Damning Report On Sequoia E-Voting Machine Security
TechDirt notes the publication of the New Jersey voting machine study, the attempted suppression of which we have been discussing for a while now. The paper that the Princeton and Lehigh University researchers are releasing, as permitted by the Court, is "the same as the Court's redacted version, but with a few introductory paragraphs about the court case, Gusciora v. Corzine." What's new is the release of a 90-minute evidentiary video — the researchers have asked the court for permission to release a shorter version that hits the high points, as the high-res video is about 1 GB in size. See TechDirt's article for the report's executive summary listing eight ways the AVC Advantage 9.00 voting machine can be subverted.
An oxymoron.
The only thing a e-voting machine should be used for is printing a paper ballot.
Count the paper ballots.
Anything else means you have to trust the voting machine, or the people who verified the voting machine.
(You have to make sure that there are no hidden things in any of the chips, the software, any memory card that comes into contact with the machine, the network that the machine is connected to, etc. Seriously, who can possibly think that a E-voting machine with a Sprint data card in it is secure?)
If I have nothing to hide, don't search me
could be made 100% secure, foolproof, etc., it should still not be used
simply because of the PERCEPTION of what happens to your vote in electronic voting
it is a black box. your votes go in, sausage comes out. meanwhile, a piece of paper has no secrets. it stays in a box, it can retallied. it can be messed with and falsified and burned, sure. but not with such ease and not in so many quick secret and immensely powerful ways electrons or magnetic marks on a disk can be messed with
all nations should use paper ballots, doesn't matter how rich they are. joe schmoe needs to touch and feel and smell his vote. voting machines and electronic voting represents a black box system, and therefore represents too much fundamental distrust. distrust undermines the legitimacy of democratically elected governments in the eyes of the people
it is not good enough that joe schmoe vote in absolute security and privacy and integrity. joe schmoe must also BELIEVE that. but in an irreducibly black box system, distrust is inescapable
electronic voting is the greates threat to democracy, ever. no ideological system or intolerant set of beliefs can undermine faith in democracy more than a method of tallying votes that the technofetishist loves, but the general populace views with suspicion
you don't need to say "gee whiz" when you vote
we need to end electronic voting, in the name of strengthening democracy
intellectual property law is philosophically incoherent. it is your moral duty to ignore it or sabotage it
You have a very good point here - why are these things even doing all the "tallying" on there own? Wasn't the overall MAIN issue was the validity of "hanging chads" and the like - why in the hell can't we have a simple machine with all the same bells and whistles that simply punches the damn things for us?!?!
On a side note - how hard can this stuff be? It's not like they aren't making a fortune from these things - it's seeming like they are barely able to break even so they have to hire "below the barrel" talent...
Is very simple, and in fact I used it Today! - The Paper Ballot. I marked my choices, and turned it in. Voters in NJ should demand paper ballots, issue solved (sort of).
Prediction: The real iPhone killer is going to be sex robots from Japan. Think about it.
The thing is, I don't think that everyone DOES know. I sincerely HOPE that they don't know, because no one is COMPLETELY OUTRAGED about it, and seriously, I think this should be a "people in the streets with torches and pitchforks" kind of issue. There simply seems to be zero public interest in this (and by "public" I of course mean the non-Slash-reading public) and it boggles the mind that some public figure hasn't jumped on this and made it a platform.
Simple paper ballot. Allow observers from all interested (political) parties to monitor the voting station and the count.
Presto, solves verification of the internals of the not so obvious "voting machines". Voting machines aren't truly verificable.
It's just as reliable as the computers, network, memory and hard drives you used to keep your bank records and run the stock market. I don't see anyone complain about those....
TOP DSLR Cameras Reviews of the top DSLRs
Because those are different cases.
The user isn't going to hack his own computer to get his credit card number. Hope that persons computer doesn't have a virus or key logger.
That insurance company or hospital hopefully will have physical security protecting their machines. That doesn't always work, surely you have seen the articles about x million peoples data lost from (company of the week).
Securing E-voting is really like DRM: you want to distribute a device to potential hackers, and keep it secure from those hackers.
If I have nothing to hide, don't search me
You know, if I didn't know any better, I'd say that this was the same company as Diebold.
Oh, wait, it is ...
-- Tigger warning: This post may contain tiggers! --
Because the people with *physical* access aren't (usually) the people trying to hack the systems.
If I have nothing to hide, don't search me
***E-voting done well is far superior to paper voting done well. The costs are far less, it's more convenient, and more environmentally friendly*** Sounds like utter and complete hogwash to me. E-voting is a complicated solution to an simple problem. The US uses all sorts of moderately complex and expensive mechanical voting aids that invariably lead to complaints of fraud, malfeasance, or failure to register votes (because they are busted). Canada uses paper ballots and counts them in a few hours. The paper ballot system is not broken. We should quit trying to fix it until we get a LOT smarter.
You can't see ANYTHING from a car, You've got to get out of the goddamned contraption and walk...Edward Abbey
people can use computers, television, and the car, but they don't have to trust them. in fact, they don't. the tv has the biased media on it. the computer spies on them with cookies. the car is always breaking down. sure, they still use thes tools, but that's not a question of trust going on with these things in the same way it is going on with their voting system. you do not have the same relationship you have with your tools that oyu have with your social environment
a government is a purely human construct. its all about social structure and where you fit into it. its all about trusting or not trusting the other people around you. its a completely different dynamic. and a sliver of doubt about how the social hierarchy around you works can only grow if you are dealing with a black box voting system
what i'm saying is that your allegories are unsound
intellectual property law is philosophically incoherent. it is your moral duty to ignore it or sabotage it
Why doesn't the US revert to paper ballots? We just held a federal election in Canada, and things worked just fine with a good old fashioned pencil and a small paper ballot (well, actually more like thin card). It took us a matter of hours to successfully decide the fate of the country for the next X years without the need for millions of dollars worth of mysterious electronic machinery.
Absolutely. Would you trust your credit card number to SSL if you knew there were hundreds, maybe thousands of professional hackers trying to sniff it?
You mean there aren't?
Fascism starts when the efficiency of the government becomes more important than the rights of the people.
Yeah, right! NO ONE can cheat in an election with paper ballots! The concept of a corrupt government did not exist before the invention of electronic voting.
*BULLSHIT*
Reading TFA: This is done by prying just one ROM chip from its socket and pushing a new one in, or by replacement of the Z80 processor chip. We have demonstrated that this ``hack'' takes just 7 minutes to perform.
Do you want to make a bet? Let's see how many paper ballots I can stuff in 7 minutes, given the same level of physical access one needs to change a chip in a computer. This means I can open a box, right? It doesn't matter if the box is electronic or not, it should have a padlock. If I can open the box, with no one noticing, it doesn't matter if the content is electronic or paper.
The intrinsic safety of electronic voting comes from the agility in counting. Counting a paper ballot box takes much longer than it takes to fill that box with a totally different set of votes. By the time you have counted, recounted, and counted again those paper votes, they could have been substituted a dozen times.
you do realize that most e-voting machines run windows right?
The base OS in these machines is fscked from the beginning, there is no way to secure them completely.
If they used Open BSD, stripped of all unnecessary components compiled from scratch from at least two different compilers to double check all the out puts and inputs then you have a reasonable base to start with. DRM on all software pieces is also needed. at the very least a hash system to approve updates unless they occur 10 days before and 10 days after the election day. During that time no updates should be allowed. while it doesn't prevent tampering, it does limit options and things can be double checked so anomalies can be seen easier.
i thought once I was found, but it was only a dream.
Why the love affair with paper ballots? How do you think paper ballots get counted? By machines! Do you distrust those machines as well? Then your only recourse is to have humans manually tally every vote on every race/issue on every ballot. Hmm, what are the chances that errors are involved in human counting? Ever notice that repeated manual recounts tend to come up with different totals on every iteration?
Yes, machines can be wrong for various reasons including human error and malfeasance. However, mechanical errors are quantifiable, relatively easily detected and corrected. Human error by its nature may be difficult to detect and virtually impossible to correct.
I think we're much better off going the e-vote route and working to improve the systems over time rather than the Luddite approach suggested by the paper zealots.
electronic voting in any democracy is wrong.
It's what I said. You aren't arguing about it. You have made up your mind and are on a religious rant against the antichrist, I mean, e-vote. You aren't making coherent thoughts. You are arguing one point one time, and one the other. "No one can trust it" "OK, Brasil trusts it, but the entire country is wrong to do so." You'll change your statements to mold to whatever counter-arguments someone comes up with. Pick a fact, and I'll prove it wrong, but I can't prove your religion of anti-e-vote to be wrong. It's as irrational as any "real" religion (and no, that's not a stab at religions, they are, by definition, irrational, as in not rational/logical, in fact, the Bible says that one can't understand God, so logic/ration are out the window).
do you see the issues at work now?
Yeah, you are a nutjob.
do you think electornic voting is more or less exploitable than paper voting?
Less.
if you think it is less exloitable, you fail at logic
If you were capable of using proper punctuation and capitalization, then one might take you more seriously. However, that aside, take a system where you have paper ballots and holes to punch out. Would you find that more or less reliable than having a computer terminal for every vote and that computer printed out a human-readable "recipt" for every vote that the person takes and drops into the vote bucket with the hole-puncher? Well, there have been numerous cases of hole-punching being flawed (chads and such) and that's paper voting, and yet there isn't a single case I know of where human-readable printed ballots from an e-box were confusing to the counters. As such, an e-voting system is necessarily less ambiguous and less exploitable than the non-e-system I'm comparing it to.
If you disagree, then you fail at logic.
(see, both of us can make the "you disagree, you fail" assertions, did it work for me like you thought it would for you? No? Then stop being a three year old with the "agree with me or I'll tell you that you are stupid" game. I at least wait for you to say something stupid before proving it so)
Learn to love Alaska
I know... it's not couth to reply to my own posting, but on reflection I had it wrong above. Or rather, I posted poor concepts. Just voiding play on a voting machine is very different from voiding play on a lottery machine.
The reason is that from the viewpoint of lottery, an individual player gets an individual result (win/lose). A voter is placing a vote which is aggregated with the corresponding inputs from other voters to determine the election winner (we'll ignore the electoral college as being overly pedantic).
The difference is that voters affiliations are not evenly distributed geographically. So, by voiding play on voting machines which are in areas with high concentrations of voters of one party, the aggregate can be skewed toward a desired outcome.
I'm an individual! Just like everyone else!
Making that whole system *secure*, otoh, is almost impossible, especially when it is something as large and distributed as a national voting system. If a company could actually make a completely secure voting system, they could also have a good DRM system. (Yeah, I did say "good DRM system", which shows how possible I think that is)
From Ken Thompson's essay Reflections on Trusting Trust, he says it isn't enough to check the source code, you also have to check the compiler, the output from that compiler, and I would add, in the context of a voting system, everything that is or could be in the system/network.
I would like to respectfully disagree here. Your comment can be too easily be summarized to "well, if you can't solve every possible flaw, you don't have a secure system, and so there's no point in trying, if they're all insecure anyway, any system is as bad as any other."
This belief is flawed. Even if you can't prove that there isn't any possible attack, it is nevertheless true that there are better systems and worse systems, and you don't want a worse system. Being able to check the source code-- and, better, having the source code open for anybody to look at-- is in fact a very good start. Yes, it is possible that there may be some hithertofore-unknown flaw in the compiler, and some extremely ingenious cracker might be able to find it and find a way to use it to manipulate voting results... but this is a billion times less likely than the case of some open port left accessable, or a deliberately open back door, that would be found by careful inspection of the source.
