
Originally Posted by
yhokz101
quite true, but it makes even simpler to manipulate and will take no hacker to do it when this "automated election system" still involves the physical transporting of SD (secure digital) memory cards containing the vote count and other details for every poll precinct. Keyword: "physically transporting of SD memory cards". Which is obviously much slower and fraught with security risks that threaten the integrity of the entire electoral process. Moreover, there could be switching of SD cards with fake ones with pre-programmed election results. Hence we go back to unofficial results that could tally the "rigging" of those SD cards. See the pattern?
afaik, sdcard is not official unless it coincide with the official central server... it is mainly the backup along with the physical balot and receipt (if incase manual counting is needed)...
what is stored on sdcard? scanned version of the balot, encrypted before saved..
Security level required on AES
1) Transmitted data to central server
2) Scanned encrypted copy of the ballot stored on sdcard, somesay it also store the xml formatted version of the data.
3) ER Receipt
for cheating to be succesful this 3 level should be compromised
- Physical ballot (only needed during manual counting)