Tag(s): ; ; ; ; ; ; ; ; ; ; (more...) ; ; ; ; ; , Add Tags  (less...)
Add to My Group(s)

View Ratings | Rate It

Permalink
View Article Stats      (5 comments)

2007 Technology Tests of Computerized Voting Systems

Add this Page to Facebook!
Submit to Twitter
Submit to Reddit
Submit to Stumble Upon

Tell A Friend

Become a Fan
Get Embed HTML Code
By (about the author)

Become a Fan Become a Fan  (2 fans)   -- Page 3 of 8 page(s)

opednews.com

Below is a partial reproduction of Dr. Hoke’s summary of California’s TTBR:

Election management/tabulation software For all voting systems (“VS”), the system architecture depends on a commercial operating system known to have security vulnerabilities. All vendors failed to secure this system properly. System architecture had not been designed with either basic or sophisticated security protections. All systems failed to follow standard security design principles.  

All systems were susceptible to viruses that could be introduced from a number of vectors, including from voting device memory cards. (Viruses and other rogue programming can, e.g., “flip” votes among candidates, scramble tabulation data, delete voting data, and cause system programming to fail.)  

Viruses could infect the central computer and then be spread to all the voting devices when their memory cards are prepared for the next election.  

System logs of operator activity (“audit logs”) could be overwritten or erased, meaning that insider attackers could manipulate voting data and results, and then erase the logging inventories that would show the access and activity; or, could be used to frame a different employee. 

Systems permitted relatively easy bypassing of passwords, thus permitting broader access than authorized.  

In each VS, many other security holes exist that could compromise the system’s ability to report accurate election results -- or any results.  

Voting Devices  

All systems failed to follow standard security design principles, and lacked even basic security protections. All systems’ devices (DREs and precinct-based optical scanners) were subject to easy, undetectable attacks that could occur during the normal time that a voter would be at a voting machine casting a ballot.  

Some devices permitted the researchers to introduce malicious code onto a voting machine in under a minute, while appearing to be in the process of voting.  

All DRE touchscreen voting units permit a voter to generate and cast multiple ballots during a normal time voting could occur, in ways that would be largely undetectable to poll workers unless they were specially trained and closely supervising the voter’s activity at the unit (voter privacy might still be compromised).  

Some DRE devices permitted the researchers to damage the Voter-Verified Paper Audit Trail (VVPAT) covertly, so the voters could verify that their votes were printed correctly, but after the election the VVPAT could not be read.  

Other DRE devices could be modified to store votes incorrectly, but print them on the VVPAT correctly (for example, a voter’s choice of John Adams results in the VVPAT printing “John Adams” but the DRE stores the vote as a vote for “Thomas Jefferson”).  

Documentation Review  

The NASED “qualification” (certification) of all systems was based on testing lab (“ITA”) studies that were seriously flawed. While the ITA reports varied significantly, generally it was not possible to ascertain whether the lab had conducted the independent tests needed to determine VS satisfaction of FEC 2002 standards.

Often the ITA would test a device but not the voting system as a whole, despite the guidelines’ requirements for system testing to determine whether the various components worked accurately and reliably in concert.  

Next Page  1  |  2  |  3  |  4  |  5  |  6  |  7  |  8

 

In 2004, Rady Ananda joined the growing community of citizen journalists. Initially focused on elections, she investigated the 2004 Ohio election, organizing, training and leading several forays into counties to photograph the 2004 ballots. She officially served at three recounts, including the 2004 recount. She also organized and led the team that audited Franklin County Ohio's 2006 election, proving the number of voter signatures did not match official results. Her work appears in three books.

Her blogs also address religious, gender, sexual and racial equality, as well as environmental issues; and are sprinkled with book and film reviews on various topics. She spent most of her working life as a researcher or investigator for private lawyers, and five years as an editor.

She graduated from The Ohio State University's School of Agriculture in December 2003 with a B.S. in Natural Resources.

All material offered here is the property of Rady Ananda, copyright 2006, 2007, 2008, 2009. Permission is granted to repost, with proper attribution including the original link.

"In a time of universal deceit, telling the truth is a revolutionary act." Tell the truth anyway.

The views expressed in this article are the sole responsibility of the author
and do not necessarily reflect those of this website or its editors.

Contact Author Contact Editor View Authors' Articles

 

Share this page: (what's this?)                   Tell a Friend: Tell A Friend

Add this Page to Facebook!      Submit to Stumble Upon      Submit to Reddit      Add This Page to Mr Wong!           NEWSVINE      DEl.ICIO.US      Looksmart Furl      My Web      Blink List     (More...)

Comments

The time limit for entering new comments on this article has expired.

This limit can be removed. Our paid membership program is designed to give you many benefits, such as removing this time limit. To learn more, please click here.

Comments: Expand   Shrink   Hide  
5 comments
To view all comments:
Expand Comments
(Or you can set your preferences to show all comments, always)

Excellent article! - One More Vulnerability to Mention by Runner on Tuesday, Dec 11, 2007 at 10:43:46 AM
Got citations? by Rady Ananda on Tuesday, Dec 11, 2007 at 1:30:15 PM
If voting could change things - they'd make it illegal. by Mr M on Tuesday, Dec 11, 2007 at 12:11:57 PM
BTW by Mr M on Tuesday, Dec 11, 2007 at 12:15:49 PM
thanks for the kudos by Rady Ananda on Tuesday, Dec 11, 2007 at 2:10:30 PM

 

Tell a Friend: Tell A Friend


Copyright © 2002-2012, OpEdNews

Powered by Populum