In a display that caught the attention of a federal courtroom, computer scientist Alex Halderman illuminated glaring susceptibilities within Georgia’s voting infrastructure, casting shadows on the security of its election system. During an ongoing trial, Halderman, a professor at the University of Michigan, demonstrated how a voting machine could be tampered with in mere seconds using everyday items—a Bic pen and a $10 smart card—raising questions about the reliability of the Dominion voting equipment used across the state.
The spotlight moment came amidst a broader debate over the constitutionality of Georgia’s election system, with election integrity activists urging for a transition to hand-marked paper ballots tallied by scanners, citing risks associated with the current touchscreens that generate QR code-laden paper ballots. While state officials maintain that the voting machines are secure, Halderman’s testimony suggested otherwise.
Halderman’s hacks were simple yet alarming; he manipulated the results of a hypothetical election, producing as many ballots as desired, and even managed to reboot a machine into “safe mode” by inserting a pen into the voting machine. Once in this mode, he could freely edit files, tweak settings, and install malware, gaining “super-user” access and the potential to alter any aspect of the machine’s operation. “All it takes is five seconds and a Bic pen,” Halderman remarked, evoking a sense of urgency in addressing these vulnerabilities.
Despite the exhibition of these flaws, election officials counter by highlighting the absence of any known hacking incidents in real Georgia elections, asserting that a series of security measures—locks, seals, and poll worker vigilance—safeguard against such interference. State Election Board member Matt Mashburn questioned the practicality of these flaws being exploited, suggesting the difficulties in manipulating multiple machines simultaneously, thus minimizing the perceived danger.
However, Halderman’s findings, which were validated by the U.S. Cybersecurity and Infrastructure Agency (CISA) in June 2022, tell a different story. He indicated that a malicious actor could wreak havoc on an election, creating chaos by changing touchscreen programming, a process that while swift could cast doubt on the legitimacy of ballots, particularly in a significant election. The vulnerabilities unveiled could affect not just one voting machine but potentially have broader implications if someone accessed election management servers.
The trial’s stakes are high, with U.S. District Judge Amy Totenberg, an appointee of President Barack Obama, tasked with the momentous decision that could shape the course of Georgia’s elections as the 2024 cycle looms. Attorneys for Secretary of State Brad Raffensperger have argued that hypothetical risks of election tampering do not equate to constitutional violations, framing the decision to weigh these risks as a political judgment rather than a judicial one.
As the courtroom awaits Totenberg’s verdict in the weeks following the trial’s conclusion, Georgia lawmakers are contemplating legislation that could mitigate some concerns by removing QR codes from ballots. In the interim, the demonstration has reignited debate over the fragility of voter confidence in the technology underpinning American democracy, emphasizing the precarious balance between the ease of voting and the imperative of election security.
Relevant articles:
– Computer scientist shows how to tamper with Georgia voting machine, in election security trial: “All it takes is five seconds and a Bic pen.”
– Is Georgia’s election system constitutional? A federal judge will decide in trial set to begin, ABC27, Sun, 07 Jan 2024 08:00:00 GMT
– Dominion machine hacked live in front of Georgia judge, World Tribune, Tue, 23 Jan 2024 21:41:00 GMT