Internet Voting.ppt

上传人:towelfact221 文档编号:376580 上传时间:2018-10-08 格式:PPT 页数:12 大小:305.50KB
下载 相关 举报
Internet Voting.ppt_第1页
第1页 / 共12页
Internet Voting.ppt_第2页
第2页 / 共12页
Internet Voting.ppt_第3页
第3页 / 共12页
Internet Voting.ppt_第4页
第4页 / 共12页
Internet Voting.ppt_第5页
第5页 / 共12页
亲,该文档总共12页,到这儿已超出免费预览范围,如果喜欢就下载吧!
资源描述

1、Internet Voting,Ashok,CS 395T,What is “E-voting”,Thomas Edison received US patent number 90,646 for an electrographic vote recorder in 1869.Specific implementations : electronic counting kiosk voting Direct Recording Electronic (DRE) machines remote electronic voting (REV) Internet (voting applet, w

2、ebsite), text messaging, touch-tone phone, etc. DREs and REVs fail to provide voter-verifiable audit trails, undermining voter confidence.,Security Criteria,Criteria fall in 2 categories - keep votes secret, and provide secure and reliable voting infrastructure. Most popularly accepted (technologica

3、l) : system integrity and reliability vote counting must produce reproducibly correct results data integrity and reliability voter anonymity and data confidentiality voting counts must be protected from outside reading during voting process operator authentication no trapdoors for maintenance or set

4、up! system accountability,Security Criteria contd,system disclosability system availability usabilityChallenge comes from contradiction between voter confidentiality and system accountability.,Problems & Attacks,Overriding problem is voter disenfranchisement,Problems & Attacks contd,Internet voting

5、should at a minimum address issues and doubts of absentee voting Coercion even more problematic with Internet voting Internet facilitates large-scale vote selling and buying, perhaps automated Malicious software and access to shared computers Data in system need not need modification but public disc

6、losure, even after polling period (last-day) DoS attacks DNS attacks Priority of electronic vs. traditional ballots,Framework,Trustworthy Entities,Blinding Signatures and Anonymous Channels,Secure Electronic Registration and Voting Experiment (SERVE),Built by Accenture and DoD Federal Voting Assista

7、nce Program (FVAP) Covered by Uniformed and Overseas Citizens Absentee Voting Act (UOCAVA) Follow-up to Voting Over the Internet (VOI) Built by Booz-Allen & Hamilton with different architecture and codebase Used in 2000 election to collect 84 votes in Florida, South Carolina, Texas, and Utah FVAPs 2

8、001 Voting Over the Internet Pilot Project Assessment Report - 50 votes in Florida! Abandoned over DoS and malicious software exposure,Submitted from ActiveX control from IE,SERVE contd,Voter,SERVE,LEO, Ballot, V ,Kserve,SERVE retains encrypted ballot,SERVE contd,Vote selling / buying still possible

9、 selling of voting credentials vote from different addresses using proxy server; orgs that use same IP address from all users in domain Backdoors OS, games, device drivers, multimedia, browser plugins, screen savers, etc. ActiveX control itselfNo voter verification Adversary can spoof voting server,

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 教学课件 > 大学教育

copyright@ 2008-2019 麦多课文库(www.mydoc123.com)网站版权所有
备案/许可证编号:苏ICP备17064731号-1