( 244325 ) on Thursday October 25, 2018 @03:59PM (#57536859) Homepage

      At least original specifications leaves room for argument. Many devices are general purpose computing devices. Just because they may be sold with software that cripples the capability of the hardware, it can be argued that the original specification of the HARDWARE is to have a feature enabled... or even that the original specification of the HARDWARE is that of a general purpose computing device where the only limitations are the imagination of the person writing the software. This is the first step in a foothold for enshrining that hardware and software are two separate things.

      • It also depends on whose specification. The specification of the product on the box probably won't include features deleted.

        If you bought product X as specified on the box and literature, then hidden extras or hidden deletions aren't in the specification you were sold.

    • Re:Fix, not upgrade (Score:5, Interesting)

      by bobbied ( 2522392 ) on Thursday October 25, 2018 @05:00PM (#57537159)

      Notice the phrase "original specifications".

      Yea that caught my attention. I'm sure the question is about intent.

      IF you are trying to fix something that's broken, but not modify the way the overall item works, then you are allowed to reverse engineer DRM protections. So, in the case of a motor vehicle, you can modify the drive train controller to use a non-manufacturer specified sensor as long as you don't change how the vehicle operates. So no emissions changes, no changes in performance, just swapping out sensors or parts to repair the overall device? Have at it. Replacing parts with cheaper non-manufacturer specific parts? You are free to do this.

      What isn't as clear is reverse engineering a router's boot loader and firmware so you can run your own private firmware that does something different, has a different user interface or allows you to modify the radio power output outside of manufacturer specs. That may not be allowed.

      Modify your I-phone's firmware so that third party digitizer works (allowed).

      Modify your VW's Engine Controls so it passes emissions testing, but reverts to better economy higher emissions settings when driven.. (Not allowed)

      Reverse Engineer your car's CAN buss data to add a new entertainment device that can interact with the rest of the vehicle? (Not allowed)

      Bypass DRM controls on your consumer entertainment device so you can repair it with cheaper readily available parts? (Allowed)

      Bypass DRM controls on the device to get the HDMI to connect but allow you access to the raw unencrypted data? (Not allowed)

      • by Lothsahn ( 221388 ) <Lothsahn@@@SPAM_ ... tardsgooglmailcm> on Thursday October 25, 2018 @05:31PM (#57537279)
        Thankfully, the Copyright Office has already provided an exemption for motor vehicle repair (including modifications) [1].

        This is important because manufacturers are starting to install DRM into their cars. For instance, I drive a Nissan Leaf and the battery is software locked to the car. Replacing the car requires that the person involved pair the new battery to the car. And given the technology advances in batteries in the last 10 years, you're going to want to install a bigger battery than the car originally shipped with. Theoretically, a larger capacity battery is not "original specifications."

        Similarly, you are allowed to reverse the CAN bus to add a new entertainment device, and there's no copyright violation to modify the emissions control software either. Both are allowed under the previous ruling. That said, you probably are breaking some EPA law if you violate the emissions settings as described.

        Sources:
        [1] https://ifixit.org/blog/8510/c... [ifixit.org]
        • Actually, it's more complicated. That exemption quoted in the article expired this year and this new law supercedes it.

          Thankfully, the original specification language is not present in the car section (see section 1):
          Accordingly, the Acting Register recommends that the Librarian adopt the following exemptions:
          (1) Computer programs that are contained in and control the functioning of a lawfully acquired motorized land vehicle such as a personal automobile, commercial vehicle or mechanized agricultural
          • Actually, it's more complicated. That exemption quoted in the article expired this year and this new law supercedes it. Thankfully, the original specification language is not present in the car section

            Considering the active modding community that adds features, increases performance, allows for repairs it is good they did not limit to original specifications. Repair requirements alone have gotten ridiculous, I mean you need to use a special tool to reset the computer after replacing a battery in a BMW? Thankfully you can buy a tool for. a lot less than the dealer would charge to replace the batteries y and reprogram the computer.

            The fact that a librarian needs to provide exemptions to keep the DMCA DRM restrictions reasonable implies that we really should fix the DMCA.

            Once again, librarians are the first lien in defense of our freedoms...

      • So can I obtain and unlock (through sketchy means) the automotive factory service software to reprogram the vehicle order to match the currently installed replacement hardware so that future reprogramming works as intended? And reprogram the hardware as required?

        • Well.. You can break the DRM by reverse engineering to do that. I'm not sure what "sketchy means" is though. I'm also not sure if you can SELL the reverse engineered hack to others for a profit either... You might be able to reverse engineer and bypass the DRM in order to sell repair parts... It's all kind of vague to me.
      • by Z00L00K ( 682162 )

        How about a gearbox replacement to a more robust one that don't break down just because you don't nurse it?

      • by Lennie ( 16154 )

        "modify the radio power output outside of manufacturer specs"

        Pretty certain you are not allowed to do that in the US because of other laws and regulations.

      • It's probably going to hinge on specification.

        An alternate boot loader that loads the required system meets the specification for the bootloader you bought. Does this meet the requirements? Depends on whose specifications matter.

        Likewise for a router. If you bought a router that was advertised as having a specific list of protocols, but nothing else is stated, you might contend that replacing those protocols 1:1 is to the original specification.

        Specifications say the what and not the how, after all.

        But this

      • Notice the phrase "original specifications". I wonder if this means that a manufacturer can't remove a feature after the fact by forcing an upgrade. I'm thinking of Sony removing the "other O/S" on the PS3.
    • It means you can't hack a PS4 to become a Linux box, but if the PS4 breaks then you can repair it even if it means you have to defeat some protections. Presumably it also means you can change your Keurig coffee maker to make coffee using third party pods, or so your printer can use refilled cartridges.

      This doesn't mean that the manufacturers have to make this easy for you (witness tractor repair).

      Also, it's unclear whether or not the DMCA overrides this rule or vice versa; for the courts to figure out.

    • by mysidia ( 191772 )

      Well, the action doesn't prohibit upgrades, necessarily.

      A major reason for arguing as right to "bring it back to original specifications" is to disarm
      an argument from manufacturers that DRM is essential to prevent independents from
      creating "counterfeits" or "converting and passing off generic hardware" as manufacturer's proprietary product.

      The argument goes something like this.... If the repair shop runs a bypass wire for a broken resistor or replaces
      a capacitor or video card, that computer cea

    • by Sloppy ( 14984 )

      It's a good thing that customers always figure out the specifications prior to purchases. Of course, it's unfortunate that the vendor's product doesn't always measure up to those specifications, but post-sale maintenance might be able to repair the shortcomings.

  • by Anonymous Coward
    Thanks, Obama
  • by Anonymous Coward

    to make it work in accordance with its original specifications.

    And thus the next lawsuit will center on what exactly the original specifications are, with the industry in question claiming the unbroken DRM is part of it.

  • Since the whole debacle there supposedly started over removal of the third party OS option, which was an original feature they took away. Wouldn't this technically allow anything to be cracked if an "update" removed any functionality? I like it, just seems like this is HUGE.
  • Wasn't there an article about right to repair laws in California that passed recently but were pretty pathetic and written in favor of manufacturers? Is that whole issue moot now?
  • I would think that DRM is only part of the equation - if you "hack" the firmware, isn't there a good chance you'll be illegally using somebody's patent somewhere (especially if you are a third party, ie repair company).

    You may think this will work in your favour comin' but I think you gotta watch yourself goin'.

    • by es330td ( 964170 ) on Thursday October 25, 2018 @03:46PM (#57536773)

      isn't there a good chance you'll be illegally using somebody's patent somewhere (especially if you are a third party, ie repair company)

      IANAL but it seems that if a person originally had a right to use a copy of the original software/firmware then even if modified the remaining original software still carries that license. A person could not then transfer it elsewhere but if Device A could use software modules B, C & D then device A could still continue using modules B & D even if C was modified or replaced.

      • something like that also most made it to trail with a chance for some big chilling effects or may be would of been an help to right to repair.

        We need a case to test if an OEM can force some one to pay an added fee just to get the rights move the old software/firmware for an device from the old storage media to different storage media.
        OR is ok from them to change $$ for an recovery image / block people from shearing the files / roms / iso's / etc to other to help them fix it.

    • You can already avoid strict copyright rules in some cases called "fair use". This new rule would seem to extend fair use to cover repairs.

      For patents, those just give a limited term monopoly on the right to profit off of an invention. This wouldn't seem to be applicable here since a repair shop is not creating and selling new tractors or phones using someone else's patents.

      • For patents, those just give a limited term monopoly on the right to profit off of an invention.

        In the U.S., 35 USC 21(a) says, "Except as otherwise provided in this title, whoever without authority makes, uses, offers to sell, or sells any patented invention, within the United States or imports into the United States any patented invention during the term of the patent therefor, infringes the patent"

        Patents don't just give the owner a monopoly right of profit - they also make it illegal to roll your own

    • I would think that DRM is only part of the equation - if you "hack" the firmware, isn't there a good chance you'll be illegally using somebody's patent somewhere (especially if you are a third party, ie repair company).