(You've misquoted Ken Thompson's conclusion, by the way. His actual conclusion was that you should never trust any program you didn't write yourself. Apparently he's never seen the programs I've written myself.)
http://www.geoffreylandis.com
I can't bring myself to make a scented Palin joke.
Every time I get upset about the tremendous disaster that our modern voting is with the rampant election fraud I remind myself... I am getting upset over the fairness of a system that will only let me choose between two criminals for who should be the leader. It seems to me that getting up in arms about the whole voting trainwreck is pretty stupid considering what we are demanding our votes get counted for. When I am faced with a choice more complex than liar/asshole vs asshole/liar I will be more concerned about how my vote gets counted. As it stands now I can rest assured that no matter what I do my vote would go towards putting a liar and an asshole in office.
I mean really now...its like being lost in the woods and choosing if you want to wipe the shit off your ass with your left hand or your right hand. Which hand you choose is pretty tangent to the fact that you are lost in the damned woods. Seems to me we should be a little more concerned about getting out of the woods than to be upset about which hand got shit on it.
The only change I can believe in is what I find in my couch cushions.
False registration is the first step in voter fraud, is it not?
And flamebait on the original post? What...Is rigging the machines not just as bad as encouraging and aiding voter fraud by fraudulently registering voters multiple times, fake voters, etc?
I mean...c'mon...if it is bad for one side, it is bad for the other side too.
Light travels faster than sound. This is why some people appear bright until you hear them speak.........
Suppose we had such a situation as you suggest and thousands of reviewers pawed over the code making it "as good as it gets". How do you verify the code that was reviewed is the code that is running?
"if they're all insecure anyway, any system is as bad as any other."
It is true that all voting systems are open to fraud, however rigging a paper election is orders of magnitude more difficult than rigging an electronic election simply because of the number of people needed to implement the "hack".
With all due respect, people who believe electronic voting can be made "better than" or even "as good as" traditional paper voting have no idea how the counting of traditional paper ballots is conducted.
And did you exchange a walk on part in the war for a lead role in a cage? - Pink Floyd.
Suppose we had such a situation as you suggest and thousands of reviewers pawed over the code making it "as good as it gets". How do you verify the code that was reviewed is the code that is running?
If the code that's reviewed is not the same as the code that's running, this is in itself evidence of fraud. You don't need to look for a back door in this case; you don't need to even know what the code that's running does, you have already shown fraud.
http://www.geoffreylandis.com
encouraging and aiding voter fraud by fraudulently registering voters multiple times, fake voters, etc?
And if you actually look into it beyond fox news and the "sources" that they quote, you may find out that it is legally required by a voter registration group such as ACORN to submit every single registration form that they receive, regardless of if they think it is valid. They are allowed to mark ones that they believe to be invalid, so that they will be further inspected by actual officials, but to my knowledge, no one has questioned the accuracy of their markings. The issues with false registrations are mostly being found as cases of the person collecting registrations attempting to hit quotas to prove that he/she is actually working. Molehill, not a mountain.
False registration is the first step in voter fraud, is it not?
It could be the first step, but it isn't necessary for voter fraud (as some other replies around this thread suggest, there are plenty of ways to mess with democracy).
As for this particular method, are you suggesting that people going to show up with fake ID's to match the false registrations that they submitted? Seems a bit more involved than designing the machines to falsely provide results.
Outside of that, I have recently realized an issue of concern regarding our electoral process... some people have realized that many minorities who are legal citizens of the country and should be allowed to vote aren't being allowed to vote because they lack ID that is accepted at the time of voting. The problem is that while the Democrats are fighting to get these ID laws removed, they aren't really acknowledging that false registrations in conjunction with no ID required would completely undermine our voting system. We still need to find a way for all citizens to vote though (preferably not a solution involving ID's with RFID chips, GPS tracking or whatever else is remotely possible).
Why in the world did you think ACORN et. al. would go to all the trouble of setting up multiple registrations if such did not result in additional votes?
ACORN agents send in fake registrations so they get paid more by ACORN. What could be simpler than that?