Home > UC Davis Concludes E-Voting Systems Hackable

News

UC Davis Concludes E-Voting Systems Hackable

8/10/2007

A report by the University of California, Davis has found three electronic voting machines being considered for California state polling are susceptible to both physical and electronic tampering from tools ranging from screw drivers to Trojan horse programs.

The study was commissioned by the state of California to check the integrity of three brands of electronic voting devices.

The report, written by University of California investigator Matt Bishop, concluded that the biggest threat was that a Trojan horse or other malicious software could overwrite the systems' firmware. In all three systems, UC testers were able to accomplish this.

Bishop also said the Windows operating system, the underlying software used by all three systems, was vulnerable.
 
"As Windows is known to be vulnerable to many forms of attack," Bishop wrote, "vendors should ensure that the underlying Windows system is locked down sufficiently to counter these threats. If an attacker can gain privileged access to the underlying operating system, they can control the election management system."

In response to the report, California Secretary of State Debra Bowman decertified electronic voting machines made by the industry's biggest vendors, including Diebold Election Systems, Sequoia Voting Systems, Hart InterCivic, and
Election Systems and Software, unless new measures are implemented to safeguard against abuse.

Read More:


Paul McCloskey is a contributing editor for the Campus Technology group of publications.

Cite this Site

Paul McCloskey, "UC Davis Concludes E-Voting Systems Hackable," Campus Technology, 8/10/2007, http://www.campustechnology.com/article.aspx?aid=49618

copy text (above) for proper citation



Recommended Reading
  • Digital Arts Alliance Adds Fordham U

    The Digital Arts Alliance, a consortium led by the Pearson Foundation that promotes digital arts in K-12 education, is expanding its membership with the addition of Fordham University. This follows on the heels of three other organizations joining the group back in July--the National Education Association (NEA) Foundation, the Foundation for Investor Education, and Employers For Education Excellence (E3).

  • Payment Card Security Toughens with DSS 1.2 Release

    Opinions are mixed on what the new Payment Card Industry (PCI) DSS 1.2 standard will mean for security pros going forward. However, the mandate is clear: protect data.

  • 6 Universities Join NASA Astrobiology Institute

    Research teams from six universities have been selected by NASA to become members of its Astrobiology Institute with the aim of exploring the "origins, evolution, distribution, and future of life in the universe." Teams were each awarded five-year grants, averaging $7 million each, according to NASA.

  • Amazon To Host Microsoft Solutions in the Cloud

    Amazon announced Wednesday that it is conducting a private beta test of Microsoft's server products running on Amazon's hosted computing platform, which is called Amazon Elastic Compute Cloud (EC2). Amazon expects to offer companies the ability to run their applications on EC2 using Microsoft Windows Server or Microsoft SQL Server sometime in the fall, according to an announcement issued by the company.

  • CRM Pushing into New Areas of Higher Ed

    Implementing a customer relationship management (CRM) solution can require "difficult or even painful behavioral challenges" for administrators in higher education, according to Nicole Engelbert, a lead analyst with research and analysis firm Datamonitor. "It means re-orienting yourself to your students. That can be tough, so you need to be ready for that."

  • Integrated Collaborative Environment Leverages Web 2.0

    Here's a bit of trivia for your next high-tech happy hour: A "nog" (in addition to being a Christmas favorite) is a wooden block built into a masonry wall so that joinery structure can be nailed to it. For the founders of Piscataway, N.J.-based startup Bluenog this obscure bit of carpentry nomenclature was the perfect metaphor for an integrated software suite that includes a content management system (CMS), rich portal features and business intelligence (BI) capabilities.