Stories
Slash Boxes
Comments

SoylentNews is people

posted by Fnord666 on Sunday August 09 2020, @09:59PM   Printer-friendly
from the getting-involved dept.

US voting hardware maker's shock discovery: Security improves when you actually work with the community:

Just hours after Professor Matt Blaze today discussed the state of election system security in America, one of the largest US voting machine makers stepped forward to say it's trying to improve its vulnerability research program.

Election Systems and Software (ES&S), whose products include electronic ballot boxes and voter registration software, said it is working with infosec outfits and bug-finders to improve the security of its products.

Speaking at this year's online Black Hat USA conference, CISO Chris Wlaschin outlined a number of steps his biz has already or will soon take to overhaul its relationship with bug-bounty hunters.

In addition to its ongoing vulnerabilities rewards program, ES&S said it will employ the services of security house Synack to bridge the gap with bounty hunters, and make its products better able to withstand attacks from the likes of state-sponsored groups.

Most notably, ES&S will beef up said rewards program. With the help of ethical hackers at Synack, testers will be able to hammer on devices like the ES&S ExpressPoll without fear of legal reprisal.

[...] One of the bounty hunters who has worked with ES&S, industry veteran Jack Cable, issued his seal of approval to the expanded program.

Today, the nation's largest voting vendor released a vulnerability disclosure policy giving hackers authorization to test their systems. This is a great step towards transparency for election security. I hope that other vendors follow suit and welcome hackers with open arms. 🧵

— Jack Cable (@jackhcable) August 5, 2020


Original Submission

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 2, Insightful) by fustakrakich on Sunday August 09 2020, @10:02PM (20 children)

    by fustakrakich (6150) on Sunday August 09 2020, @10:02PM (#1034038) Journal

    Print paper ballots!

    --
    La politica e i criminali sono la stessa cosa..
    Starting Score:    1  point
    Moderation   +1  
       Insightful=1, Total=1
    Extra 'Insightful' Modifier   0  

    Total Score:   2  
  • (Score: 2) by Runaway1956 on Sunday August 09 2020, @10:09PM (17 children)

    by Runaway1956 (2926) Subscriber Badge on Sunday August 09 2020, @10:09PM (#1034042) Journal

    Too easy. Too simple. Too trackable.

    • (Score: 3, Touché) by looorg on Sunday August 09 2020, @10:13PM (7 children)

      by looorg (578) on Sunday August 09 2020, @10:13PM (#1034044)

      Somehow it seems to work fine in what I suspect is most of the world. Which countries are there that only use electronic voting machines these days?

      • (Score: 0) by Anonymous Coward on Sunday August 09 2020, @10:38PM (4 children)

        by Anonymous Coward on Sunday August 09 2020, @10:38PM (#1034053)

        I'm quite surprised Trump hasn't yet been sued by the postal union. When you accuse mail-in voting of being subject to fraud, you're basically accusing the postal service of being undermined by its employees.

        Or perhaps the police union should sue him. If it's not the postal workers, he's basically accusing the police of turning a blind eye to large scale theft out of mailboxes.

        Or perhaps neither actually happens and he's just paranoid. If you can't trust the integrity of your country's mail service, how is America great again?

        • (Score: 2) by Runaway1956 on Sunday August 09 2020, @10:42PM (3 children)

          by Runaway1956 (2926) Subscriber Badge on Sunday August 09 2020, @10:42PM (#1034055) Journal

          Maybe you're unaware that Porch Piracy has become a thing.
          https://www.youtube.com/watch?v=6f8iQJQLbhw [youtube.com]

          • (Score: 0) by Anonymous Coward on Sunday August 09 2020, @10:52PM (1 child)

            by Anonymous Coward on Sunday August 09 2020, @10:52PM (#1034057)

            Sure but you're talking Portland, in a lawless Democrat state that would never vote for Trump anyway. :)

            If package theft is rampant in that state then surely Amazon should be sending in its own paramilitaries* to ensure the integrity of its end-to-end deliveries!

            * that's why y'all have guns, no?

            • (Score: 0) by Anonymous Coward on Sunday August 09 2020, @10:59PM

              by Anonymous Coward on Sunday August 09 2020, @10:59PM (#1034061)

              Amazon has Parmalat?

          • (Score: 2) by MostCynical on Sunday August 09 2020, @11:27PM

            by MostCynical (2589) on Sunday August 09 2020, @11:27PM (#1034070) Journal

            do people leave their ballots on their porch for collection?

            --
            "I guess once you start doubting, there's no end to it." -Batou, Ghost in the Shell: Stand Alone Complex
      • (Score: 2) by Runaway1956 on Sunday August 09 2020, @10:39PM

        by Runaway1956 (2926) Subscriber Badge on Sunday August 09 2020, @10:39PM (#1034054) Journal

        Dyslexic States of Murica?

