Patrick Colbeck

Machine-Based Vote Manipulation

Suspicious Vote Tally Anomalies Machine-Based Vote Manipulation Electronic voting systems have several potential vulnerabilities not found with hand counts. If these vulnerabilities were exploited, the election results could be manipulated resulting in certification of fraudulent results. In order to secure our elections from such exploits, significant security rigor is required.  If election officials have insufficient

Machine-Based Vote Manipulation Read More »

Election System Risks

CISA Cyber Risk Summary Election Infrastructure Cyber Risk Assessment CISA’s National Risk Management Center (NRMC) assessed multiple criteria that quantify the scale of election infrastructure cyber risk, including machine preparation, device networking, and the centralization of infrastructure components. CISA NRMC also assessed additional risk criteria related to voter registration, voting machines, and electronic submission of

Election System Risks Read More »

Dominion CEO Perjury Allegations

Dominion CEO and Lawyer During Zoom Testimony Multiple Counts of Perjury Alleged Dominion CEO Testifies Under Oath On December 15, 2020, Dominion CEO John Poulos testified under oath with legal counsel present regarding Dominion Voting Systems in use in Michigan during the 2020 General Election. Upon review of his comments against the contents of publicly

Dominion CEO Perjury Allegations Read More »

CISA Amber Alert

Election Infrastructure Subsector Cyber Risk Summary This report by the Cyber Security and Infrastructure Security Agency (CISA) provides analysis, findings, and recommendations derived from non-attributable cybersecurity trends observed between November 3, 2019, and November 3, 2020—Election Year 2020 (EY20)—among Election Infrastructure (EI) Subsector entities subscribed to services provided by CISA. CISA’s analysis of the available

CISA Amber Alert Read More »

Election System Internet Connections

Election System Internet Connections Internet connections to/from components within an election system compromise the security of elections.  Physical transfers of election records such as post-election results are secured with the application of configuration-controlled seals and bipartisan signatories.  In contrast, digital transfers of election records such as post-election results occur regularly without any bipartisan oversight and

Election System Internet Connections Read More »

Center for Internet Security Risks

Across all 50 states Election System Wiretap The Center for Internet Security (CIS) manages the Election Integrity Information Sharing and Analysis Center (EI-ISAC) under contract to the Department of Homeland Security (DHS) to secure election systems which we are told are not connected to the internet.  In this capacity, CIS has privileged access to sensitive

Center for Internet Security Risks Read More »

Decryption Keys Stored in Plain Text

Security Negligence Storing decryption keys in plain text creates a major security vulnerability. If an attacker gains access to the database, they could easily obtain the keys and use them to decrypt sensitive election data such as voter registration information, ballot designs and configurations, and vote tallies and results. Read Full Advisory

Decryption Keys Stored in Plain Text Read More »