TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

No, a Teen Did Not Hack a State Election

30 点作者 xbryanx超过 6 年前

2 条评论

forgotpwd16超过 6 年前
There is something I am not getting. From the second r00tz link:<p>&gt;This competition focused on using SQL injections (basic attack) against replicas of the sites that report (not count) votes.<p>&gt;Clearly, if these or similar attacks were to happen in real life, no actual votes would be changed [...]<p>Then what this hack was all about?
inanutshellus超过 6 年前
Facts (as far as I can tell -- and sorry for the weird spacing i don&#x27;t know how to do bulleted lists here):<p>* DEFCON hosted a hackathon of voting machines (&quot;exact clones&quot;)<p>* Youngsters attending DEFCON searched online and found publicly available the username and password for a given voting machine<p>* Those youngsters then used the publicly available credentials to log in over the internet to the voting machine<p>* Those youngsters then changed the votes made on that machine<p>* It is illegal under the DMCA for &quot;good guys&quot; to attempt to hack a voting machine, either for research purposes or for a real election (which means the only folks that will try are enemy states. You know, the guys you can&#x27;t prosecute for trying or succeeding.)<p>* DEFCON successfully demonstrated hacking many voting machines, but this one made sensationalist news headlines<p>The &quot;misleading information&quot;:<p>* The youngster at DEFCON didn&#x27;t actually affect a real election. It was only a hackathon at DEFCON.<p>* The much maligned voting machine is no longer in service (taken out in 2014)<p>* The youngster was coached in how to hack the machine, he didn&#x27;t just intuit that he should google for it<p>Conclusion:<p>The article&#x27;s states that we should stop freaking out because it was only a hackathon.<p>We should freak the f_ck out.<p>This machine--whose username and password were ADMIN and ABCDE respectively--were decommissioned merely two years before the last presidential election.<p>That this is the level of sophistication of a 2014 voting machine SHOULD SCARE THE F_CK OUT OF ALL OF YOU. And this article, trying to assuage those worries, should do no such d_mn thing.<p>Paper ballots should be the only thing legally allowed to determine elections.<p>Electronic ballots should be the &quot;quick count&quot; but not legally binding.<p>Anything less is folly.
评论 #17839457 未加载
评论 #17872689 未加载
评论 #17839287 未加载