Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

BREAKING: First News of Debra Bowen's Top-To-Bottom Review of California Voting Systems

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » Archives » General Discussion (1/22-2007 thru 12/14/2010) Donate to DU
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:12 PM
Original message
BREAKING: First News of Debra Bowen's Top-To-Bottom Review of California Voting Systems
Listen!

I'll update as more comes in.
Printer Friendly | Permalink |  | Top
AX10 Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:13 PM
Response to Original message
1. kick
Printer Friendly | Permalink |  | Top
 
EFerrari Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:13 PM
Response to Original message
2. Thanks, emlev! We DON'T LET THEM TURN CA!
K&R
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:15 PM
Response to Original message
3. More
Brad Friedman just reported on the radio (at above link):

Bowen's teams were able to bypass physical and software security for every system tested!

Decisions on what to do won't come until next Friday, whether to certify systems, decertify or require mitigations

Public hearing in Sacramento, CA Monday 7/30 at 10:00 a.m.

There were source code reviews and hack tests...

More to come. As available, report will be posted here.
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:16 PM
Response to Reply #3
4. Join the chat room for the radio show
At this link.
Printer Friendly | Permalink |  | Top
 
OPERATIONMINDCRIME Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:17 PM
Response to Reply #3
5. Thanks For The Update!
Edited on Fri Jul-27-07 05:17 PM by OPERATIONMINDCRIME
Printer Friendly | Permalink |  | Top
 
Fridays Child Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:20 PM
Response to Original message
6. k/r
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:24 PM
Response to Original message
7. the conference call with Bowen continues...
Here's a bit more, thanks to BRAD BLOG commenter LeftIsBest:
1. Security teams were able to bypass both physical and software security in every system they tested.
2. SOS wants input from people who will read the several-hundred page report of findings over the weekend.
3. No recommendations made yet - awaiting input Monday
4. Public hearing at 10 a.m. Monday (7/30/07) at the SOS auditorium in Sacramento and continue that day until all testimony is taken.
5.Web cast likely via CalChannel live. Will also be videotaped and archived on Monday.
6. L.A. County's InkAVote is in limbo - since there was such delay by ES&S - uncertain how long it will take to deal with them - status up in the air.
7. Decisions WILL be made on EVERY system (Sequoia, ES&S and Diebold) by August 3rd.
More to follow as call continues!
Chat room
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:37 PM
Response to Original message
8. Greg Palast now the guest on that same radio show linked in the OP/nt
Printer Friendly | Permalink |  | Top
 
Rainscents Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:42 PM
Response to Original message
9. This is GREAT!!!
I love GREG... He is the TRUTH teller!
Printer Friendly | Permalink |  | Top
 
senseandsensibility Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 05:47 PM
Response to Original message
10. kick
I hope some DUers will read the report and attend the meeting.
Printer Friendly | Permalink |  | Top
 
proud patriot Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 06:16 PM
Response to Original message
11. k and r
Bowen rocks:headbang:
Printer Friendly | Permalink |  | Top
 
Stevepol Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 06:18 PM
Response to Original message
12. K & Highly R!!!
Printer Friendly | Permalink |  | Top
 
Warren DeMontague Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 06:19 PM
Response to Original message
13. I'm so glad we got her in there.
:thumbsup:
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 06:21 PM
Response to Original message
14. Outside of California? Why you should care
I heard California Secretary of State Debra Bowen testify in Congress a few months ago. She was asked whether this top-to-bottom review of all of the voting systems certified in California could result in her decertifying any voting systems. I remember her response word for word:

"Yes."

And now here we are. If any or all of the electronic voting systems are decertified in California, this could snowball across the country. It will at the very least give opponents of "black box voting" a powerful new tool for fighting these machines, that disenfranchise voters by the thousands, if not millions.

Bowen's backbone may keep California from going "red" in 2008. And that's a very, very big deal.
Printer Friendly | Permalink |  | Top
 
midnight Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 06:41 PM
Response to Original message
15. This is great listening. Thanks so much for the link and info.
I listened to Greg Palast in Chicago, and was hopeful that this information would come out. I look forward to watching him tonight on PBS.
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 06:46 PM
Response to Reply #15
16. Radio show will be available archived later this eve, see link
Audio archives of today's show here

There will be live coverage of Monday's public hearing on BRAD BLOG as well.
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 07:36 PM
Response to Original message
17. None of the machines tested met accessibility requirements of HAVA!
This according to John Gideon, of Daily Voting News.
Printer Friendly | Permalink |  | Top
 
Melinda Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 07:49 PM
Response to Original message
18. Yep, Diebold and Sequoia are easily hacked and votes changed; No kidding-
Edited on Fri Jul-27-07 07:51 PM by Melinda
6.1 Sequoia
The red team analyzing the Sequoia system identified several issues. They fall into
several classes:

1. Physical Security. The testers were able to gain access to the internals of the systems
by, for example, unscrewing screws to bypass locks. The screws were not protected
by seals. Similarly, plastic covers that were protected by seals could be pried open
enough to insert tools that could manipulate the protected buttons without damaging
the seals or leaving any evidence that the security of the system had been
compromised.

2. Overwriting Firmware. The testers discovered numerous ways to overwrite the
firmware of the Sequoia Edge system, using (for example) malformed font files and
doctored update cartridges. The general approach was to write a program into
memory and use that to write the corrupt firmware onto disk. At the next reboot, the
boot loader loaded the malicious firmware. At this point, the attackers controlled the
machine, and could manipulate the results of the election. No source code access was
required or used for this attack, and a feature of the proprietary operating system on
the Edge made the attack easier than if a commercial operating system had been used.

