A $15 Device Can Hack US Presidential Election, Says Symantec

A $15 Device Can Hack US Presidential Election, Says Symantec
Advertisement

During its "Hack the Vote" election simulation, cyber-security firm Symantec has revealed three easy ways an attacker with the right level of intelligence and motivation could impact the US presidential election and it will cost just $15 (roughly Rs. 1,000).

To analyse the ecosystem of an election - from electronic voting machines to data transfers, vote tabulation and broadcasting the results - the company tested the actual direct-recording electronic (DRE) voting machines and other equipment tosimulate a real-world voting system. According to the general process, voters use a chip card to cast their vote. Once someone has voted, the same card is re-used by the next voter. "Just like credit cards, these cards are essentially a computer with its own RAM, CPU and operating system. Which means they can be exploited like any computing device," the company said in a statement.

"In examining the election process for vulnerabilities, we discovered that there's an opportunity for a hacker to modify the code put on a voter's chip card. Anyone who knows how to programme a chip card and purchases a simple $15 Raspberry Pi-like device, could secretly reactivate their voter card while inside the privacy of a voting booth," added Symantec.

The card can be faked in two different ways - one, reset the card to allow someone to vote multiple times using the same chip card and second, programming the card to allow multiple vote casting. "There was no form of encryption on the internal hard drive of the voting machines we purchased, which were running an outdated operating system to display the ballots and record votes," Symantec found.

The second method to influence the votes is tampering with tabulation. All the votes are registered in the voting and attackers could compromise the integrity of the voting data by manipulation of cartridges as these storage cartridges function like a USB drive which stores data in plain text with no embedded encryption. Thirdly, by propagating misinformation on social media networks, a hacktivist or attacker could also change voter behaviour.

Symantec said that these vulnerabilities can easily be fixed by installing security software at all points of the process.

Comments

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Airtel's 10GB 4G Data at Rs. 259 Offer Extended to All Smartphone
Facebook Gadgets360 Twitter Share Tweet Snapchat LinkedIn Reddit Comment google-newsGoogle News

Advertisement

Follow Us
© Copyright Red Pixels Ventures Limited 2024. All rights reserved.
Trending Products »
Latest Tech News »