Enjoy an Ads-Free ASFN - lighter and faster too! Become an ASFN-Contributor and help support the site.
Go Back   Arizona Sports Fans Network > Other Stuff > Politics and Religion

Welcome to ASFN Fan Forums! We're glad to have you here. Please feel free to browse the forum. We'd like to invite you to join our community; doing so will enable you to view additional forums and post with our other members.


Registered Members don't see these ads. Register now it's free!
Reply
 
Thread Tools Display Modes
Old May 12th, 2006, 08:26 AM   #1
wallyburger
Agent Provocateur
 
wallyburger's Avatar
 

Join Date: Nov 2003
Location: via pacis
Posts: 17,854
A$FN: 15,000

Scientists Call Diebold Security Flaw 'Worst Ever'


Published on Thursday, May 11, 2006 by Inside Bay Area
Scientists Call Diebold Security Flaw 'Worst Ever'
Critics say hole created for upgrades could be exploited by someone with nefarious plans
by Ian Hoffman


Computer scientists say a security hole recently found in Diebold Election Systems' touch-screen voting machines is the "worst ever" in a voting system.

Election officials from Iowa to Maryland have been rushing to limit the risk of vote fraud or disabled voting machines since the hole was reported Wednesday.

Scientists, who have conferred with Diebold representatives, said Diebold programmers created the security hole intentionally as a means of quickly upgrading voting software on its electronic voting machines.

The hole allows someone with a common computer component and knowledge of Diebold systems to load almost any software without a password or proof of authenticity and potentially without leaving telltale signs of the change.

"I think it's the most serious thing I've heard to date," said Johns Hopkins University computer science professor Avi Rubin, who published the first security analysis of Diebold voting software in 2003. "Even describing why I think it's serious is dangerous. This is something that's so easy to do that if the public were to hear about it, it would raise the risk of someone doing it. ... This is the worst-case scenario, almost."

Diebold representatives acknowledged the security hole to Pennsylvania elections officials in a May 1 memo but said the "probability for exploiting this vulnerability to install unauthorized software that could affect an election is considered low."

California elections officials echoed that assessment Friday in a message to county elections chiefs.

But several computer scientists said Wednesday that those judgments are founded on the mistaken assumption that taking advantage of the security hole would require access to voting machines for a long time.

"I don't know anyone who considers two minutes lengthy, if it's that," said Michael Shamos, a Carnegie Mellon University computer science professor and veteran voting-systems examiner for the state of Pennsylvania.

"It's the most serious security breach that's ever been discovered in a voting system. On this one, the probability of success is extremely high because there's no residue. ... Any kind of cursory inspection of the machine would not reveal it."

States using Diebold touch screens are "going to have to fix it because they can't have an election without having a fix to this," he said. Otherwise, states risk challenges from losing candidates while being unable to prove easily that the machines worked as designed.

At least two states — Pennsylvania and California — have ordered tighter security and reprogramming of all Diebold touch screens, using software supplied by the state and a method opened by the security hole. Local elections officials then must seal certain openings on the machines with tamper-evident tape.

David Wagner, an assistant professor of computer-science at the University of California, Berkeley and a technical adviser to the California secretary of state's office, said the new measures should minimize risks in the June 6 primary.

Elections officials in Georgia, which uses Diebold touch screens statewide, said existing state rules already are sufficient.

Bev Harris, founder of BlackBoxVoting.org, a nonprofit group critical of electronic voting, said she isn't sure reprogramming and sealing the touch screens will fix the problem.

Voting machines often are delivered to polling places several days before elections, and the outside case of Diebold's touch screens is secured by common Phillips screws. Inside, a hacker can take advantage of the security hole, as well as access other security holes, without disturbing the tamper-evident seals, Harris said.

"Ultimately, there's no way to get rid of the huge security flaws in the design," she said.

© 2000-2006 ANG Newspapers
Registered Members don't see these ads. Register now it's free!
__________________
In politics, nothing happens by accident. If it happens, you can bet it was planned that way.

Franklin D. Roosevelt

"Those who can make you believe absurdities can make you commit atrocities."

--Voltaire
wallyburger is offline   Reply With Quote
Old May 12th, 2006, 08:38 AM   #2
Dback Jon
Random Encounter
 
Dback Jon's Avatar
 

Join Date: May 2002
Location: Chandler
Posts: 24,136
A$FN: 49,214
No kidding - Diebold machines should be banned, and the 2004 election re-voted.
__________________



R.I.P Tim Minnick

The KING of Cards
Dback Jon is online now   Reply With Quote
Old May 12th, 2006, 08:44 AM   #3
AZZenny
Free Gilad
 
AZZenny's Avatar
 

Join Date: Feb 2003
Location: Cave Creek
Posts: 7,661
A$FN: 14,315
Send a message via AIM to AZZenny
They should absolutely be banned. And anyone with a brain should demand a paper ballot in any election where the machines are in use.
__________________

oderint dum metuant (Latin for 'let them hate, so long as they fear').



Well, in truth I'm actually not a total hawk, but I'm not a dove either -- I'm more like an angry pigeon flying over the political arena after a really big meal.
-Abba Gav
AZZenny is offline   Reply With Quote
Old May 12th, 2006, 08:46 AM   #4
LoyaltyisaCurse
Answers Before Questions
 
LoyaltyisaCurse's Avatar
 

Join Date: Aug 2004
Location: Chatsworth, CA
Posts: 12,409
A$FN: 4,800
Quote:
Critics say hole created for upgrades could be exploited by someone with nefarious plans


Yup and by someone they mean the Owner of Deibold...
__________________
Goin' "Double Maverick!"
LoyaltyisaCurse is offline   Reply With Quote
Old May 12th, 2006, 07:58 PM   #5
40yearfan
Takin' a bite outa the Niners
 
40yearfan's Avatar
 

Join Date: Feb 2003
Location: Buckeye, AZ.
Posts: 24,194
A$FN: 7,001
From what I understand, the Demos didn't really want this knowledge to get out. They planned on really exploiting it in the next election.
__________________
“So I became a newspaperman. I hated to do it but I couldn’t find honest employment.” —Mark Twain
40yearfan is offline   Reply With Quote
Reply

Bookmarks


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Sitemap:1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37


All times are GMT -8. The time now is 05:45 PM.



Subscribe in a reader
Powered by vBulletin® Version 3.7.0
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
Copyright © 2002 - 2006 ArizonaSportsFans.com
Inactive Reminders By Icora Web Design