      You may think this will work in your favour comin' but I think you gotta watch yourself goin'.

      It's highly unlikely that repairing a device would be considered "making" the device, and a repair shop isn't selling your device (even if there wasn't the Doctrine of First Sale), so the only possible patent violation would be using the device. Since you legally purchased the device, you also have an implicit license to use any of the manufacturer's patents for that device.

  • by blahplusplus ( 757119 ) on Thursday October 25, 2018 @03:29PM (#57536687)

    ... you can bet companies will still fight tooth and nail to get around this shit. Just like now game companies can take advantage of mass public ignorance and high speed internet to legally reclassify all new games as "services". Just as with the new Assasins creed because they control the software from the point of production and their customers are 100's of miles away.

    https://www.dailydot.com/layer... [dailydot.com]

  • by Joe_Dragon ( 2206452 ) on Thursday October 25, 2018 @03:29PM (#57536689)

    does this apply to manuals and repair tools as well?

    As apple can say that some repair (MANUALS / schematics) are DRM locked.

    also with cars / tractors same with the software that you need to run on a different system.

    also the original specifications makes it so they can SAY repair parts / tools / manuals are DEALER ONLY! or even the device in the first place is DEALER ONLY repair.

    • DRM locked goes above and beyond what copyright allows. Apple can say that no one is allowed to buy a repair manual, but they cannot forbid someone who already owns a repair manual from giving it to someone else (as long as no copy is made). The DRM is intended to prevent giving or reselling the manual to anyone else.

      Original specifications does not mean the EULA. The specifications means what the product is intended to do. And in the event that companies change their specifications to have exclusions,

    • by AmiMoJo ( 196126 )

      I'd guess not. The US tends to focus on "passive" freedom, as in you have the right to repair it but no-one has to help you do it. There are some exceptions, like cars have to have standard diagnostics systems and manuals/software must be available, but mostly it's just "they can't stop you, but can do anything they like to make it as difficult as possible".

  • by Anonymous Coward

    blocking/circumventing blu ray key revocation lists so that older discs will once again play?

    Playing the media you purchased sure sounds like restoring a device to its intended function...

    While they're at it, maybe they can require vendors to provide keys/unlocked boot loaders for all devices at time of EOL/abandonment. Would make lots of phones and other electronics have a much longer useful life.

  • Most of my DVDs and Blu-Ray discs are broken - whenever I play them, they insist on running 6-10 minutes of unskippable commercials before I can watch the main feature! I guess this means I can legitimately rip them to fix the Macromedia (or whatever it's called now) infection.

    • I was wondering if it gives you latitude to recover content you paid for that you "lost" by the provider changing their terms.

  • Does this allow someone to actually distribute a tool to enable breaking DRM for these purposes? Because it's all very well that you can break DRM, but it's totally toothless if each individual must do so themselves, as very few actually have the skills at time to do so.

    • Courts rule in the specific facts of individual cases, and we can only predict what the ruling might be. Having said that:

      If you distribute it for that legitimate, lawful purpose, and all of your messaging (marketing etc) points to a lawful purpose, you'd probably be fine.

      On the other hand, if you have a web site where you advertise "steal Hollywood movies", your internal emails talk about paying people to use the tool for unlawful purposes, you make millions of dollars from people using it unlawfully, and

      • what an making an script that takes say rom's chd's etc and dumps them out to real hardware??

        For EX say get the mame rom set + CHD for X and run this script to load your USB KEY with the usb dongle code so you can fix your device?

        Just say get the roms but do not say where to get them?? Or can the law let you host files for repair use?

        • > mame rom set + CHD
          > Just say get the roms but do not say where to get them??

          "Don't say where to get them" isn't going to help you.
          If you tell people to use your DRM-breaking tool to do unlawful things, you're probably breaking the law by distributing the tool for that purpose.

          Re-loading factory firmware unto legitimate factory devices seems a fairly small niche. You'd need to show that it's a "substantial non-infringing use" vs the infringing use.

    • by Sloppy ( 14984 )

      Does this allow someone to actually distribute a tool to enable breaking DRM for these purposes?

      Nope. The Librarion of Congress does not have that power; they can mess with 1201(A)(1) [cornell.edu] but can't do anything about 1201(A)(2).

      Thus: You can patch the software, but creating the patch is still illegal. Importing the patch is illegal. Trafficking in the patch or offering it to the public is still illegal. But if you magically have the patch ex nihilo (you didn't write the patch nor did you get it from someone else

  • When and how did the library of congress get the responsibility for interpreting copy right laws?
    Is that something in the DMCA?

    • by aitikin ( 909209 )
      1870 when the Librarian of Congress centralized copyright functions and then the Copyright Office became its own department in 1897. As for the frequency of these interpretations, section 1201 [cornell.edu] of the DMCA provides for exemption petitions to be heard. A little more detailed link on the original story [ifixit.org].
      • thanks for the answer, I'll add that to my long list of things that should be fixed. Our legislature should not be delegating so much authority to bureaucrats.

  • by rsilvergun ( 571051 ) on Thursday October 25, 2018 @03:42PM (#57536749)
    lots of games don't work anymore because of DRM. Especially multiplayer games.
    • by dissy ( 172727 ) on Thursday October 25, 2018 @04:29PM (#57537027)

      The final ruling document isn't due to publish until tomorrow, but here is the 2018 exemptions ruling:
      (PDF warning)

      https://s3.amazonaws.com/public-inspection.federalregister.gov/2018-23241.pdf [amazonaws.com]

      Scroll down to page 19

      #8 Video games requiring server communication - for continued individual play and
      preservation of games by libraries, archives, and museums

      applies to discontinued game servers

      Page 52 has some other limited uses of stripping drm on games specifically for preservation by a limited class.
      Likely won't apply to you and I, but would to the internet archive for instance.

      Basically pages 15-20 detail the various software exemptions but not games related.

      • > Basically pages 15-20 detail the various software exemptions but not games related.

        Well, a game is a software

        • by dissy ( 172727 )

          Basically pages 15-20 detail the various software exemptions but not games related.

          Well, a game is a software

          I didn't say games can't be software, I said the other software entries are not games related :P

          #3. Computer programs - "unlocking" of cellphones, tablets, mobile hotspots, or wearable devices
          #4. Computer programs - "jailbreaking" of smartphones, smart TVs, tablets, or other all-purpose mobile computing devices
          #5. Computer programs - diagnosis, repair, and lawful modification of motorized land vehicles
          #6. Computer programs - security research
          #7. Computer programs - 3D printers

          While I would fully expect some

  • Computer programs that are contained in and control the functioning of a
    lawfully acquired smartphone or home appliance or home system, such as
    a refrigerator, thermostat, HVAC or electrical system, when
    circumvention is a necessary step to allow the diagnosis, maintenance or
    repair of such a device or system, and is not accomplished for the purpose
    of gaining access to other copyrighted works.

    Securom/Denuvo is contained in and controls the functioning of video games...
    Ah who am I kidding.

  • Limiting to "original specifications" is a major loophole and could be used to block performance improvements (in both vehicles and electronics) or ability to work with new formats of content or peripherals (the latter also applies to vehicles [I'm thinking of attachments to tractors, but it applies more generally as well] as well as electronics).

    • I bet this is geared around keeping people from breaking cripple-ware that keeps working hardware from fully functioning without the manufacturer getting some extra $$.

    • by magzteel ( 5013587 ) on Thursday October 25, 2018 @04:10PM (#57536945)

      Limiting to "original specifications" is a major loophole and could be used to block performance improvements (in both vehicles and electronics) or ability to work with new formats of content or peripherals (the latter also applies to vehicles [I'm thinking of attachments to tractors, but it applies more generally as well] as well as electronics).

      I think the intent is to prevent unlocking features that require an additional charge to the vendor.

      I suppose it could also apply to something like an engine ECU re-flash that alters performance. That one is thorny because those changes can increase emissions too, which could be illegal. Poorly done ECU tuning can also damage the engine.

  • Different part of the US gov finds that to be counterfeiting!
    Won't someone think of the brand!
  • by AndyKron ( 937105 )
    Except Apple products, right?
  • The new rules state "to a state of working in accordance with its original specifications" In other words, you can't hack the DRM to remove an annoying "feature" of said device.
    • Is the feature specified or undocumented?

      If the latter, it's not in the specifications.

  • by Anonymous Coward

    A win for farmers who were very upset with Deere not allowing owners of their tractors to service them. Something many farmers do on a regular basis. I think anyone should have a right to use whomever to repair their products.

  • The "proposal" will never get off the ground.  The corporate fix will be in and they will get to the Librarian who will mysteriously retire well above his means.

    (Unless the "Librarian" is the one from the movie and series, then the corporate shills will get their comeuppance.)

No spitting on the Bus! Thank you, The Mgt.

Working...