You ignore the definition. DRM means - publisher doesn't trust the user and the user doesn't trust the publisher. So DRM by design dictates the risk of malware and privacy violation by the publisher (as a natural mirror towards DRM assuming that users are potential criminal infringers by default). It's a good reason to avoid using any DRMed services - i.e. lack of trust inherent in the DRM
by definition.
If you prefer to call it FUD, start with the DRM itself. It's FUD towards the users. Naturally users should have a symmetric FUD towards the publishers who shove DRM in their throats.