Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

applegrove

(118,654 posts)
Fri Feb 14, 2020, 09:05 PM Feb 2020

Oh Good, Another Voting App Might Have Some Problems

Oh Good, Another Voting App Might Have Some Problems

By AARON MAK at Slate

FEB 13, 20204:32 PM

Voatz would allow people to vote remotely.

https://slate.com/technology/2020/02/a-voting-app-is-under-scrutiny-after-researcher-find-flaws.html

"SNIP....


Two weeks after a malfunction in a vote-reporting app helped make a mess out of the Iowa caucuses, another election app is stirring up anxieties.

Voatz, which allows voters to submit their ballots virtually, is facing scrutiny—not for the first time—as researchers at the Massachusetts Institute of Technology published a report on Thursday identifying what they claim to be major security flaws in its infrastructure that should deter anyone from using it. This comes just as an undisclosed number of counties are set to start implementing itin the presidential election for absentee voters. As the report states, “Given the severity of failings discussed in this paper, the lack of transparency, the risks to voter privacy, and the trivial nature of the attacks, we suggest that any near-future plans to use this app for high-stakes elections be abandoned.”

As is the case with any election technology, the specter of interference is a major obstacle to implementation. Voatz purports to harness end-to-end encryption, facial recognition, and blockchain, which is the network technology that facilitates cryptocurrency, to identify voters and make sure that ballots are not tampered with. The researchers say, however, that these measures still leave open a number of vulnerabilities that would allow a malicious party to negate or change votes, as well as spy on a user’s ballot. The paper claims, for example, that a hacker could launch a brute force attack to discover a user’s PIN for their account or gain administrative privileges to a smartphone to manipulate the app.

Because of Voatz’s alleged “lack of transparency,” the researchers reverse-engineered the app by using information that the company had made publicly available in order to run their tests. In a blog post responding to the study, Voatz stated, “With qualified, collaborative researchers we are very open; we disclose source code and hold lengthy interactive sessions with their architects and engineers.” The company has also alleged that the MIT study is inherently flawed, in part because the version of the app that the researchers were testing was outdated, not connected to Voatz’s servers, and only the Android version. And in a particularly barbed portion of the post, Voatz attacks the researchers for trying to “deliberately disrupt the election process, to sow doubt in the security of our election infrastructure, and to spread fear and confusion.”

......SNIP"

1 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Oh Good, Another Voting App Might Have Some Problems (Original Post) applegrove Feb 2020 OP
Absentee ballots are a target 🎯 live love laugh Feb 2020 #1

live love laugh

(13,109 posts)
1. Absentee ballots are a target 🎯
Fri Feb 14, 2020, 10:04 PM
Feb 2020

The last election there were mailed absentee ballots left sitting at the post office until well after the election was called. I don’t remember the locations but I remember the strategy. So mailing paper ballots is also a problem. Protocol for receiving ballots needs to be scrutinized and monitored or even changed.

As for the app the same people (absentees) are targeted.

Latest Discussions»General Discussion»Oh Good, Another Voting A...