Electronic Voting Machine Insecurity Michael Plasmeier theplaz.com.

Slides:



Advertisements
Similar presentations
Internet As A Business Tool Peter Lilburn. Consumer Advantages The Internet has affected most individuals basic routine such as paying bills and receiving.
Advertisements

Electronic Voting Systems
Money Multiplier Objectives: 1.Determine the maximum potential extent to which the money supply will change following a Federal Reserve purchase or sale.
Identity Theft …It could be you But This Presentation is by me, Michelle Richards.
Will Your Vote Count? Will your vote count? Voting machine choices N.C. Coalition for Verified Voting Joyce McCloy Pros and Cons of voting.
Elections Chapter 7 Section 2.
Electronic Voting: Danger and Opportunity J. Alex Halderman Department of Computer Science Center for Information Technology Policy Princeton University.
VVPAT BY KRISTEN DUARTE & JESSICA HAWKINS. WHAT IS VVPAT? An add-on to electronic voting machines that allows voters to get a printed version of their.
VOTING SYSTEMS TESTING SUMMIT NOV. 29, 2005 COPYRIGHT © 2005 MICHAEL I. SHAMOS Security, Paper Trails, Accountability Michael I. Shamos, Ph.D., J.D. Institute.
By Varun Jain. Introduction  Florida 2000 election fiasco, drew conclusion that paper ballots couldn’t be counted  Computerized voting system, DRE (Direct.
Case study Engineering Ethics Mahmoud Darawsheh. Psystar corporation  Psystar Corporation was a company based in Florida, owned by Rudy and Robert Pedraza.
Top 10 Mistakes Employers Make and How to Keep from Making Them Ashley Scheer Jackson Walker L.L.P. 901 Main Street, Suite 6000 Dallas, Texas (214)
1 J. Alex Halderman Security Failures in Electronic Voting Machines Ariel Feldman Alex Halderman Edward Felten Center for Information Technology Policy.
UMBC CMSC-491/691 APRIL 24, 2006 COPYRIGHT © 2006 MICHAEL I. SHAMOS Certifying Voting Systems Michael I. Shamos, Ph.D., J.D. Institute for Software Research.
Voting Machines Failing the World *Voting machines around the world are failing in Colorado as well as 34 other states. *This could be crucial in the upcoming.
Primary Election Process Party Executive Committee Certification Presented by: Elections Division of the Mississippi Secretary of State’s Office.
17-803/ ELECTRONIC VOTING FALL 2004 COPYRIGHT © 2004 MICHAEL I. SHAMOS / Electronic Voting Session 5: Direct Recording Electronic (DRE)
CCAP SPRING CONFERENCE MARCH 28, 2006 COPYRIGHT © 2006 MICHAEL I. SHAMOS Paper Trails and Voting System Certification Michael I. Shamos, Ph.D., J.D. Institute.
Presentation by Christine McElroy
17-803/ ELECTRONIC VOTING FALL 2004 COPYRIGHT © 2004 MICHAEL I. SHAMOS / Electronic Voting Session 2: Paper Trails Michael I. Shamos,
Electronic Voting: The 2004 Election and Beyond Flashback: Florida 2000.
Electronic Voting Linh Nguyen. Electronic Voting  Voting Technologies  The Florida 2000 Election  Direct Recording Electronic Devices (DREs)‏ - Diebold.
UNIVERSITY LECTURE SERIES OCTOBER 12, 2006 COPYRIGHT © 2006 MICHAEL I. SHAMOS What’s Right With Electronic Voting? Michael I. Shamos, Ph.D., J.D. Institute.
Voting Machines Failing the World The true issue for these electronic voting machines is that the government has not been a full out supporter of this.
Reliability in Embedded Software Joseph Lucas. Requirements Real time/reactive operation Real time/reactive operation Small size, low weight Small size,
THE INTELLECTUAL PROPERTY OF SOURCE CODE Michael Musick.
Why You Don’t Want to Go into Bankruptcy CARE PROGRAM.
Security flaws in existing voting systems by Slavik Krassovsky.
Ballot Processing Systems February, 2005 Submission to OASIS EML TC and True Vote Maryland by David RR Webber.
High Tech Voting Yecheal Tarshish CS-100. Why upgrade the voting process? Remember Florida 2000?
Federal vs. State.  Started the move towards eVote systems in the US  Old-fashioned manual punch card systems (Votomatic)  Often used in counties with.
Voting Systems.  DS200  DS850  AutoMARK Voting Equipment.
Electronic Voting: A Challenge to Democracy? Rebecca Mercuri, Ph.D. Presentation for the Open Rights Group at University College,
 Hardware is every thing that goes into the computer system like;  The computer chip.  Keyboard.
October 22, 2008 CSC 682 Security Analysis of the Diebold AccuVote – TS Voting Machine Feldman, Halderman and Felten Presented by: Ryan Lehan.
Credit BELL RINGER  What is credit?  Does credit cost?  What are the advantages of using credit?  What happens if I misuse credit?
The Computer vote ! The Way of the Future ?. The old-fashioned way is the way! The mind set of most people. (it was good enough for dad, it’s good enough.
Photo ID Now Required for Voting in Person January 2013 V1.0
E-Voting Dissent Sara Wilson, Katie Noto, John Massie, Will Sutherland, Molly Cooper.
Digital Democracy: A look at Voting Machines Presented by Justin Dugger April 2003.
Secretary of State Voting System Security Standards Juanita Woods Secretary of State Elections Division HAVA Information Security.
Software. Software or Programs A set of detailed directions telling the computer exactly what to do, one step at a time. Can be one line of code or several.
Andreas Steffen, , LinuxTag2009.ppt 1 LinuxTag 2009 Berlin Verifiable E-Voting with Open Source Prof. Dr. Andreas Steffen Hochschule für Technik.
Electronic Voting: The 2004 Election and Beyond Prof. David L. Dill Department of Computer Science Stanford University
VOTING- MACHINES, BALLOTS, AND SOLUTIONS GAIL YACYSHYN, TOM MAHONEY, TYLER REYNOLDS, CEDRIC SUZUKI.
7 tips to do secure online shopping. Shopping Online? How literate are you with online buying? Do you know to differentiate real and fake stuff? Do you.
How and what to observe in e-enabled elections Presentation by Mats Lindberg, Election Adviser, Organisation for Security and Co-operation in Europe (OSCE)
NC Voting Systems How do S.L and HAVA impact the voting system in your county and what duties must you quickly perform?
Against E-Voting Ryan Egan, Amber Jones, Alyssa Sankin, Page Stephens, Amber Straight, Philip Sugg, and Diana Troisi Direct recording electronic (DRE)
17-803/ ELECTRONIC VOTING FALL 2004 COPYRIGHT © 2004 MICHAEL I. SHAMOS / Electronic Voting Session 4: Optical Scan Systems Michael I.
Computers in Society Electronic Voting. Team Projects What is your name? Application? Presentation? Copyright The software industry The open source business.
Alert against Online Shopping Frauds. Online Shopping A form of electronic commerce whereby consumers directly buy goods or services from a seller over.
Chapter 10 Section 3. Voter Qualification  Each state determines qualifications for registering to vote and voting  States must follow certain guidelines.
BY: CHRIS GROVES Privacy in the Voting Booth. Reason for Privacy Voters worry that their vote may be held against them in the future  People shouldn’t.
WHY THE vvpat has failed
Voting In An American Democracy Ben Ayers Jessica Godsey Lisa Litteral Jeanne Shiner.
Electronic Voting: Danger and Opportunity
7 th Grade Civics Miss Smith *pgs  Must be 18 years old by a set date before the next election  Voter registration protects your vote  No.
Credit Questions to Consider  What is credit?  Does credit cost?  What are the advantages of using credit?  What happens if I misuse credit?
Data Brokers, Our Secret Enemy By Andrew Herrera.
7 th Grade Civics Miss Smith *pgs  Must be ___ years old by a set ____ before the next ________  Voter _________ protects your vote  No one.
E-voting …and why it’s good..
SECURITY FEATURES OF ATM
Voting.
CONFIDENCE IN COLORADO’S ELECTIONS
HIRE PURCHASE RIGHTS AND REPOSSESSION
E Voting Josh Gold.
Essential Question What are the procedures for voting?
7th Grade Civics Miss Smith *pgs
Credit Card Myths By: Aimee Tripp Hour 2.
Presentation transcript:

