Windows XP activation technology revealed

By Robert Lemos, CNET News.com
Wednesday, July 11, 2001 01:54 PM
A German copy-protection company has published details of Microsoft's technology for preventing casual copying of Windows XP but concluded the technology allows for reasonable upgrades and doesn't threaten customers' privacy.

"We contribute technical facts to a discussion that is currently characterized by uncertainty and speculation about XP," Thomas Lopatic, chief technology officer for the company and an active member of the security community, said in a statement.

Microsoft's product-activation technology--included in the new Office XP software package and slated to appear in the new Windows XP operating system--requires people to activate their PC online or by telephone to continue using the software. It has attracted criticism from both privacy advocates and customers.

Many have worried that minor changes to a PC's configuration may require people to reactivate their copy of Windows XP, while others have been concerned about the amount of information Microsoft could collect on customers.

In a paper published on the Web on Monday, start-up company Fully Licensed found there's little to fear.

The paper discloses that Windows XP activation uses the IDs of 10 different hardware components to form the basis of a PC's fingerprint and proves that such fingerprints cannot be used to identify individuals.

Among the components that make up the hardware ID are a hard drive's volume serial number, the network card's MAC address and the identification string for the CD-ROM drive, the graphics card, and the microprocessor.

While the paper reveals details of the product-activation process Microsoft had sought to keep secret, it seems to support the company's assertions that product activation does not threaten privacy and will not be a burden to consumers when they upgrade a computer.

"Since our analysis proves that the transmitted information is completely innocuous, we are surprised that Microsoft has been that vague about the inner workings of WPA for all these months," Matthias Kunze, managing director of Fully Licensed, said in a statement.

A Microsoft representative said that Fully Licensed let the company see the report before publication, and that while it had some errors, the paper was largely technically correct.

"The conclusions in fact support many of the statements we have made already about product activation: We respect users' privacy, and the vast majority of users will never have to reactivate once they activate initially," the representative said.

Microsoft also did not worry that the published details may lead hackers to find a way around the activation process.

"There is no security issue here," the representative said. "Companies and individuals research, decompile and review our code all the time. There is nothing in the report that can aid hackers."


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

How to protect yourself from RAID-related UREs

Enterprise Servers & Storage

An Unrecoverable Read Error during a RAID rebuild can ruin an entire day. Scott Lowe talks about UREs and how you can avoid falling victim to this silent threat.


Read more »



Buying a projector? Try an LED TV instead

Blog thumbnail

If you're thinking of buying a new projector for your office meeting room, why not consider getting an LED TV instead. LED TVs are similar to LCD TVs except that..... by Lee Lup Yuen

Read more »

Tags

  1. battery
  2. camera
  3. graphics
  4. hard drive
  5. hewlett - packard co.
  6. high tech computer corp.
  7. intel corp.
  8. keyboard
  9. microsoft windows
  10. microsoft windows mobile
  11. mobile
  12. network
  13. notebook
  14. performance
  15. screen
  16. server
  17. storage
  18. touchpad
  19. usb
  20. vat