<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Diebold/Premier Voting Machine Key Copied</title>
	<atom:link href="http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/feed/" rel="self" type="application/rss+xml" />
	<link>http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/</link>
	<description></description>
	<pubDate>Wed, 20 Aug 2008 16:43:35 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>By: jerins</title>
		<link>http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/#comment-511</link>
		<dc:creator>jerins</dc:creator>
		<pubDate>Sun, 10 Feb 2008 04:28:17 +0000</pubDate>
		<guid isPermaLink="false">http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/#comment-511</guid>
		<description>It seems interesting to me that most of the exploits and security issues that you see involve some variation of the victim simply handing access or control to the attacker. Many examples (such as this one) are unbelievable in how easy the job of the attacker is made. These issues can obviously have more or less of an impact depending on the situation, but I think it is clear that in the matter of voting machines, the impact is very high. Voting machines have been the target of an amazing amount of controversy, and the motivation of people to break or influence such systems is extremely high. So if we do in fact go to any sort of electronic voting option, it would be imperative that the security measures be of a standard much higher than is displayed in this example.</description>
		<content:encoded><![CDATA[<p>It seems interesting to me that most of the exploits and security issues that you see involve some variation of the victim simply handing access or control to the attacker. Many examples (such as this one) are unbelievable in how easy the job of the attacker is made. These issues can obviously have more or less of an impact depending on the situation, but I think it is clear that in the matter of voting machines, the impact is very high. Voting machines have been the target of an amazing amount of controversy, and the motivation of people to break or influence such systems is extremely high. So if we do in fact go to any sort of electronic voting option, it would be imperative that the security measures be of a standard much higher than is displayed in this example.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kris Plunkett</title>
		<link>http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/#comment-427</link>
		<dc:creator>Kris Plunkett</dc:creator>
		<pubDate>Sat, 09 Feb 2008 01:26:00 +0000</pubDate>
		<guid isPermaLink="false">http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/#comment-427</guid>
		<description>Link to an article about this: http://www.bradblog.com/?p=4066#more-4066</description>
		<content:encoded><![CDATA[<p>Link to an article about this: <a href="http://www.bradblog.com/?p=4066#more-4066" rel="nofollow">http://www.bradblog.com/?p=4066#more-4066</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: felixctc</title>
		<link>http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/#comment-410</link>
		<dc:creator>felixctc</dc:creator>
		<pubDate>Fri, 08 Feb 2008 18:56:37 +0000</pubDate>
		<guid isPermaLink="false">http://cubist.cs.washington.edu/Security/2008/02/07/dieboldpremier-voting-machine-key-copied/#comment-410</guid>
		<description>I think this brings up another issue also. People need to be aware of security vulnerability. For example, why in the world would you put the code on FTP and a picture of the key online. This is screaming "Please exploit me". If they were more aware of the consequences, this wouldn't have happened. As technology advances, people and companies need to learn the importance of security and how easy it is for adversaries to exploit vulnerabilities after given a little information.</description>
		<content:encoded><![CDATA[<p>I think this brings up another issue also. People need to be aware of security vulnerability. For example, why in the world would you put the code on FTP and a picture of the key online. This is screaming &#8220;Please exploit me&#8221;. If they were more aware of the consequences, this wouldn&#8217;t have happened. As technology advances, people and companies need to learn the importance of security and how easy it is for adversaries to exploit vulnerabilities after given a little information.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