3. Overwriting the Boot Loader. Just as the testers could overwrite firmware on the
disk, they could overwrite the boot loader and replace it with a malicious boot loader.
This program could then corrupt anything it loaded, including previously uncorrupted
firmware.

4. Detecting Election Mode. The firmware can determine whether the system is in test
mode (LAT) or not. This means malicious firmware can respond correctly to the preelection
testing and incorrectly to the voters on Election Day.

5. Election Management System. The testers were able to bypass the Sequoia WinEDS
client controlling access to the election database, and access the database directly.
They were able to execute system commands on the host computer with access only
to the database. Further, the testers were able to exploit the use of the autorun feature
to insert a malicious program onto the system running the Sequoia WinEDS client;
this program would be able to detect the insertion of an election cartridge and
configure it to launch the above attacks when inserted into an Edge.

6. Presence of an Interpreter. A shell-like scripting language interpreted by the Edge
includes commands that set the protective counter, the machine’s serial number,
modify the firmware, and modify the audit trail.

7. Forging materials. Both the update cartridges and voter cards could be forged.
The report presents several scenarios in which these weaknesses could be exploited to
affect the correct recording, reporting, and tallying of votes.

6.2 Diebold

The team investigating the Diebold system identified several issues. They fall into several
classes:

1. Election Management System. The testers were able to penetrate the GEMS server exploiting vulnerabilities in the Windows operating system as delivered
and installed by Diebold. Once this access was obtained, they were able to bypass the
GEMS server to access the data directly. Further, the testers were able to take
security-related actions that the GEMS server did not record in its audit logs. Finally,
with this level of access, the testers were able to manipulate several components
networked to the GEMS server, including loading wireless drivers onto the GEMS
server that could then be used to access a wireless device plugged surreptitiously into
the back of the GEMS server.

2. Physical Security. The testers were able to bypass the physical controls on the
AccuVote Optical Scanner using ordinary objects. The attack caused the AV-OS unit
to close the polls, meaning the machine could not tally ballots at the precinct or
inform voters whether they had “over-voted” their ballot. Similarly, the testers were
able to compromise the AccuVote TSx completely by bypassing the locks and other
aspects of physical security using ordinary objects. They found an attack that will
disable the printer used to produce the VVPAT in such a way that no reminders to
check the printed record will be issued to voters.

3. AccuVote TSx. The testers found numerous ways to overwrite the firmware in the
AccuVote TSx. These attacks could change vote totals, among other results. The
testers were able to escalate privileges from those of a voter to those of a poll worker
or central count administrator. This enabled them to reset an election, issue
unauthorized voter cards, and close polls. No knowledge of the security keys was
needed.

4. Security Keys for Cryptography. The testers discovered that a well-known static
security key was used by default.
The report presents several scenarios in which these weaknesses could be exploited to
affect the correct recording, reporting, and tallying of votes.

more at: http://www.sos.ca.gov/elections/voting_systems/ttbr/red_overview.pdf

*edited to add note to mods: This is public information taken straight from the SOS site; I do believe it is exempted from the copyright limitations, however if not, then please modify as needed.
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 09:30 PM
Response to Original message
19. Come to the public hearing Mon. in Sacramento if you can!
Monday, July 30, 2007
10:00 a.m.
1500 11th Street
Sacramento

Agenda posted here.
Printer Friendly | Permalink |  | Top
 
kster Donating Member (1000+ posts) Send PM | Profile | Ignore Fri Jul-27-07 11:02 PM
Response to Original message
20. KICK, already Recommended.nt
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Jul-28-07 12:28 AM
Response to Original message
21. Audio now available
There are three hours of audio, posted in three pieces, divided like this:

HOUR 1: Open lines, news from Bush World, breaking news on Bowen's "Top-to-Bottom Review" of voting systems and Greg Palast on vote-caging et al...

HOUR 2: Open lines, more news from Bush World, and Bryan Myers on details from PBS' NOW report on vote-caging, airing this evening...

HOUR 3: Election Integrity Hour - Details from Bowen's "Top-to-Bottom Review" with John Gideon (report was released while we were on the air), a hand-off to Christine Craft of 1240am Talk City in Sacramento, who will be taking over as Guest Host of the PBC show beginning next week, and also leading a group to Bowen's public hearing next Monday, and tons of last minute callers!...

This is the Peter B. Collins Show, guest hosted by Brad Friedman of The BRAD BLOG.


Printer Friendly | Permalink |  | Top
 
Change has come Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Jul-28-07 12:46 AM
Response to Original message
22. this is exciting.
Thanks for the links.

:kick:
Printer Friendly | Permalink |  | Top
 
emlev Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Jul-28-07 01:04 AM
Response to Original message
23. Finally realizing I haven't posted links to the Reports themselves
Here they are, on the California Secretary of State website.
Printer Friendly | Permalink |  | Top
 
tom_paine Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Jul-29-07 06:27 AM
Response to Original message
24. Kick and a would-be rec
:kick: & :toast: (reccomendus interruptus, no 24 hr.+ recommendations)
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Sun May 05th 2024, 02:25 AM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » Archives » General Discussion (1/22-2007 thru 12/14/2010) Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC