Top
Best
New

Posted by shdon 13 hours ago

Quake Shareware, a CD-ROM just a little too full(fabiensanglard.net)
366 points | 155 commentspage 2
zf00002 11 hours ago|
I remember Microsoft had a time limited version of Office on cd-rom that was sold for a couple bucks at Kinko's. You could replace a .dll in it and that removed the time limit.
bombcar 8 hours ago|
There was something similar (but I can't recall what) where you just set your clock far in the future (like 2010!) and then the trial would last that long + one month.
classichasclass 12 hours ago||
Man, those CompUSA and Computer City pictures take me back. Spent too much time there (when the 7300 was my regular Mac, the CompUSA "Apple store" was my primary source of software). Probably still have some of those free Computer City floppies in a drawer somewhere.
tetrisgm 2 hours ago|
It was fun to just browse. As least as a kid it was
fullstop 12 hours ago||
Ha, I remember buying the shareware disk and unlocking every game on there. Plus you got the soundtrack which was pretty cool.
andai 12 hours ago|
Did it work as an audio CD, the way PS1 games do?
fullstop 12 hours ago||
Yes, the game just played it as a regular CD. In fact, if you put a different disc in the drive it would play the tracks from there instead. There were also console commands to change the track, stop the music, loop, or even reload the disc information if you needed to refresh it after swapping CDs.
olyjohn 11 hours ago||
Yeah, and I remember if you didn't have the audio cable that went from the CDROM into your sound card, you would never hear the tracks. It wasn't your computer decoding the music, the CDROM drive was simply doing the decoding, and passing the audio out into a CDROM input (just a line-level audio signal) on your sound card.
jaredhallen 10 hours ago||
I'd forgotten about those little cables. If I recall correctly, they were small round cables, with maybe four conductors and a little flat connector with a clip?
indrora 10 hours ago||
4-conductor audio, generally.

Later on there was a generation of two-conductor cables that used SPDIF/PCM Audio instead of analog audio for better fidelity.

notpushkin 6 hours ago||
I vaguely remember CD drives with a headphone jack output!

(E.g. this one: https://pavel.network/using-cd-drive-as-poor-man-audio-playe...)

ekelsen 12 hours ago||
Was there anyway to make this work unless every CD was burned with a different key used to do the encryption?
jasonfarnon 11 hours ago||
No. That cracking group would have known a priori the phone call was a pretense, because id was very unlikely to press distinct CDs. So they could focus on conventional cracking techniques.
netsharc 12 hours ago|||
Maybe have n versions of the CD (maybe 16, or 32), so there are n decryption keys. When the buyer recites the code over the phone, the program run by the salesperson can identify which key is used based on the number.

The hacker groups would be a little frustrated trying to find all of the different CDs.

duskwuff 11 hours ago||
The setup costs for a pressed CD are substantial - manufacturing many different designs would have been much more expensive, and would have only slowed down crackers marginally. It's unlikely that this would have recovered enough sales to be worth it.
fluoridation 12 hours ago|||
A reminder that CD-ROMs are pressed from glass masters, not burned like CD-Rs. I wonder if anyone has tried something like this with burned discs, though.
kevin_thibedeau 10 hours ago|||
The multisession standard actually afforded the possibility of CD-PROM; a hybrid disc with a pressed read-only session followed by a writable section. It was only used for Kodak Picture CD (not the same as Photo CD) to hold software in the pressed session. It also apparently standardized a magneto-optical hybrid that never made it to market.
kalleboo 10 hours ago|||
It was also used by Ricoh EncryptEase - CD-Rs with encrypted backup software in an initial pressed track. https://www.youtube.com/watch?v=_5ucImqdKbY
notpushkin 6 hours ago|||
Hmm, it could work then if they’ve pressed most of the game data first and then recorded the encrypted part for each disk. But I guess the tooling for such setup would still be too expensive.
ekelsen 11 hours ago|||
Yes, my point, if the answer is that there is no way this works without every disc being different.

