Bonum Certa Men Certa

DRM: Defectis Repleta Machina

By Alexandre Oliva and Fernanda G. Weiden

Candado



Summary: This article is a draft of a revised version of the one published in the ComCiência magazine on December 10, 2006 [ORG], translated by FSFLA's translation team.

As you start your brand new car to go to the beach, you realize it won't let you do it. Murphy's law can often make it seem like mechanical failures are nature's way of opposing your wishes. But what if the car manufacturer had reasoned that, by selling you a car that will take you to work but not to have fun at the beach, it would be able to sell you another car specifically for beach visits?



"What's the distance from an electronic failure that gets a Thai official stuck in his automobile [BMW,BM2] to an anti-theft device that deliberately imprisons inside the car anyone not explicitly authorized, restraining her right to freedom of movement under the pretext of stopping a potential crime?""The Right to Read" [R2R], published in the magazine Communications of the ACM (CACM), one of the best-regarded publications in computing, prophesied in 1996 the pervasive use of software and remote monitoring as tools to control access to knowledge and culture. In the article, textbooks and articles are only available electronically, and students are forbidden from sharing them with their colleagues; monitoring software on every computer, and severe penalties upon those that merely appear to be attempting to circumvent it, pretty much ensure compliance. After a mere 10 years, we may get the impression that the author got it both right and wrong. Access restrictions are indeed already present in some electronic textbooks and articles, but they have showed up far more often in the entertainment field, limiting access to music, movies, etc. Are we facing a problem even bigger and worse than the CACM article forecast?



DRM, for Digital Restrictions Management, means any technique that seeks to artificially limit, by software, hardware or a combination thereof, the features of a digital device with regards to access or copying of digital content, so as to privilege whoever ultimately imposes the technique (e.g., not the DVD player manufacturer, but the movie industry), in detriment of whoever uses the device. Considering that nowadays microprocessors inhabit not only computers, but also cellular telephones, electronic games, sound, image and video devices, remote controls, credit cards, automobiles and even the keys that open them, it should be at least worrying that all this equipment may be programmed to turn against.



What's the distance from an electronic failure that gets a Thai official stuck in his automobile [BMW,BM2] to an anti-theft device that deliberately imprisons inside the car anyone not explicitly authorized, restraining her right to freedom of movement under the pretext of stopping a potential crime?



In spite of all resources used to keep potential invaders outside homes and cars, as far as we can tell there aren't any anti-theft devices that keep them in, should they succeed in breaking in. This is due in part to respect for invaders' rights, and in part for vendors' fear of imprisoning the device owner himself, his relatives or friends, or of causing them other kinds of physical or moral harm.



DRM systems are portrayed by their proponents as anti-theft devices, similar to those available for homes and automobiles. Oddly, even people who'd never accept an anti-theft device that could imprison themselves are often willing to pay for the restraint on their freedoms imposed by DRM systems.



The same publishers that are powerful enough to pressure customers to pay for the development and adoption of DRM systems also use that power to make authors sign contracts that let the publisher decide what restrictions to impose, all under the pretext of hindering unauthorized access and copying, that cause them alleged losses.



The moral value of sharing, formerly taught at schools as something good for society, through incentives to sharing toys taken to classrooms, is slanderously labeled with a term that also refers to people who attack ships, stealing their cargoes and killing or enslaving their crews [MIC]. The confusion and bias of the term intellectual "property" [NIP], further elaborated in the Orwellian fallacy of copyright "protection" [WTA], turns people's attention away from the fact that copyright was created with the express purpose of growing the body of works available to the whole society, using, as incentive to creation, temporary and limited monopolies granted by society to their authors [EPI].



As a result of these misconceptions, the Brazilian population silently accepted the change to its copyright law, that up to 1998 permitted the creation of complete copies, for personal use, of works covered by copyright, so as to permit only copies of small portions [PNL]. Americans, in their turn, accepted a new delay in Mickey's entry in the public domain, with an extension of the copyright duration for another 20 years [CLG]. These are the first steps to the scenario described in the CACM article [R2R].



Unlike the practice for anti-theft devices, that are designed to respect the users, enabling them to activate or deactivate the system, and to respect even the rights of transgression suspects, DRM takes a far more aggressive posture, treating even the owner of the device as a criminal, without room for presumption or even proof of innocence. DRM takes control of the system away from the users' hands, since, just like the defective Thai car, it doesn't offer an option to turn the system off. Since, in the DRM case, the defect is deliberate [DlD], the control remains in third parties' hands, who use the devices you pay for to promote their interests to your own detriment. In fact, for DRM, you are the invader. But since you pay their bills, they want to keep you not outside, but rather inside, entertained and controlled [EeC].