Electronic Voting Machine Insecurity Michael Plasmeier theplaz.com

A Hack

Harri Hursti

Video of hack animation

Question“Yes”“No”Total Votes Memory Card Set 5-50 “Zero Tape”000 Actual Ballots268 Machine Total718

Question“Yes”“No”Total Votes Memory Card Set 5-50 “Zero Tape”000 Actual Ballots268 Machine Total718

Question“Yes”“No”Total Votes Memory Card Set 5-50 “Zero Tape”000 Actual Ballots268 Machine Total718

Ballot scanning

Question“Yes”“No”Total Votes Memory Card Set 5-50 “Zero Tape”000 Actual Ballots268 Machine Total718 8

Scientists at Berkeley University confirmed the Hursti Hack and found 16 more security flaws

Diebold’s Response “a very foolish and irresponsible act” “leaving a car’s keys in the ignition and the windows down”

Why does the memory card support negative counts? Why then, did the machine print an incorrect “zero tape”????

Ion Sancho, Leon County trouble buying new machines got court order to allow still uses not many people actually use takes extra precautions no overnight

How this Came to Be

Florida

Help Americans Vote Act 2002 $3.9 billion $$$

Business and $$ Before no $$ in voting machines Old lever machines used for 40 years Counties did not buy them Not as much attention on them

Diebold’s Business Diebold was $3 billion ATM maker Bought a smaller company Which got the touch screen technology from a company making machines for the mall No emphasis on security

First get into a business you don't understand, selling to customers who barely understand it either. Then roll out your product without adequate testing. Don't hire enough skilled people. When people notice problems, deny, obfuscate and ignore. Finally, blame your critics when it all blows up in your face

The Real Problem

Secrecy Code is secret No design documents public Reviews/Audits secret Independent investigations discouraged

Secrecy One NJ county wanted to loan Princeton researchers some Sequoia machines to test Sequoia threaten to sue Violate the license agreement

Secrecy Claimed machines tested by Independent Testing Agencies (ITA) “shocking history of sloppy, incomplete and non-existent testing“ EAC on CIBER 2006

Mitigating Factors

VVPAT

Mitigating Factors Open Source Less vendor control Firefox is percepted to be very secure SSL is used by millions of people to conduct business online

Why?

Essential to Democracy Transparency Can’t secure from admin Must maintain vigilance