The Grill: Avi Rubin
The e-voting critic talks about the inherent weakness of software, the critical need for audit trails and the 'perfect storm' of the 2000 election.
August 18, 2008 12:00 PM ETVoting tech 2008
- Election Day: Live blog
- Top 20 Election Day sites, tools
- E-voting groups keeping tabs on a handful of states
- Opinion: Will your vote count?
- Q&A: Felten on e-voting and what can go wrong
- Are design issues to blame for vote 'flipping' in touch-screen machines?
- Opinion: Open source e-voting essential to integrity of elections
- E-voting vendor: Programming errors caused dropped votes
- Voting groups release guidelines for e-voting checks
- Todd Weiss: Election Tech blog
Computerworld - For more than a decade, Avi Rubin has been a vocal critic of e-voting systems across the nation. In 2006, he wrote Brave New Ballot: The Battle to Safeguard Democracy in the Age of Electronic Voting, which heavily criticized e-voting machines for security and reliability shortcomings.
How do you think e-voting went this primary election season? You can run an election and say that it appears to have gone fine, but we don't really know.
E-voting advocates and vendors say that security concerns are the stuff of conspiracy theorists. I would ask those people if they would be willing to allow their bank accounts to be unauditable. And if they would give up on getting any confirmation of their ATM transactions.
Dossier
We need to have a system [we can] audit to be sure that the machines got the right result. People who have a lot of experience with computers and security know that it's not always a good idea to trust the machines.
Are there systems today that you would be comfortable with? Definitely. I've seen designs of voting systems that I'd be happy with. I don't think anything is totally secure. Ultimately, I think the goal is to do the best we can.
What needs to be done differently? The National Institute of Standards and Technology identified what I think is a breakthrough property in an e-voting machine, which is the idea of making it software-independent. That means a software failure does not have any possible impact on the accuracy and integrity of the election.
How would that work? Voters use a touch screen to make their selections, and the machine prints a paper ballot that has all the choices that they made. If the software on that system fails, they wouldn't get a printed ballot that they could approve. The voter then takes the printed ballot and puts it into a scanner. The scanner tallies the ballots.
After the election, you pick a bunch of scanners randomly and audit them. You compare the totals. In any stage of the process, a flaw in the software will prevent you from proceeding.
security
Additional Resources



Learn the important issues you must consider before starting your next mobility initiative. Get your mobility white paper from IDC now, compliments of Sybase.
White Papers & Webcasts
Death to PST Files
Download Now
The Tangled Web: Silent Threats & Invisible Enemies
Download Now
Tape Killed the IT Guy
Watch Now
Forrester Consulting Mobility Study: Taking Control of Enterprise Mobile Device Diversity
Download Now
BRM: What You Can Do To Reduce Risk In Challenging Times
Watch this webcast now!
What IT Must Do to Support Employee-Owned BlackBerry, iPhone and Android Mobile Devices
Download Now
Web 2.0, Social Media and the Dark Web - A Web Criminals Paradise?
In this discussion, learn about the challenges of protecting your users from the potentially unsafe content hidden in the "Dark Web".
eGuide: Enterprise Security
Smart Security Strategies for 2010. Read now!
Disaster Recovery 2008: Reduced Costs and Improved Performance
How long can your Enterprise afford to be without your data? With an accelerated disaster recovery program, you never have to answer this...


