You are here: silicon.com > Management > IT Pro

IT Pro

Digital rights management 'could threaten privacy'

The EU steps in

Tags: drm

By Jo Best

Published: 8 February 2005 13:15 GMT

DRM - the technology that dictates everything from who can read your documents to what music player you can put your tunes on - could be a threat to your privacy, according to the EU.

An EU working party is looking into the implications of the spread of DRM - digital rights management - which is often used to protect copyrighted material such as software and music. The EU believes that the way DRM can be combined with tags that uniquely identity individuals could lead to people being unfairly or unnecessarily tracked.

The 'working document on data protection issues related to intellectual property rights' says: "As regards the development of digital rights management, the WP [working party] notes that new technologies to identify and/or trace users are being established at the level of exchange of information as well as at platform level," i.e. verifying software and hardware.

The working document adds that where information is exchanged over the internet, more and more digital watermarks tags are being used to track users and their preferences - for example, when a music track is purchased online, the purchaser has to enter their account information and unique identifier. That information - identity and musical taste - is then used in some cases for targeting marketing information.

The report says: "Electronic copyright management systems (ECMS) are being devised and offered which could lead to ubiquitous surveillance of users by digital works. Some ECMS are monitoring every single act of reading, listening and viewing on the internet by individual users thereby collecting highly sensitive information about the data subject concerned."

One such example of where data has been collected and then used to track individuals, the report says, is that of file-swappers. Music pirates have found their identities shared with record industry watchdogs as a result of information gathered by their ISPs.

"The research conducted by rights holders is usually based on the collection of the IP address of the users. This information is then combined with users' data as detained by ISPs; in some cases the rights holders directly request the identity of the user to the ISP in order to send cease and desist letters to the users," the report continues.

This practice, the EU notes, varies from country to country.

The working party "deems it necessary, in this changing context, to recall the main data protection principles and the extent to which they apply in the framework of digital right management".

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Mark Crichard Doing business with citizen developers: Beware the legal pitfalls Legal Eye: Make sure your business is protected from potential hazards

Tim Ferguson How CIOs can achieve post-recession success Q&A: McKinsey & Company on living in the 'new normal' business world


  • Jobs
Non Destructive Test Engineer

This processing will be carried out in accordance with the UK Data Protection Act. To document findings of inspections performed. Report results of ...

Information Security Manager - HAtfied

To be suitable for this role, you will have an excellent understanding of ISO27001 and ISO27002 Information Security Standards, as well as a good ...

Information Security Analyst -Finance S/W, Identity/Access Mgt, London

The role will cover the following main areas:Creating and maintaining information flow diagrams from a security prospectiveIdentity and Access ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: