Microsoft closes in on Vista BIOS crack

Emulating a special OEM BIOS marker offers way to bypass Vista's anti-piracy

Written by Tom Sanders in California

Microsoft is studying a BIOS hack that allows pirates to circumvent the anti-piracy features that are built into the Windows Vista.

Reports about the crack started circulation online a few weeks ago. The method uses a feature that allows system builders to qualify new computers as licensed by inserting a short digital marker in the BIOS. Upon detection of this special marker, Windows XP and Vista bypass product activation and anti-piracy checks.

Advertisement

This OEM Activation programme is limited to large original equipment manufacturers (OEMs) with which Microsoft has a direct relationship.

The basic input/output system (BIOS) is software that is built into a computer's mother board. It provides a computer with the first instructions when it is booted up, allowing the operating system to start loading and components like the keyboard, display and disk drives to function.

Users looking to install a pirated copy of Windows Vista however can use the BIOS markers to bypass the product activation check too. This prevents Vista from getting earmarked as pirated and put in a reduced functionality mode.

Crackers could go into the BIOS and change its content to make it appear to be from a qualifying OEM. That method however is labour intensive and risky: a single programming error can permanently disable a motherboard.

A more popular method uses special software that fools Windows into believing that it is running on a qualifying system.

"While this method is easier to implement for the end user, it's also easier to detect and respond to than a method that involves directly modifying the BIOS of the motherboard," Alex Koc, a senior program manager for Microsoft's Windows Genuine Advantage programme wrote on a company blog.

While he wouldn’t say if the company plans to respond, he mentioned that the company is monitoring the situation.

"Our goal isn't to stop every 'mad scientist' that's on a mission to hack Windows. Our first goal is to disrupt the business model of organized counterfeiters and protect users from becoming unknowing victims. This means focusing on responding to hacks that are scalable and can easily be commercialized, thereby making victims out of well-intentioned customers."

Microsoft has seen cases of BIOS hacks on Windows XP over the past few years, he added, but they were limited in their scope. Koc suggested that there were easier methods of cracking Windows XP's piracy protections that kept people from using the BIOS crack.

"Because Windows Vista can't be pirated as easily as Windows XP, it's possible that the increased pressure will result in more interest in efforts to hack the OEM Activation 2.0 implementation."

Tags:

Further reading

Related whitepapers

Related jobs

Do you agree?

IT white papers

Search vnunet IThound

Top categories

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Watch

Shaun Nichols and Iain Thomson

03 Oct 2008

6.49 MBPodcast Special: Views from the Valley More...

Podcast image

02 Oct 2008

14.35 MBComputing podcast - Next-generation broadband Britain; and we report from Gartner's IT security summit More...

Shaun Nichols and Iain Thomson

26 Sep 2008

3.43 MBPodcast Special: Views from the Valley More...

Poll

Google Android

Google Android

Are you intending to try out a Google Android mobile phone?

Previous poll results

Spotlight

ISSE 2008

Sharing information key to cracking e-crime

Reluctance to report breaches only adding to the problem   More...

AMD logo

AMD expected to split into two

Separate entities to focus on chip design and manufacturing   More...

CA logo

CA pushes into virtualisation management space

Data Center Automation Manager looks after virtual and physical resources   More...

Hacking

Europeans charged in US hack attacks

British man facing 15 years in prison   More...

Primary Navigation