Software Vulnerabilities in the Brazilian Voting Machine
Diego F. Aranha, Marcelo Monte Karam, André Miranda, FELIPE BRANDT SCAREL · Advances in electronic government, digital divide, and regional development book series · 2014
This chapter presents a security analysis of the Brazilian voting machine software based on the experience of the authors while participating of the 2nd Public Security Tests of the Electronic Voting System organized by the Superior Electoral Court (SEC), the national electoral authority. During the event, vulnerabilities in the software were detected and explored to allow recovery of the ballots in the order they were cast. The authors present scenarios where these vulnerabilities allow electoral fraud and suggestions to restore the security of the affected mechanisms. Additionally, other flaws in the software and its development process are discussed in detail.