@jhalderm 5/5 If written today, we would include references to later-events (Coffee Co GA, Mesa Co CO, others' public discoveries, etc) plus our further-improved understanding of the vulns/weaknesses/etc. @jhalderm and I will be updating and submitting for peer-review later this summer.
1/5 The report @jhalderm and I wrote after discovering/PoC-ing the many exploitable vulnerabilities in the Dominion Voting Systems' ImageCast X system is now public.
https://t.co/h4Qz0Hm8YF
@jhalderm 4/5 the report you see is ~2 years old (filed Jul2021) and reflects understanding/knowledge at that time but everything is still valid and correct. We asked the vendor to point-out any technical inaccuracies or misunderstandings over a year and a half ago and have heard nothing.
@umbernhard @braden_crimmins I don't see how it could be viewed as an unrealistic threat. There's an open-world of possibilities for obtaining identity. Could be small-scale (counter allows few before/after) or large-scale (all-day surveillance footage allows entire polling place).
1/ Colleagues and I have found a serious privacy flaw that affects Dominion ICP and ICE ballot scanners. We've already informed Dominion, CISA, EAC, and state officials, and we've created a site to help officials and the public understand the issue:
https://t.co/ErwqtixOVC
4/4 We'd be excited to work with election officials to see whether other systems have similar vulns and how to best defend. Many people have made many claims about election security and the best way to sort true from false is to perform serious technical analysis.
1/4 @jhalderm and I investigated the security of the Dominion ImageCast X BMD used in Georgia and our findings aren't pretty. @CISAgov just published an advisory about vulnerabilities we found and I hope the full report we sent them will be available soon.
https://t.co/EW2qTEwvZ0
3/ We only tested two software versions of a single EAC-certified system (as part of a pre-2020 lawsuit in GA). The vendor didn't give us or CISA access to test other versions or their claimed fixes. It also hasn't publicly stated what other versions share these vulns (if any).
Here's my analysis of what happened in Antrim County, Michigan, during the November election:
https://t.co/7P75e7sjlO
Full report: https://t.co/RFtJr4Venn
@matthew_d_green@jiceman What if it was explicitly and knowingly turned-on for COVID contact tracing via ENS? I can envision Android <11 users not checking whether History was already on (?History-only doesn't report?).
https://t.co/GZv3LajD3C
https://t.co/p8JFdqLJf6