Forgot your password?

typodupeerror
Government Software Your Rights Online

Sequoia To Publish Source Code For Voting Machines 102

Posted by timothy
from the this-time-on-purpose dept.
cecille writes "Voting machine maker Sequoia announced on Tuesday that they plan to release the source code for their new optical-scan voting machine. The source code will be released in November for public review. The company claims the announcement is unrelated to the recent release of the source code for a prototype voting machine by the Open Source Digital Voting Foundation. According to a VP quoted in the press release, 'Security through obfuscation and secrecy is not security.'"
This discussion has been archived. No new comments can be posted.

Sequoia To Publish Source Code For Voting Machines

Comments Filter:
  • by al0ha (1262684) on Wednesday October 28 2009, @04:17PM (#29902039) Journal
    if I didn't know that when someone makes a statement such as, "To Tell The Truth," they are generally trying to hide their true objective. This applies to the VP quote below, which is obviously not an original thought or deeply felt opinion, otherwise the company would have performed in this manner from day 1.

    "According to a VP quoted in the press release, 'Security through obfuscation and secrecy is not security.'""
  • by TubeSteak (669689) on Wednesday October 28 2009, @04:22PM (#29902095) Journal

    How about they release the source code for their old voting machines.
    You know, the ones that aren't "optical-scan".

    Last I checked, the touchscreen ones are the voting machines that have caused so much grief.

  • by DrVomact (726065) on Wednesday October 28 2009, @04:23PM (#29902101) Journal

    But we need another step: a requirement for a paper audit trail. According to the article, criticism of the Sequoia system first surfaced because some printed output didn't match the electronic totals. Open source is good, but in this case, it's not enough: we must be able to check the reliability of these machines and their operators against a paper record. That doesn't mean that every election has to involve an electronic and a paper count—but the paper will be there if we need it. As the reliability of a given system is proven over time, we'll come to trust it—though I think a cross-check of a statistically significant number of votes would always be a good idea.

  • Horray! (Score:5, Insightful)

    by Geoffrey.landis (926948) on Wednesday October 28 2009, @04:24PM (#29902113) Homepage

    Wow-- horray for them!

    There are still a lot of things to worry about with electronic voting-- but this goes a long way toward making the process transparent, and transparency (of the vote counting method) is absolutely essential to confidence in the results.

    Great news!

  • by Anonymous Coward on Wednesday October 28 2009, @04:25PM (#29902125)

    I've said it once, and I will say it again, you can publish ALL the code you want, but

    1. In the event of a recount, can I get repeatable results?

    2. In the event of a "software bug" can I hold someone responsible, will they pay for the cost of a reelection?

    3. In the event of a hardware failure, can I hold someone responsible, are there contingency plans, will someone pay the cost of a reelection?

    It's a matter of trust, and what you can put behind your software.

    Since this is software, and programmers, the answer to these questions is generally "no" and "nothing".

    Elections don't wait for service packs, bug fixes, hot fixes, etc A flaw in your software could cause chaos.

    Simple programmers can't go to jail for negligence, can't get sued for bugs, and can't put anything concrete behind their code.

    I can just picture reading the election software EULA, "NO WARRANTY" , "NO FITNESS FOR A PARTICULAR PURPOSE", "CONTAINS KNOWN DEFECTS"..

  • by zerosomething (1353609) on Wednesday October 28 2009, @04:27PM (#29902167) Homepage
    so it's OK then to put my passwords on post-its?
  • by kbob88 (951258) on Wednesday October 28 2009, @04:27PM (#29902169)

    Boss: OK, guys. Marketing and PR has decided to release the source code publicly. You guys said our software is really nice, clean, secure code. So you don't have any problems with that, right?

    Developers: Umm, yeah, sure, no problem... You know, we might want to make one or two very minor fixes first... [runs frantically back to computer and pounds away]

  • Re:plan to (Score:5, Insightful)

    by sunderland56 (621843) on Wednesday October 28 2009, @04:34PM (#29902237)
    Is there any guarantee that the source code they release is the actual code that will run on the machines during an election?
  • by Anonymous Coward on Wednesday October 28 2009, @04:34PM (#29902241)

    If you want real democracy, then work on open sourcing the legislative process [metagovernment.org].

  • by damn_registrars (1103043) <damn.registrars@gmail.com> on Wednesday October 28 2009, @04:37PM (#29902271) Homepage Journal
    Last time I checked we had a habit of voting in the first week of November in the US. I know there are more than a few elections being held around the country this year even though it is an odd year. If the voting company takes votes in the first week and then releases their source code in the last week; is that really progress? A lot of election results could likely be certified before we'd have time to see the code that counted the votes...

    And of course if they did the same thing next year - after midterm 2010 elections - we could have an even more dramatic situation on our hands.
  • by Daniel_Staal (609844) <DStaal@usa.net> on Wednesday October 28 2009, @04:38PM (#29902293)

    How about a license that allows people to read it, comment on it (both pro and con) publicly without constraint, and doesn't automatically assume Sequioa own all voting-related code that person might subsequently write at some point in the future? (Obviously, that assumes the code isn't copied.)

    That'd be about my minimum.

  • optical-scan? (Score:5, Insightful)

    by mikeee (137160) on Wednesday October 28 2009, @04:41PM (#29902327)

    The key point here is actually that it's an optical-scan machine! You don't input votes on a keyboard or touchscreen but by feeding in an actual human-readable piece of paper (maybe it asks for confirmation that it read it correctly?), which then gets stored in a lockbox. This is obviously the Right Thing because it gives a built-in hardcopy audit trail.

    In short, I think we're missing the SuddenOutbreakofCommonSense tag on this story...

  • by SoTerrified (660807) on Wednesday October 28 2009, @04:41PM (#29902335)
    But even a cynic like me sees this as a win. Seriously, this is what we've been fighting for. So in a world that manages to keep depressing me every time I turn on the news. I'm going to celebrate this little victory.
  • Whoa (Score:5, Insightful)

    by idontgno (624372) on Wednesday October 28 2009, @04:47PM (#29902409) Journal

    According to a VP quoted in the press release, 'Security through obfuscation and secrecy is not security.'

    Amazing. Did anyone notice whether there may have been an alien tentacle wrapped around the VP's throat manipulating his voice and his jaw?

    That's such a turnabout (at least in publicly-stated position) that I may get whiplash trying to track.

    Of course, words are cheap. We shall see how deeply this new-found wisdom is held.

    Comprehensively and fairly open the subject source code for unfiltered public inspection, without explicit or implicit coercion against criticism, and respecting reasonable fair-use rights to quote and comment, and you will get full credit for your Damascus road conversion. Take one step towards intimidation, chilling of discourse, or SLAPP, and we will know that your glib sound-bite was just cheap empty talk.

    And for as much or little as Nerd Rage counts, you will experience it.

  • by cheftw (996831) on Wednesday October 28 2009, @04:53PM (#29902483)

    Dear Sir,

    I have googled your ideas and only found forum posts similar to this one.

    It does nothing for your credibility. Next time anchor your link or have a crawlable page if you want anyone to see what you have to say.

I wouldn't be so paranoid if you weren't all out to get me!!

Working...