Search
Close this search box.
Categories
News

Researchers have developed secure digital voting booths – but will voters trust blockchain?

21 JUNE 2024

Researchers have developed secure digital voting booths – but will voters trust blockchain?

For the first time, researchers at Aarhus University and Lars Seier Christensen’s Concordium have demonstrated the security of blockchain software for conducting secure online elections. The challenge now lies in fostering trust in the technology.

Photo: Department of Computer Science, Aarhus University. From left: Bas Spitters, Benjamin Salling Hvass, Lasse Letager Hansen, Eske Hoy Nielsen

The 2024 election year is set to be historic, with half of the world’s population voting in political elections. However, amidst geopolitical tensions and rapid technological advancements, concerns persist about the accuracy of vote counting and the fair distribution of power, free from external interference.

How can we ensure that important elections are as secure as possible, whether for the chairman of a chess club or the President of the United States? And can this be achieved online?

Elections require a secure database and, with its cryptographic foundations, blockchain technology offers a highly secure solution. In 2023, Aarhus University and the Alexandra Institute received 1.8 million DKK from DIREC for the project Verified Voting Protocols and Blockchains. This project aims to rigorously test the encrypted protocols that will be the backbone of secure online elections in the future.

Bas Spitters, an associate professor at Aarhus University and head of the Concordium Blockchain Research Center (CoBRA), leads the project, which is nearing completion. Alongside the PhD students Lasse Letager Hansen and Eske Hoy Nielsen, he has mathematically proven that the blockchain protocol OpenVoteNetwork is correctly implemented and encrypted to a degree suitable for use in elections. This marks the first time a blockchain protocol and its software implementation has been mathematically secured and verified.

“We employ best practices in cryptography and programming languages to ensure that the protocol is secure. As a result, we can now confirm that the protocol’s security is completely mathematically proven,” says Bas Spitters.

Enhancing election security across all sectors

In an era where digital self-service is standard in public administration, physical ballots remain a steadfast tradition. However, in recent years, there has been growing interest in internet-based voting among election commissions worldwide.

Countries like Switzerland, Estonia, Brazil, and India are experimenting with online parliamentary elections. This solution is also highly relevant for elections in municipalities, corporations, and universities, which currently lack robust online security.

The issue is that many current internet-based elections are flawed because their security cannot be verified. Therefore, they are vulnerable to external interference, and voters are uncertain if their votes are accurately counted. The same problem applies to postal voting, which countries like France are exploring for online implementation.

“If you vote by mail, you need to cast your vote well in advance, which means you miss out on a significant portion of the political debate. You also rely on the security of the postal service and every subsequent step. However, with a secure online protocol that meets the highest standards, you can vote on the day of the election via the internet and even receive proof that your vote has been counted,” says Bas Spitters.

Building industry trust

The Verified Voting Protocols and Blockchains project is a collaboration between Aarhus University and the Alexandra Institute, and it is also attracting interest from the industry.

The Swiss blockchain company Concordium, founded and chaired by the Danish entrepreneur Lars Seier Christensen, is an industry partner in the project and plans to use the protocol for internal company voting. In collaboration with Aarhus University and Benjamin Salling Hvass from the Alexandra Institute, researchers have integrated a verified cryptographic library into Microsoft’s ElectionGuard voting software, which Concordium can now utilize.

With the mathematical proof established, the software can swiftly be adapted to manage election scenarios beyond those at Concordium. Whether the general public will vote for their political candidates online is simply a matter of trust, explains Daniel Tschudi, Senior Researcher at Concordium:

“Ballots are easy to trust because we rely on officials and election monitors to uphold security. Trusting new technology, even when mathematically proven secure, presents greater challenges. Ultimately, it’s about building trust in the technology and the security standards which researchers have developed and tested.”

The project aims to influence the minimum security requirements for online voting. Daniel Tschudi is confident that the researchers’ accomplishments will resonate widely:

“Once the protocol is thoroughly verified and certified to the highest standards, it can be applied to elections across all societal sectors,” he concludes.
The Verified Voting Protocols and Blockchains project is scheduled for completion in 2025. Read more about the project here.

This news article was brought in ITWatch on 18 June 2024

Categories
News

Researchers and industry are investigating the possibilities of blockchain-based voting

22 DECEMBER 2022

Researchers and industry are investigating the possibilities of blockchain-based voting

Aarhus University and the Alexandra Institute have been granted DKK 1.8 million by Digital Research Centre Denmark (DIREC) to investigate safe software and protocols for voting and blockchain governance. The Concordium Blockchain is the industry partner in this project.

There is constant interest for internet voting by election commissions around the world. At the same time, there is a need for such internet voting for blockchain governance. However, building such voting systems is hard: the design of cryptographic protocols and their implementation are error prone. Switzerland, which is leading in internet voting, now mandates very high standards for such protocols: it requires cryptographic proofs of security.

Only a very select group of blockchain projects already develops protocols in such a rigorous way. One of them, Concordium, has already deployed such secure cryptographic protocols. They were designed at COBRA, the Concordium Blockchain Research Center at Aarhus University. Thus, the project aims to build on this experience and advance the state of the art in high assurance cryptographic software, especially for internet voting systems and blockchain governance.

DIREC, a collaboration between the computer science departments of eight Danish universities and the Alexandra Institute, has just granted the group DKK 1.8 million for the project: Verified Voting Protocols and Blockchains. The Concordium Blockchain is the industry partner in this project.

Bas Spitters, Associate Professor at Aarhus University and lead of the Concordium Blockchain Research Center at Aarhus University (CoBRA), is leading the project. He is internationally recognized for his research in the verification of blockchain technologies and sees great potential for the project:

“All electronic voting protocols use some kind of bulletin board. Blockchains are secure bulletin boards. They are already used in minor elections to ensure that voters can check that their votes have been registered correctly. In this project, we will explore whether it can also be used in larger elections. In particular, we aim to verify that the protocols used to verify the votes are private and secure.”

Kåre Kjelstrøm, CTO at Concordium, says:
“There are of course many advantages in an online election, however distrust and a lack of regulation-ready and secure solutions have prevented most countries from moving forward. From Concordium, a science-based decentralized blockchain with the identity at the protocol level, we are eager to participate and solve the potential problems in building online elections on our chain. Concordium plans to design a voting scheme to be used for decentralized governance of the blockchain. The voting scheme will allow members of the community to vote on proposed features and to elect members of the Governance Committee.”

Gert Læssøe Mikkelsen, Head of Security Lab, Alexandra Institute says: 
“This project provides a good opportunity for testing novel technologies in solutions for critical digital infrastructure where very high security is required. We will test and participate in the implementation of the solutions developed in the project, and we want to let more industries benefit from the experiences of working with blockchain, digital identity and high security, e.g., public utilities and the finance sector”.

Read more about the project

Finally, the project will collaborate with another DIREC project called Trust Through Software Independence and Program Verification lead by Carsten Schürmann from ITU on the further development of tools for ensuring the quality of voting protocols and their implementation.