[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help] 

Status: Not Logged In; Sign In

Elon Goes "DARK MAGA" - Joins Trump ON STAGE! Media Melt Down Ensues

The Truth About the Memphis Belle (No Hollywood)

JD Vance ENDS CNN Dana Bash’s Career LIVE on Air

Hell Let Loose - MOATS with George Galloway

Important Message: Our Country Our Choice

Israel is getting SLAUGHTERED in Lebanon, Americans are trapped | Redacted

Warren Buffett has said: “I could end the deficit in five minutes.

FBI seizes Diddy tape showing Hillary Clinton killing a child at a 'Freak Off' party

Numbers of dairy cow deaths from bird flu increasing to alarming rates

Elites Just Told Us How They'll SILENCE US!

Reese Report: The 2024 October Surprise?

Americans United in Crisis: Mules Carry Supplies to Neighbors Trapped by Hurricanes Devastation in NC

NC STATE POLICE WILL START ARRESTING FEDS THAT ARE BLOCKING AIDE FROM OUTSIDE SOURCES

France BANS ARMS SALES To Israel & Netanyahu LASHES OUT At Macron | Iran GETS READY

CNN Drops Bomb on Tim Walz, Releases Blistering Segment Over Big Scandals in His Own State

EU concerned it has no influence over Israel FT

How Israels invasion of Lebanon poses risks to Turkiye

Obama's New Home in Dubai?,

Vaccine Skeptics Need To Be Silenced! Bill Gates

Hillary Clinton: We Lose Total Control If Social Media Companies Dont Moderate Content

Cancer Patients Report Miraculous Recoveries from Ivermectin Treatment

Hurricane Aid Stolen By The State Of Tennessee?

The Pentagon requests $1.2bn to continue Red Sea mission

US security officials warn of potential threats within two weeks, ramped-up patrols.

Massive Flooding Coming From Hurricane Milton

How the UK is becoming a ‘third-world’ economy

What Would World War III Really Look Like? It's Already Starting...

The Roots Of The UK Implosion And Why War Is Inevitable

How The Jew Thinks

“In five years, scientists predict we will have the first ice-free Arctic summer" John Kerry in 2009


(s)Elections
See other (s)Elections Articles

Title: Evaluating the Security of Electronic Voting Systems
Source: UCSB
URL Source: http://www.cs.ucsb.edu/~seclab/projects/voting/
Published: Sep 23, 2008
Author: CSG
Post Date: 2008-09-23 16:00:35 by Split
Keywords: None
Views: 46
Comments: 2

Are your votes really counted?

Electronic voting systems have been introduced to improve the voting process. Since their inception, they have been controversial, because both the technologists and the general public realized that they were losing direct control over an important part of the voting process: counting the votes.

A quote attributed to Stalin says: "Those who cast the votes decide nothing. Those who count the votes decide everything." It is clear that voting systems represent a critical component of a democracy. Although the consequences of a malfunctioning electronic voting system are not as readily apparent as those for air traffic control or nuclear power plant control systems, they are just as important, because the well-being of a society depends on them.

While most critical systems are continuously scrutinized and evaluated for safety and correctness, electronic voting systems are not subject to the same level of scrutiny. A number of recent studies have shown that most (if not all) of the electronic voting systems being used today are fatally flawed, and that their quality does not match the importance of the task that they are supposed to carry out.

In the Summer of 2007, the Security Group of UCSB participated in the Top-To-Bottom Review (TTBR) of the electronic voting systems used in California. This was a first-of-its-kind review, where the evaluators had unprecedented access to the systems' source code, hardware, and associated documentation.

The Report

Our team focused on the security analysis of the Sequoia voting system. Our public report can be found here (a local copy can be found here). We found a number of major flaws that can be exploited to compromise the integrity, confidentiality, and availability of the voting process.

In particular, we developed a virus-like software that can spread across the voting system, modifying the firmware of the voting machines. The modified firmware is able to steal votes even in the presence of a Voter-Verified Paper Audit Trail (VVPAT).

The Paper

We wrote a paper that describes our methodology and our findings:

Are Your Votes Really Counted? Testing the Security of Real-world Electronic Voting Systems, D. Balzarotti, G. Banks, M. Cova, V. Felmetsger, R. Kemmerer, W. Robertson, F. Valeur, and G. Vigna, in Proceedings of the International Symposium on Software Testing and Analysis, Seattle, WA July 2008.[PDF]

The Video

We also prepared a movie that shows how the virus-like attack would be carried out, and exemplifies the different scenarios that our malicious firmware would exploit.

The video shows how one can use a simple USB key to infect the laptop used to prepare the cards that initialize the various voting devices. As a result, the cards are loaded with a malicious software component.

When a card is inserted in a voting terminal, the malicious software exploits a vulnerability in the terminal loading procedure and installs a modified firmware, effectively "brainwashing" the terminal.

Later, when the terminal is used by the voters to cast their votes, the firmware uses a number of different techniques to modify the contents of the ballots being cast.

The movie also shows that the physical security measures being used to limit access to essential parts of the voting systems are ineffective.

The movie cannot be downloaded from this page anymore, because after we were featured on Slashdot the Department web server maxed out.

However somebody uploaded the video on YouTube.

Part 1

Part 2



The Computer Security Group at UCSB

Post Comment   Private Reply   Ignore Thread  


TopPage UpFull ThreadPage DownBottom/Latest

#1. To: Split, Original_Intent, critter, lodwick, rotara (#0)

A number of recent studies have shown that most (if not all) of the electronic voting systems being used today are fatally flawed, and that their quality does not match the importance of the task that they are supposed to carry out.

Duh! The electronic voting machines in the 2000 election had a higher error rate than the punch cards did and were also involved in the close but non confrontation race in New Mexico yet there was still this call to use them to replace the chads. Why? They don't need viruses to scew the vote. Many of the memory cards are replace mid vote. Again, why? It is quite obvious that our elections are rigged.


"You have delusions of adequacy."

farmfriend  posted on  2008-09-23   17:58:34 ET  Reply   Trace   Private Reply  


#2. To: farmfriend (#1)

The electoral system is rigged from beginning to end; heads they win, tails you lose. When all else fails they'll fudge the vote tallies.

Split  posted on  2008-09-23   18:51:14 ET  Reply   Trace   Private Reply  


TopPage UpFull ThreadPage DownBottom/Latest


[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help]