Crypto stars sound off on e-voting, digital rights management
IDG News Service -
SAN FRANCISCO -- A panel of distinguished cryptographers at the RSA Conference here weighed in on a variety of hot button issues, including electronic voting and rights management for digital media.
Speaking at the annual Cryptographers Panel on Tuesday, Ronald Rivest, co-creator of the RSA encryption algorithm, backed calls for paper ballots to supplement insecure electronic voting technology, while fellow luminaries Paul Kocher and Whitfield Diffie predicted heated battles between privacy advocates and intellectual property owners over the issue of digital rights management.
Rivest cited recent analysis of Diebold Inc. electronic voting systems after a leak of the source code for those systems as evidence that such systems were inadequate to ensure the authenticity of votes cast.
Analysis of the Diebold source code showed that the company's programmers failed to use accepted authentication methods to secure voting data and cast doubt on the ability of Diebold or other companies to patch the code in time to guarantee the results of approaching elections, including this year's presidential elections, he said.
To ensure the outcome of elections where electronic voting kiosks are used, municipalities should implement voter verifiable technology that would produce a paper copy of each ballot that is cast, Rivest said.
Speaking to an audience of fellow cryptographers and security experts, Rivest cautioned against the "digitizing" of votes. "We know only too well the difficulties of securing complex electronic systems," Rivest said. Technology companies and municipalities should "go slow," and "keep it simple," relying on paper ballots and audit trails to verify the data collected by electronic voting kiosks, he said.
Speaking after Rivest, Kocher, president and chief scientist of Cryptography Research Inc. cited "failed economies" in a number of areas of technology adoption that are causing pain for corporations and ordinary computer users.
The inability of entertainment companies to control the technology used to play their products -- music and movies -- has resulted in a flood of piracy that's hurting those companies, Kocher said. Similarly, the way e-mail is sent and received makes it easy for spammers to flood users' inboxes with unsolicited messages, he said. The technology community and the private sector need to address those issues if they want to solve problems like piracy and spam. Failing that, government regulation may be needed to mandate security standards, he said.
Concerns about piracy and terrorism may spell the end of computers and computer networks that are entirely controlled by their owners, said Diffie, chief security officer at Sun Microsystems Inc. The ongoing battle between entertainment companies and
Reprinted with permission from
Story copyright 2009 International Data Group. All rights reserved.
Security
Additional Resources



White Papers & Webcasts
Share our Strength
Download Now
Lower the Cost and Complexity of a Mobile Workforce through Automation
Download This Resource Now!
Top 10 Things to Know about Data Protection
Download Now
Managing Mobility: Improve Data Security, Compliance and Manageability
Download This Resource Now!
Managing Secure File Transfer to Save Time, Money and IT Resources
Learn how companies are using innovative technology to overcome these challenges and improve user productivity by offloading e-mail attachments and replacing FTP with...
Ponemon Study: The Business Risk of a Lost Laptop
Download Now
Security Convergence Equals Network Security Cost Savings
Listen to IBM Internet Security Systems' take on network security convergence.
Airport Insecurity: The Case of Lost Laptops
Download Now
Disaster Recovery 2008: Reduced Costs and Improved Performance
How long can your Enterprise afford to be without your data? With an accelerated disaster recovery program, you never have to answer this...
