About
Read YES! Magazine
YES! Articles
by Topic

Get Active
For Teachers
& Students

Speakers Bureau
YES! Store
get YES!
•  FREE Trial Issue
•  subscribe SPECIAL
•  donate
•  gift subscriptions
•  order back issues
•  email newsletter
winter 2007 issue
•  table of contents
•  Theme Guide
•  Independence from the Corporate Global Economy
•  Green-Collar Jobs for Urban America
•  Creating Real Prosperity
•  Local Energy, Local Power
•  Go Local Resource Guide
•  Go Local Discussion Guide
•  The Local Multiplier Effect
•  YES! But How?
•  10 Ways to a Human-Scale Economy
related links
•  Recipe for a Cooked Election
•  other articles by author
Winter 2007: Go Local!
SOL :: Princeton report into voting security
by Doug Pibel
Print this articleEmail this article to a friend
AddThis Social Bookmark Button
The Diebold AccuVote-TS voting machine in the Princeton lab
The Diebold AccuVote-TS voting machine in the Princeton lab

Scientists Reveal Electronic Voting Security Flaws

Although a growing number of direct recording electronic (DRE) voting machines are being used in U.S. elections, manufacturers have never made the machines available for independent third-party testing. Recently, however, a team of Princeton scientists gained access to a Diebold DRE voting machine from an undisclosed source. In September, the Princeton team, led by Edward W. Felten, Professor of Computer Science and Policy Studies, released the results of their independent security testing on the Diebold machine.

The researchers designed a vote-stealing program that can be installed on the machine in less than one minute by anyone who has access to the machine or to the DRE memory cards. The vote-stealing program can be spread to other machines through memory cards and is undetectable. The Princeton team also designed an easily installed denial of service program that, when triggered, crashes the voting machine and erases all its vote records.

The machine the researchers examined was the AccuVote-TS, the very machine about which Diebold said, in 2003, “The assertion that there are any exploitable attack vectors is false. The implication that malicious code could be inserted into the system is baseless.” Just as the researchers had predicted, Diebold issued a similar response to the Princeton report.

The Princeton team concludes that paperless DRE machines have serious security vulnerabilities, and that making them safe “will require safeguards beginning with a voter verifiable paper audit trail and truly independent security evaluation.”

Doug Pibel

Full text of the Princeton report, as well as Diebold's response and the researchers' rebuttal.

Risk Free Trial Subscription


current cover

Sign up for a free trial issue to try out our award-winning, ad-free, independent magazine of positive change.

 
Try YES! Magazine Free!
First Name City
Last Name State
Address Zip
E-mail (required)
Email Newsletters
YES! News
Education News

If you like it and decide to continue, you'll pay just $19.00 for 4 more issues (5 in all), a 42% savings off the newsstand price! Otherwise, simply write "cancel" on the invoice.
This offer valid for U.S. addresses only. For International, click here