E-Voting Risk Assessment: A Threat Tree for Direct Recording Electronic Systems

نویسندگان

  • J. Harold Pardue
  • Jeffrey P. Landry
  • Alec Yasinsac
چکیده

Approximately 25% (according to http://verifiedvoting.com/) of voting jurisdictions use direct recording electronic systems to record votes. Accurate tabulation of voter intent is critical to safeguard this fundamental act of democracy: voting. Electronic voting systems are known to be vulnerable to attack. Assessing risk to these systems requires a systematic treatment and cataloging of threats, vulnerabilities, technologies, controls, and operational environments. This paper presents a threat tree for direct recording electronic (DRE) voting systems. The threat tree is organized as a hierarchy of threat actions, the goal of which is to exploit a system vulnerability in the context of specific technologies, controls, and operational environment. As an abstraction, the threat tree allows the analyst to reason comparatively about threats. A panel of elections officials, security experts, academics, election law attorneys, representatives from governmental agencies, voting equipment vendors, and voting equipment testing labs vetted the DRE threat tree. The authors submit that the DRE threat tree supports both individual and group risk assessment processes and techniques.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

The Risk of e-Voting

World wide, there are various proposals for automating manual voting processes. This paper considers two different e-voting schemes, Internet voting and direct recording electronic (DRE) voting systems, explicitly focusing on risk to the integrity of the voting process. Fair elections must assure voter authentication, vote confidentiality and integrity, and the ability to audit the election. E-...

متن کامل

Performance and Test Standards for Punchcard, Marksense, and Direct Recording Electronic Voting Systems

of the PERFORMANCE AND TEST STANDARDS FOR PUNCHCARD, MARKSENSE, AND DIRECT RECORDING ELECTRONIC VOTING SYSTEMS FEDERAL ELECTION COMMISSION JANUARY 1990 Abstract to Standards for P&M and DRE Systems 1/90 1to Standards for P&M and DRE Systems 1/90 1

متن کامل

Performance and Test Standards for Punchcard, Marksense, and Direct Recording Electronic Voting Systems

of the PERFORMANCE AND TEST STANDARDS FOR PUNCHCARD, MARKSENSE, AND DIRECT RECORDING ELECTRONIC VOTING SYSTEMS FEDERAL ELECTION COMMISSION JANUARY 1990 Abstract to Standards for P&M and DRE Systems 1/90 1to Standards for P&M and DRE Systems 1/90 1

متن کامل

DRE-i and Self-Enforcing E-Voting

This chapter1 describes a research experience of designing, implementing and trialling a new e-voting system called Direct Recording Electronic with Integrity (DRE-i). DRE-i is an example of a new category of voting systems that are end-to-end (E2E) verifiable without involving any tallying authorities. Such voting systems are termed “self-enforcing e-voting”.

متن کامل

A novel ranking method for intuitionistic fuzzy set based on information fusion and application to threat assessment

A novel ranking method based on multi-time information fusion is proposed for intuitionistic fuzzy sets (IFSs) and applied to the threat assessment problem, a multi-attribute decision making (MADM) one. This method integrates a designed intuitionistic fuzzy entropy (IFE), the closeness degree of technique for order preference by similarity to ideal solution (TOPSIS), the decision maker¡¯s (DM¡¯...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • IJISP

دوره 5  شماره 

صفحات  -

تاریخ انتشار 2011