DRM does not hesitate in trampling over your rights; not only international human rights [HRD,DlD,ADR], but also those guaranteed b copyright laws throughout the world, even restrictive ones like Brazil's [RDA]. Some examples of rights trampled over by DRM are:





In fact, these systems often collect information and send it to a remote controller, interfering arbitrarily with the user's privacy. In at least one of these cases, that got widely known, a DRM system developer did not hesitate in infringing third parties' copyrights to create a spying program, that installed itself, silently and automatically, in a computer in which a music CD containing it was loaded, and enabled the computer to be remotely controlled, without any option to remove or deactivate it [SNY]. Is it legitimate to disregard others' rights to try and seek bigger profits?



DRM systems are implemented by combining software and hardware. There are several techniques; we cite but a few examples:





As ways to work around these artificial restrictions become public, enabling people to exercise their rights guaranteed by law, new ever-more-restrictive efforts take their place, in an attempt to avoid alleged losses that disregards actual losses imposed on society, not only because of the increased direct and indirect costs of equipments due to the imposition of unfair restrictions [WVC], but even more importantly because of the unfair restrictions themselves.



Some of these efforts are in the legislative front: USA's Digital Millennium Copyright Act criminalizes the mere distribution of devices or publication of knowledge that enables people to bypass DRM. USA have tried to impose similar legislation on other countries with whom they sign "Free" Trade Agreements [TLC]. Laws that strengthen DRM turn its proponents into private legislators, with powers to unilaterally change contracts, by restricting access retroactively.



Other efforts are in the judicial front: associations that claim to represent the interests of musical authors, but that in fact represent the interests of record labels, have spread fear by suing regular people, accusing them, without proof, of copyright violations [RLS,MdM].



The technical front is not ignored: a security architecture based on a combination of software and hardware, formerly called Trusted Computing, has been co-opted to serve not the interests of computer owners, but rather those of DRM systems [TCM], the reason why we prefer to call it Treacherous Computing [TcC,CTr]. This technique can be used to stop installation or execution of software, against the user's will, or even the creation or correction of such software; to selectively prevent the creation, access or preservation of certain files [IRM]. That is, to prevent a general-purpose computer from obeying user's commands, turning it into a limited entertainment platform, that puts on third parties' hands the decision on what, when and how the user can use or consume. Somewhat like the car programmed to not go to the beach, or the electronic books stored in computers in the CACM article.



All these techniques do a lot to make law-abiding regular citizens' lives difficult, but they can't stop those who run their businesses based on commercialization of unauthorized copies. For the latter, the investment needed to work around the restrictions pays off, so all these restrictions end up missing their goal, while they limit and disrespect freedoms of most of the population.



This disrespect is not new and, in fact, it has made room to make DRM techniques effective. Free Software [FSD], that respects users' freedoms to inspect the program, modify it or hire third parties to do so, and run the original or the modified program, without restrictions, when used to implement DRM techniques, renders them ineffective, since the user would have the power to disable artificial restrictions or add features that had been left out. As a result, laws that prohibit tools to bypass DRM have the effect of prohibiting Free Software for accessing published works.



Software patents [SPE,NSP] are another threat to freedom that a few developed countries are trying to impose upon other countries. A legally-valid software patent, issued in a country that allows such patents, gives the patent holders the power to block, in that country, the development and distribution of software which implements the patented feature. If the companies in a DRM conspiracy have patents on some aspects of the decoding process, they can use these patents as another means to block software that can access the same works but without the restrictions.



It shouldn't be surprising that the Free Software Foundation [FSF] and its sister organizations all over the world denounce the risks of these limitations to individual freedoms [DbD,DRi,EeC], and at the same time update the most widely used Free Software license in the world [Gv3,GPL,Gv1], such that it better defends software users' and developers' freedoms against these new threats. The GNU GPL is the license used by most components of the GNU operating system, and by the Linux kernel, the most common kernel used with the GNU operating system. (Most users unknowingly refer to this combination Linux, but that is properly speaking the name of the kernel alone [YGL].)



Anyone who seeks knowledge or culture in digital formats has her rights threatened by DRM. In fact, the impossibility to preserve society's knowledge and culture in face of all these artificial limitations may cause our civilization to be seen in the future as a dark age, since, unless we can help it, all of our knowledge will have been stored in formats that, instead of ensuring its preservation, in the perfect conditions enabled by digital storage, seek to ensure its unavailability.



"If consumers even know there's a DRM, what it is, and how it works, we've already failed," -- Peter Lee, an executive at Disney [Eco]



When you see the acronym DRM in a product's ad, remember that it's not a feature, it's a warning label. Remember that DRM stands for Defectis Repleta Machina, or Defect-Ridden Machine. So, when you get to make a choice, while purchasing movies, songs, electronic books, games, etc, between a form limited by DRM and an unlimited one, prefer the unlimited form, unless you can work around the DRM techniques. When there isn't such a choice, reject monopolized and restricted content, as well as the legal mechanisms, the equipment and the techniques that support them. Use your freedom of choice today, avoiding short-sighted decisions that empower interests that, should they prevail, will restrain any possibility of choice in the future. Spread the word on the risks and support campaigns that do it [DbD,DRi,EeC,BDV]. Join us in the Latin-American anti-DRM campaign, Entertained and Controlled, in the FSFLA [FLA] mailing list [A-D].






We thank Richard M. Stallman, Eder L. Marques, Glauber de Oliveira Costa and Fernando Morato for their reviews and suggestions.






[R2R] http://www.gnu.org/philosophy/right-to-read.html



[BMW] http://catless.ncl.ac.uk/Risks/22.73.html#subj4



[BM2] http://www.zdnetasia.com/news/hardware/0,39042972,39130270,00.htm



[MIC] http://www.gnu.org/philosophy/misinterpreting-copyright.html



[NIP] http://www.gnu.org/philosophy/not-ipr.xhtml (see also the discussion on Intellectual Property on the [WTA] page)



[WTA] http://www.gnu.org/philosophy/words-to-avoid.html#Protection



[EPI] http://www.fsfla.org/?q=en/node/128#1



[PNL] http://www.petitiononline.com/netlivre



[CLG] http://www.cartacapital.com.br/index.php?funcao=exibirMateria&id_materia=3446 (in Portuguese)



[DlD] http://www.fsfla.org/?q=en/node/101



[EeC] http://www.entretidosecontrolados.org/



[HRD] http://www.unhchr.ch/udhr/lang/eng.htm



[ADR] http://www.fsfla.org/?q=en/node/107



[RDA] https://www.planalto.gov.br/ccivil_03/Leis/L9610.htm, articles 46 to 48 (in Portuguese)



[SNY] http://en.wikipedia.org/wiki/2005_Sony_BMG_CD_copy_protection_scandal#Copyright_violation_allegations



[WVC] http://www.cs.auckland.ac.nz/~pgut001/pubs/vista_cost.txt is a good article overall, even if it falls prey of the "content protection" fallacy [WTA] and it mistakes Linux for an operating system name [YGL].



[TLC] http://www.fsfla.org/?q=en/node/117



[RLS] http://info.riaalawsuits.us/howriaa.htm



[MdM] http://overmundo.com.br/overblog/inaugurado-o-marketing-do-medo (in Portuguese)



[TCM] http://www.lafkon.net/tc/, with subtitles at http://www.lafkon.net/tc/TC_derivatives.html



[TcC] http://www.gnu.org/philosophy/can-you-trust.html



[CTr] http://www.dicas-l.com.br/zonadecombate/zonadecombate_20061106 (in Portuguese)



[IRM] http://www.informationweek.com/story/showArticle.jhtml?articleID=196601781



[FSD] http://www.gnu.org/philosophy/free-sw.html



[SPE] http://www.fsfeurope.org/projects/swpat



[NSP] http://www.nosoftwarepatents.com/en/m/dangers/index.html



[FSF] http://www.fsf.org/



[DbD] http://www.defectivebydesign.org/



[DRi] http://drm.info/



[Gv3] http://gplv3.fsf.org/



[GPL] http://www.gnu.org/copyleft/gpl.html



[Gv1] http://www.gnu.org/copyleft/copying-1.0.html



[YGL] http://www.gnu.org/gnu/why-gnu-linux.html



[Eco] http://www.economist.com/displaystory.cfm?story_id=4342418



[BDV] http://badvista.fsf.org/



[FLA] http://www.fsfla.org/



[A-D] http://www.fsfla.org/cgi-bin/mailman/listinfo/anti-drm



[ORG] http://www.comciencia.br/comciencia/?section=8&edicao=20&id=216 (in Portuguese)






Copyright 2006 Alexandre Oliva, Fernanda G. Weiden



Copyright 2007 FSFLA



Permission is granted to make and distribute verbatim copies of this entire document without royalty provided the copyright notice, this permission notice and the URL below are preserved.



http://www.fsfla.org/blogs/lxo/draft/defectis-repleta-machina

Recent Techrights' Posts

WordPress Becoming What We Feared It Would Become
WordPress and other such bloatware (WordPress used to be fast and light) are moving in the same trajectory that GAFAM leads
Call for European Patent Office (EPO) Whistleblowers
The European Patent Organisation (EPO) might not reform the Office
400-Page US Federal Court Against Abuses by Google, Microsoft and Front Groups That Abuse Volunteers for American Corporations
There are 386 pages in total (in the US claim)
Projection Tactics - Part IV: SLAPP by Americans Against Techrights (UK) to Hide Serious Abuses Against American Women
"PRs need to stop being complicit in suppression of information via SLAPPs"
Five Years Ago, After We Broke the Story About Richard Stallman Rejoining the FSF's Board, All Hell Broke Loose (for Me and My Family)
They generally seem to target anyone who thinks Richard Stallman (RMS) should be in charge or thinks alike about computing
Projection Tactics - Part II: Causing "Serious Harm" to Many People (Even Animals)
Narcissists and sociopaths are like that
Sirius Open Source's Latest Report: Fake (False) Number of Staff, Almost No Money in the Bank, Overdraft, and Growing Debt (About £100,000 More Borrowed)
massive (and still growing) debt
 
What Security Means
Security does not mean asking Microsoft for permission
Microsoft May be Losing 10,000+ Workers This Month
Here's the quick math
BSN Senior School Leidschenveen is Shutting Down and What That Means to the European Patent Office (EPO)
Follow-up meeting with Site Manager VP1 on school matters
Gemini Links 01/07/2026: Keeping (Relatively) Cool plus Adventures in Solar, Camp Snap Cameras and XTEINK X4 Ereader Reviews
Links for the day
European Patent Office (EPO) Series: Different Strokes For Different Folks
Organisation operating in two parallel universes
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, June 30, 2026
IRC logs for Tuesday, June 30, 2026
GNU/Linux Measured at 4.4% by statCounter, Even More by analytics.usa.gov
GNU/Linux has fared well
Getting Skyped: Closure of Studios Microsoft Bought
wait till July and the mass layoffs outside XBox
Several Waves of Red Hat Layoffs This Year, Is This Still Going on Under IBM?
The PIPs and NDAs hard to get a clear picture
Sabine Hossenfelder Versus IBM Scamming Shareholders
IBM has become a garage of BS
Some XBox Layoffs Underway, At Least Five Studios to be Shut Down
Insiders are in a state of panic
Gemini Links 30/06/2026: Music Theory, Addiction, Clown Computing
Links for the day
Links 30/06/2026: France Recorded 1,000 Excess Deaths During Heat Wave, Slop Replaced by Human Staff
Links for the day
People Given the Totally Wrong Idea That "Secure Boot" is About Security (It's the Opposite, It's About Handing Control Over to NSA/Microsoft)
"Secure Boot" with capital "B" is conflating compromise with security.
Today The Register MS is Publishing Fake Articles About "AI", 100% of All "Content"
Maybe the media is dying because it is selling its soul [...] The Register MS has no standard
America Has Cost Europe Too Much
Countries ought to be controlling all their own systems
GAFAM Debt Will Surge, in July We'll Know by How Much
Do not fall for slop or sloppy narratives
Too Many "Marketers on the Payroll" at IBM, Selling Impossible Products That Cannot be Delivered or Will Never Deliver
IBM is rotting away
Media Says Microsoft's (XBox) Layoffs May be Record-Breaking
think somewhere in the range of ~5000 for gaming/XBox alone
Links 30/06/2026: What's Wrong With EU Age Verification, RSA Keys with Many Zeros
Links for the day
This is Not a Security, This is a Circus
Security does not mean "asked Microsoft for permission"
Communities Need Strong Leadership, Not Dictators Like IBM
Leadership in Free software is not ownership [...] Fedora will only last as long as IBM can somehow make some money out of it or leverage it to attract sharecropping
Patents Are Not "Cash Cows"
People who deliberately don't understand patents (or believe lies about them) will fail to understand how the world works (or does not work)
Sad Lives of People Who Think Women Are Just Sexual Toys (All They Have is Money)
money is still a man-made concept and life is finite
SLAPP Censorship - Part 123 Out of 200: Why Violence Against Animals Matters
Starting tomorrow (Wednesday) we'll begin telling stories about what happened last week
EPO Staff Union's (SUEPO) The Hague Committee, With Help of Lawyer, Challenges Lack of Rewards for Hard Work
The EPO is not about granting valid patents anymore. The horse-trading corrupt officials just see the EPO as some thing that "prints money"
Massive EPO Demonstration Today
It'll start in about 6 hours
More Layoffs in Microsoft's PR Department, Even Ahead of 'D-Day'
Notice they are not even waiting for the official date (nor week)
European Patent Office (EPO) Series: Photo-Ops Galore and Suspicions of Influence-Peddling
coverage of the EPO's Croatian junket
Gemini Links 30/06/2026: Music and Broken Hearts
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, June 29, 2026
IRC logs for Monday, June 29, 2026
Gemini Links 29/06/2026: Using More of GPLv3+ and Merits of Security by TOFU
Links for the day
Links 29/06/2026: Lemote Yeeloong Laptop With OpenBSD, Slop Ruins Code/Development
Links for the day
Antisocial People With No Computer Science Background Are Ruining the Technology Space (Like Officials With No Experience in Patents Destroyed the EPO)
This is a real issue; it needs to be widely recognised and tackled
DDoS Attacks Are a Crime and They Only Increase Interest (Intrigue) in Their Target
Information cannot be DDoSed out of reach/existence, except temporarily
Pushing to the Top
Publishing is about exposing corruption
Whistleblowing and Retaliation by Microsoft Workers Against Microsoft Seems Increasingly Likely
some will go to the press, looking to expose some shenanigans
How Long Can a Company Delay Its Financial Report That Likely Confirms Exodus of Staff, Growing Debt, and Other Problems?
Brett Wilson LLP was meant to release its annual report some time early this month
SLAPP Censorship - Part 122 Out of 200: Garrett's Solicitors Confirm That Garrett is Ban-Evading and Spying on Our IRC Network
his solicitors basically acknowledge this
European Patent Office (EPO) Series: Networking With the National Delegates
António Campinos with a prime opportunity to network with the Administrative Council delegates and lobby for his reappointment
PIPs and "Retirements": IBM Layoffs in Anything But Name
That former Red Hat (now IBM) staff threatens to put my wife and I in prison is worse than cruel
Contact Members of the EPO Administrative Council, Tell Them the EPO (Office) Became a Disgrace and an Enemy of Europe's Citizens
If you live in Europe (not just the EU, even Turkey is included), please contact your delegates
The World Needs GNU/Linux for Security, Turn Off "Secure Boot" (It's the Opposite of Security)
They call it "Secure Boot", but what does it mean to say "Secure" when you actively opt for back doors controlled by Microsoft, the FBI, and many more parties?
In Signal of Weakness or Phasing Out XBox (Not Sustainable, According to the CEO) Microsoft "Pauses New Third-Party Game Pass Deals"
Moments ago
Two Pieces About "AI" This Morning Were Paid-For SPAM at The Register MS
The Register MS is the "Tech News" publisher you can pay to promote your company and even key-word-stuff pages for SEO purposes
Week of Microsoft Layoffs, Maybe Record-Breaking Scale
They will mislead about the scale
Links 28/06/2026: More Om Malik Eulogies, Cloudflare Promotes Web Browser Monocultures
Links for the day
IBM's Alderon as "Silent Layoffs", Not Just Bailout From Taxpayers
Seeing through the noise
'Modern' Web: "Stop! You Are Browsing Too Fast!"
Can the Web ever recover from this?
Pensions Tied to Ponzi Schemes Are Themselves Ponzi Schemes
Pensions are becoming more like that as well
Laptop Bricked After Microsoft Certificates Expiry
Is "Jim" dead?
Monoculture in Europe as National (or Continental) Security Threat
We need more browser diversity
Canada 5-0: GNU/Linux Rises to 5.0%, Windows Rapidly Falls to New Lows
Will we be seeing 6-0 (6%) by year's end and will Microsoft be shown two red cards?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, June 28, 2026
IRC logs for Sunday, June 28, 2026
Gemini Links 29/06/2026: Sansieviera, HiFi, and Self-Signed Certificates
Links for the day