[E-voting] Nedap voting machines successfully hacked

Colm MacCarthaigh colm at stdlib.net
Wed Oct 4 18:27:08 IST 2006

On Wed, Oct 04, 2006 at 06:12:05PM +0100, Justin Mason wrote:
> I presume this is by adding new code to the *existing* NEDAP OS image, and
> burning the new image to the EEPROM?

Nope, I think it was easier to write entirely new code. Though there are
dissaembles of the original code too.

> Does this mean there isn't even any XBox-style BIOS-based cryptographic
> verification of the EEPROM's contents?  That seems to be a major oversight
> in tamperproofing.

I saw no warning!