It was not possible to manufacture at the time at scale.

fluoridation 10 hours ago||
It's still not possible. You would need to make a unique master for every individual unit.
vanviegen 4 hours ago||
You'd use CD-R of course.
fluoridation 4 hours ago||
With CD-Rs it was already possible in the mid '90s, if we're talking mass production. CD-Rs are a little more expensive to produce, but not much more so. A slight concern is that readers of the time might not have been able to read the discs, because CD-Rs are not quite as reflective as CD-ROMs.
loeg 12 hours ago|||
Some sort of public key crypto scheme + including hard-to-change local device characteristics in the challenge.
eru 9 hours ago||
I guess the path of least resistance then would have been to patch the executable to remove the check.
loeg 7 hours ago||
Right.
kg 12 hours ago||
You would need some sort of hardware serial number system for PCs and a whole security infrastructure to verify that the serial number being used for the unlock wasn't faked. Then you could do per-PC unlocks. I'm not aware of anything like that being widespread back in the Quake days, though these days every computing device you own probably has a unique ID burned into ROM somewhere.
chocochunks 12 hours ago||
Supposedly Xbox One+ discs are individually serialized which was originally going to be used for their DRM system at launch that was walked back.
lukwoz 4 hours ago||
"Never attribute to malice what you can attribute to stupidity. And never attribute to stupidity what you can attribute to time pressure. -- Fab's Razor".

Surfacing this gem of a razor here, as it's buried deep in the (fantastic) blog post. Indeed, all too often, what we attribute simply to stupidity/ignorance, as per the classic Hanlon's razor, is actually downstream of market/client/management/deadline etc. pressure.

edg5000 9 hours ago||
Am I reading this right, and was only the file header encrypted? Also, wasn't ID the company that did not use serials or other DRM? Maybe that explains their naivite, maybe they underestimated how easily games get cracked.
jamesfinlayson 7 hours ago|
Not sure about the early days - I got a Quake II CD in the early 2000s that didn't need a CD key. Doom 3 and Quake 4 required CDs, at least at release, but after a little while no CD patches were released.
netsharc 12 hours ago||
Man, if I were id, I'd sue the hell out of Testdrive for selling me that broken security system...
jhy 11 hours ago|
But it sounds like it wasn't Testdrive's fault; iD implemented it incorrectly. Their phone support weren't issuing the decrypt code, just a simple checksum:

> Described as is, there is no flaw in this process. The secret seed comes from the unlock server, tied to a CHALLENGE/SERIAL that could not be reused. But the hacker team GNOMON found a way.

> The QUAKE unlock program FLOW.EXE that ships on the CD is capable of generating the SERIAL from the CHALLENGE on its own. All it does is check that its own locally-generated SERIAL and the SERIAL entered by the user match! The entire protection mechanism relies on security by obscurity.

codebje 10 hours ago||
If the phone support issued the decrypt code, you could just replay that same code for every CD stamped from the same master.

If phone support issued an encrypted decrypt code that could only be used with your challenge code to decrypt the decrypt code, replay wouldn't be as trivial.

Every CD is identical, so no matter how iD went about this there's only ever one decryption key (per title, I assume) and those keys must either have been encoded in iD support's response, or already stored on the CD. TestDrive sold iD on the notion that the process was too hard for hacker groups to reverse engineer, and it wasn't.

jandrese 7 hours ago||
There was some replay protection as described in the article, but in the end the system was flawed enough that it didn't matter.
toast0 11 hours ago||
> A gamer could go to any of the hundreds of CompUSA/Computer City stores and buy the CD for $9.95.

I'm pretty sure I bought it for $6.66

phendrenad2 5 hours ago||
Those photos of the inside of CompUSA are just stunning. Bright sodium lighting, not a dim dank cave (one of the benefits of CRTs over modern OLED screens and their color range from black to slightly-less-black). Colorful packaging everywhere (this was before fun was made illegal in 2012). Big signage, so you know where things are (the idea of a customer knowing where to find something without being diverted to an antivirus upsell by a "helpful" "associate" didn't bother MBA CEOs back then. Nowadays the idea would cause them them to spontaneously combust).
andai 12 hours ago|
That box art is so cool. They don't make em like they used to!
More comments...