Windows 7 cracked by pirates

Users hack BIOS for early look at OS.

Pirates have already cracked Windows 7 just a week after the operating system made RTM and a week before it's scheduled to reach users, said Microsoft.

The product key posted on the web purportedly comes from Lenovo, one of Microsoft's major OEM partners, and allows users to activate downloaded copies of Windows 7 Ultimate RTM (release to manufacturing), which leaked to the Internet last week, shortly after Microsoft announced it had finished the operating system.

According to Windows enthusiast site Neowin, one of the first to report the crack, a Lenovo disk image of Windows 7 leaked to a Chinese website, then moved to English-language domains. Pirates proceeded to retrieve the master OEM key and the OEM activation certificate from the .iso file. Microsoft lets major computer makers like Lenovo, Dell and Hewlett-Packard pre-activate new PCs at the factory to save customers the hassle, and provides OEM master keys for that purpose.

Microsoft tells users to beware upgrading from Vista to Windows 7 | Windows pirates blamed for high malware rates

Windows 7 uses an updated activation scheme, dubbed OEM Activation 2.1, which is an updated version of the activation software that first appeared in Windows Vista. The technology, ironically, has been the focus of a Microsoft lawsuit filed last January against a former employee charged with stealing company documents related to the anti-piracy software that computer makers use to lock Windows to their PCs.

The crack is not for the faint of heart, as it also requires a hack of the PC's BIOS; Activation 2.1 demands a BIOS that supports the new technology. In fact, forums on sites such as My Digital Life were full of questions from users unfamiliar with hacking a BIOS.

But scores of users on My Digital Life's forum have reported that the leaked key - and the process that others laid out to use it - activated their pirated copies of Windows 7 Ultimate. "Activated 3 computers with SLIC 2.1 (DELL) modified BIOS + DELL certificate for Vista + this key," said a user identified only as "thavmym."

This isn't the first time that Microsoft's copy protection technology has been cracked. Vista's activation has been hacked several times, and in volume sufficient to prompt Microsoft to issue updates that busted the most popular cracks. When it delivered Vista Service Pack 1 (SP1), for example, it cracked down on a pair of cracks that pirates had been using to activate downloaded copies of the OS.

Microsoft acknowledged the crack today, but its reaction was in line with past takes on the topic. "We are aware of reports of activation exploits that attempt to circumvent activation and validation in Windows 7," said a company spokeswoman. "[But] Microsoft strongly advises customers not to download Windows 7 from unauthorised sources," she added, then reminded users that "peer-to-peer websites exposes users to increased risks, such as viruses, Trojans, and other malware and malicious code."

In May, a leaked copy of Windows 7 Release Candidate (RC) turned out to be infected with a Trojan horse.

Windows 7 is scheduled for public release 22 October, but subscribers to the for-pay TechNet and MSDN services will be able to download the final code, along with legitimate product activation keys, starting next Thursday.


What are your views on this subject? Use the form below to post a comment on this article up to 500 characters.


Characters remaining: 500

Add your commentComments

BlueCollarCritic | Published: 20:24 GMT, 29 October 2009

In this day & age I have to question as to which is more dangerous to a users system; using a pirate download/torrent site or blindly following Windows License Validation scheme. At least with the Pirate site, they aren't pretending to have your best interests at heart and that you won't get screwed by them.

Related Operating Systems news

Oracle given breathing space by EC

Regulator gives an extra week to prepare Sun takeover arguments.

Microsoft, Linux rivals mock Google Chrome OS

Operating system crippled by reliance on web access

Google releases Chrome OS to waiting world

Stresses speed and security of operating system.

NSA helped with work on Windows 7 security

Privacy organisations concerned about spooks' involvement.

Related Operating Systems reviews

Jolicloud OS

Moblin 2.0 review

Ubuntu Netbook Remix



Email this article to a friend or colleague:


PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.

Techworld White Papers

Database security: Preventing enterprise data leaks at the source

IDC discusses the growing internal threats to business information, the impact of government regulations on the protection of data, and how enterprises must adopt database security best practices...

Download Whitepaper

Service-oriented security

SOA has become an integral part of enterprise software by providing a framework to efficiently develop software as services that is easily sharable, reusable, and integrated. No where is the need more apparent than in the Identity Management space. Welcome to the age of Service-Oriented Security (SOS).

Download Whitepaper

Data protection prospective vendor checklist

Organisations need a way to map business needs against all these challenges in procuring a technical solution. To help, SANS has developed the following Prospective Vendor Checklist.

Download Whitepaper

Unlock the power of the mainframe

This whitepaper presents the notion of CICS as an integration hub based on a component-based, service-oriented architecture supporting Web services. Highlights will review the challenges and contrasted support for Web services natively in CICS.

Download Whitepaper

Techworld UK - Technology - Business

COLT White Paper

Are all VoIP services the same?

Questions to ask your service provider to ensure you get the VoIP service you need
With careful choice of partner, your business can have all the advantages of VoIP access - reduced costs, flexibility and simplicity - without the drawbacks.
This white paper is your guide to ensure you get right the VoIP service and details the pitfalls which businesses would do well to avoid.

Download white paper
BMC

Ride the express lane in the journey to speed ITIL adoption

Explore the challenges in making the journey to ITIL and the criteria for selecting consulting services
By following ITIL practices, your IT organisation will become more closely integrated with the business. We recommend making the journey to ITIL in a sequence of six incremental steps, the phases of which are driven through execution of a strategic transformational roadmap.

Download white paper

Webcast: IT Financial Management: Cost Optimisation for Efficiency and Agility.
On Demand Webcast
Join this webcast to learn about the techniques and technologies that can help you prove the value of IT to the business by understanding the true cost of today's IT services and those that will be necessary to deliver future success.

Register Today

Site Map

IDG Network

* *