Go homepage(回首页)
Upload pictures (上传图片)
Write articles (发文字帖)

The author:(作者)
published in(发表于) 2016/8/12 12:17:58
7 minutes to hack a voting machine experts, this is the United States General elections,

English

中文

7 minutes to hack a voting machine experts, this is the United States election-United States General elections, hack-IT information

Appel, a computer science professor at Princeton University (AndrewAppel) has only spent $ 82 online shopping parts allowed it to assemble an old-fashioned electronic voting machines and successfully replace the chip interfere with results, and this kind of voting machines in the United States in multiple States is still widely used.

This 250-pound behemoth Appel a conference room next to his Office after being fully assembled, experiments began.

Play hackers task by Appel's a graduate student in Hardman (AlexHalerman) operation. Halderman just 7 seconds to "pry" open the lock of the voting machines, and Hardman with a screwdriver, loosen the screw and took the core part of this voting machine: four read-only memory (ROM) chip. Because of these chips are not connected to the circuit board, so removing them is very easy.

Then, Halderman for this voting machine is fitted with a new chip designed by Appel, the new chip is converted computer firmware, features can be "ejected" machines record votes, change the official results and not discovered by voters.

Eventually, the Hardman of the "hack" only 7 minutes.

Appel is the United States one of the top experts on network security, his job is to study how to hack a network to protect the United States of network security. In the past 10 years, Appel's main research topics with the United States related to electronic voting systems, particularly since 2002, was widely used in the general election, called "direct recording electronic systems" (DirectRecordingElectronic) voting system. Appel and cyber security experts through a number of studies in the hope that public awareness of how fragile is the voting system.

Network security experts, including Appel wanted to send a signal, namely United States election electronic voting systems and iPhone navigation system instability, to a large extent, risk exists in those polling stations are old and there are a number of systemic risk vulnerabilities of electronic voting machines.

New York University's Brennan Center of Justice (BrennanCenterforJustice) in September last year issued a report entitled "there is a risk of a voting machine study" report reached a similar conclusion.

The report points out that, in 2016, United States the voting machines used in 43 States have used for more than 10 years, 31 States had been "strongly recommends" using the new voting machines. This report's authors Noden (LarryNorden), from hardware and software support to replace the touch sensor sensitivity, United States voting systems there is a big risk. Noden also demonstrated on a voting machine in West Virginia, a voter who caused large fingers pressed errors number wrong to vote for other candidates.

According to United States media reports, because the United States electoral system by the State alone, so interference of election the situation is more serious, there are all kinds of security problems and vulnerabilities. Fortunately, more and more through electronic system voters are usually a paper ballot for verification of backups.

"Today there are more than 80% of Americans either by scanning paper vote and then, either by electronic vote system and then leave a verifiable paper backup. "Noden said.

However, this also means that 20% per cent of voters still do not use a paper backup system, is very important especially in presidential swing States, including Pennsylvania and Virginia, and so on.


专家7分钟黑掉一台投票机,这就是美国大选 - 美国大选,黑客 - IT资讯

普林斯顿大学计算机科学系教授阿佩尔(AndrewAppel)日前仅花了82美元网购零件便成功组装了一台老式电子投票机并成功替换芯片干扰投票结果,而目前这种投票机在美国多个州仍然广泛使用。

这台重达250磅的庞然大物在阿佩尔办公室隔壁的一个会议室被组装完毕后,实验开始了。

扮演黑客的任务先由阿佩尔手下的一位研究生哈德曼(AlexHalerman)操作。哈德曼仅用了7秒钟时间便“撬”开了这台投票机的锁,接着,哈德曼用螺丝刀拧下螺丝,取出了这台投票机的核心部分:四个只读存储器(ROM)芯片。由于这些芯片没有同电路板连接,因此取下它们也非常容易。

然后,哈德曼为这台投票机安装了一个由阿佩尔设计的新芯片,这个新芯片是被改装过的计算机固件,功能是可以“筛掉”机器里记录的选票数,改变计票结果而不被投票者发现。

最终,哈德曼的整个“黑客入侵”过程只用了7分钟。

阿佩尔是美国网络安全问题的顶级专家之一,他的工作就是通过研究如何入侵网络来保护美国的网络安全。在过去的10年里,阿佩尔的主要研究课题与美国的电子投票系统相关,特别是2002年以来一直在大选中被广泛使用的,被称为“直接记录电子系统”(DirectRecordingElectronic)的投票系统。阿佩尔和多位网络安全专家通过多项研究,希望让公众认识到这套投票系统有多脆弱。

包括阿佩尔在内的网络安全专家想要传递一个讯息,即美国大选的电子投票系统和苹果手机的导航系统一样存在不稳定性,很大程度上讲,风险就存在于那些投票站里已经陈旧且存在多项系统风险漏洞的电子投票机。

纽约大学布伦南司法中心(BrennanCenterforJustice)去年9月份发表的一份名为“存在风险的投票机”的研究报告得出类似的结论。

这份报告指出,在2016年,美国有43个州所使用的投票机已经使用了10年以上,有31个州曾经被“强烈建议”使用新的投票机。这项报告的撰写者诺登(LarryNorden)指出,从软件支持到更换硬件以及触摸感应器灵敏度等方面,美国的投票系统都存在很大的风险。诺登还演示了在西弗吉尼亚州的一个投票机上,一位投票者因为手指触摸按下的力度偏大而造成把票错投给其他候选人的失误。

根据美国媒体的报道,因为美国选举系统都由各州单独操作,因此选举投票受到干扰的情况更加严重,存在形形色色的安全问题和漏洞。好在越来越多的通过电子系统投票的选民也通常会进行纸质投票的备份以备核查。

“今天有超过80%的美国人要么通过纸质投票然后进行扫描,要么通过电子系统投票然后留下纸质备份可以核查。”诺登表示。

但是,这也意味着还有20%左右的选民仍然不使用纸质备份系统,特别是在对大选结果非常重要的摇摆州,包括宾夕法尼亚州和弗吉尼亚州等。






If you have any requirements, please contact webmaster。(如果有什么要求,请联系站长)





QQ:154298438
QQ:417480759