      • (Score: 4, Funny) by driverless on Monday August 10 2020, @04:05AM

        by driverless (4770) on Monday August 10 2020, @04:05AM (#1034183)

        Speaking at this year's online Black Hat USA conference, CISO Chris Wlaschin outlined a number of steps his biz has already or will soon take to overhaul its relationship with bug-bounty hunters.

        Should we be concerned that their bug bounties were posted in Russian and Chinese, payment in BTC, WMZ and RMB?

    • (Score: 0) by Anonymous Coward on Sunday August 09 2020, @11:38PM

      by Anonymous Coward on Sunday August 09 2020, @11:38PM (#1034074)

      Uhuh. Well the hardware voting machines are also, Too Easy, Too Simple, and Too Hackable.

    • (Score: 3, Informative) by MostCynical on Sunday August 09 2020, @11:42PM (7 children)

      by MostCynical (2589) on Sunday August 09 2020, @11:42PM (#1034076) Journal

      trackable?

      In Australia, you line up, have your name marked off a roll, and get handed your paper ballot sheet/s.. which you put in a box, when you are finished marking off your preferences.. or not.

      No one checks you ballot, and there is nothing to tie your ballot to you.. all that is recorded is that you turned up and had your name crossed off.

      https://www.nytimes.com/2018/10/22/world/australia/compulsory-voting.html [nytimes.com]

      Sometimes the number of candidates means it gets silly [independentaustralia.net], but it works.
      Australian votes also all have the same value [wikipedia.org]

      --
      "I guess once you start doubting, there's no end to it." -Batou, Ghost in the Shell: Stand Alone Complex
      • (Score: 1, Interesting) by Anonymous Coward on Monday August 10 2020, @12:19AM

        by Anonymous Coward on Monday August 10 2020, @12:19AM (#1034102)

        American exceptionalism includes a libertarian freedom not to be fined for not participating in democracy.

        Just don't complain when an overweight geriatric B-grade actor from a B-grade 'reality' TV show with a fake tan and bad combover becomes emperor-demigod because you couldn't be bothered voting.

      • (Score: 0, Flamebait) by Anonymous Coward on Monday August 10 2020, @12:43AM (5 children)

        by Anonymous Coward on Monday August 10 2020, @12:43AM (#1034108)

        That's all well and good but the downside is that you live in Australia!

        The UK has the same system. Meanwhile in the US, the Democrats are pushing mail in ballots [nbcnews.com] and want to remove signature verification. [reviewjournal.com] I expect my grandfather, a life-long Republican will be voting Democrat for the first time this November and he's been dead 20 years.

        • (Score: 1, Funny) by Anonymous Coward on Monday August 10 2020, @12:59AM (3 children)

          by Anonymous Coward on Monday August 10 2020, @12:59AM (#1034114)

          We will all vote Democrat, one day . . .

          • (Score: 0) by Anonymous Coward on Monday August 10 2020, @01:36AM (2 children)

            by Anonymous Coward on Monday August 10 2020, @01:36AM (#1034129)

            I never understood your party names.

            Only Republicans believe in a republic, only Democrats believe in democracy?

            • (Score: 0) by Anonymous Coward on Monday August 10 2020, @03:48AM

              by Anonymous Coward on Monday August 10 2020, @03:48AM (#1034176)

              It makes perfect sense when you realize all of modern American politics can be summed up with "All marketing, All the time."

            • (Score: 0) by Anonymous Coward on Monday August 10 2020, @04:39AM

              by Anonymous Coward on Monday August 10 2020, @04:39AM (#1034195)

              Republicans are from the North

              Democrats are from the South

              Then, in 1968, somebody stirred the pot and mixed them all together into this blue/gray swirly mix, the republicans went loony toons, and the democrats all turned dyke

        • (Score: 2) by kazzie on Monday August 10 2020, @06:34AM

          by kazzie (5309) Subscriber Badge on Monday August 10 2020, @06:34AM (#1034238)

          In the words of Arnold J. Rimmer: "Death isn't the handicap it used to be" .

  • (Score: 0) by Anonymous Coward on Monday August 10 2020, @12:59AM (1 child)

    by Anonymous Coward on Monday August 10 2020, @12:59AM (#1034115)

    Print paper ballots!

    Nope. Print paper money...oh..wait a minute...

    • (Score: 1) by fustakrakich on Monday August 10 2020, @01:40AM

      by fustakrakich (6150) on Monday August 10 2020, @01:40AM (#1034131) Journal

      The guys on those ballots aren't eligible anymore. But you know what? The Constitution doesn't say anything about that!

      --
      La politica e i criminali sono la stessa cosa..