State election offices' emails are way too easy to hack


Only 4 percent of state election offices could actually stop hackers from sending emails from their official accounts, an alarming new study from cybersecurity firm Anomali has found. The study was provided to Axios, which published a story Monday that detailed just how easy it is to mess with elections.
The danger stems from how basic email is set up, Axios says. There are no security measures on basic email servers that ensure an email is actually coming from the address it's labeled with. State election systems — or anyone who wants email security — should install a combination of measures known as SPF and DMARC, which together tell recipients that an email is probably fake or can designate a message as spam.
Yet just 4 percent of offices have this system in place, the study found. And only 10 percent of offices use another security protocol called DKIM, which makes sure emails are actually from the sender they appear to be from. All of this could mean hackers could easily send a convincing email to voters saying their polling location or date had changed, among other sneaky suppression maneuvers.
The Week
Escape your echo chamber. Get the facts behind the news, plus analysis from multiple perspectives.

Sign up for The Week's Free Newsletters
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
Anomali derived its study from election offices across 50 states, three U.S. territories, and Washington, D.C. Read a more technical explanation of the dangers at Axios.
A free daily email with the biggest news stories of the day – and the best features from TheWeek.com
Kathryn is a graduate of Syracuse University, with degrees in magazine journalism and information technology, along with hours to earn another degree after working at SU's independent paper The Daily Orange. She's currently recovering from a horse addiction while living in New York City, and likes to share her extremely dry sense of humor on Twitter.
-
Nepal chooses toddler as its new ‘living goddess’
Under the Radar Girls between two and four are typically chosen to live inside the temple as the Kumari – until puberty strikes
-
October 5 editorial cartoons
Cartoons Sunday's political cartoons include half-truth hucksters, Capitol lockdown, and more
-
Jaguar Land Rover’s cyber bailout
Talking Point Should the government do more to protect business from the ‘cyber shockwave’?
-
Museum head ousted after Trump sword gift denial
Speed Read Todd Arrington, who led the Dwight D. Eisenhower Presidential Library and Museum, denied the Trump administration a sword from the collection as a gift for King Charles
-
Trump declares ‘armed conflict’ with drug cartels
speed read This provides a legal justification for recent lethal military strikes on three alleged drug trafficking boats
-
Supreme Court rules for Fed’s Cook in Trump feud
Speed Read Federal Reserve Governor Lisa Cook can remain in her role following Trump’s attempts to oust her
-
Judge rules Trump illegally targeted Gaza protesters
Speed Read The Trump administration’s push to arrest and deport international students for supporting Palestine is deemed illegal
-
Trump: US cities should be military ‘training grounds’
Speed Read In a hastily assembled summit, Trump said he wants the military to fight the ‘enemy within’ the US
-
US government shuts down amid health care standoff
Speed Read Democrats said they won’t vote for a deal that doesn’t renew Affordable Care Act health care subsidies
-
YouTube to pay Trump $22M over Jan. 6 expulsion
Speed Read The president accused the company of censorship following the suspension of accounts post-Capitol riot
-
Oregon sues to stop Trump military deployment
Speed Read The president wants to send the National Guard into Portland