Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - Poll Hacks: How Cybercriminals Aim To Disrupt Elections
Articles

Poll Hacks: How Cybercriminals Aim To Disrupt Elections

David WarburtonBy David WarburtonDecember 10, 2019Updated:December 30, 20215 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

The UK general election is almost upon us, and it is already turning into one of the most divisive and analysed political events in the country’s history. 

Discourse and debate are reaching fever pitch, from parliamentary benches and constituency doorsteps, to every conceivable media platform in play. 

It is no surprise then that an air of online volatility persists more than usual. At this moment in time, every new election is likely the most tech-enabled and at risk addled yet.

Labour was most recently under the cybersecurity cosh, enduring what it termed as “sophisticated and large-scale” attempt to knock out its digital systems earlier in the month (it turned out to be a set of distributed denial-of-service (DDoS) attacks). Just the other day, Labour candidate Ben Bradshaw also claimed to be a victim of a suspected cyber-attack when he received an email with sophisticated malware attachments.

These are politically unprecedented times and the UK’s National Cyber Security Centre knows it. Last year, the government-backed organisation issued a direct warning ahead of local elections, citing potential “insider activity” attempting to “manipulate or compromise electoral information.” Similar warnings are in place for 2019.

There are many ways to knock an election off course. Below are some of the main existing and emerging cyber threats to bear in mind as we head to the polls this week. 

It is, however, worth noting that variations of these methods are possible throughout the year as hackers opportunistically hijack political developments in real-time.

Tried and trusted attacks 

Although significant aspects of the UK’s electoral process are still conducted offline, it is not invulnerable to well-worn cybercriminal tactics such as DDoS attacks (electoral, government or media websites during key campaign instances, in particular). Today, even a teenager can create botnets in 45 minutes by watching a YouTube tutorial, and there is a glut of DDoS-for-hire sites available on a shoestring.

Phishing is another perennial threat. In fact, F5 Labs’ latest Phishing and Fraud report currently sees it as the most prominent attack method used to breach data. 

Elections are natural hunting grounds for seasoned phishers, with emotions running high and enormous volumes of proselytising communications flying around. 

Hearts and minds are there to be won, and canny cybercriminals are ready to pounce. Attackers can eschew hacking through a firewall, finding a zero-day exploit or deciphering encryption. They just need a convincing email pitch and a fake site for victims to land on.

Recent examples of phishing-related political skulduggery include the focused targeting of government officials during the 2019 Ukrainian presidential election, and North Korea’s attack against the Indian space agency’s moon mission.

Safeguarding against all of this calls for rich and constant behavioural training, combined with technical security controls such as multi-factor authentication and encrypted malware inspection. DDoS prevention solutions that align to business and IT architecture needs are also essential. 

Tipping the scales 

Worryingly, cybercriminals backed by nation states are now increasingly adept at directly misleading voters. 

Most will recall how the US was conspicuously under fire in 2016, with Russian-instigated automated bot activity disseminating a slew of “fake news” articles that may have swayed voter opinion.

The US House of Representatives Permanent Select Committee on Intelligence recently provided an eye-catching snapshot of the scale and reach of this type of activity, reporting that the Internet Research Agency (one of the Russian false front companies) purchased 3,393 Facebook advertisements that were shown to over 11.4 million Americans. They also created 470 Facebook pages with 80,000 pieces of organic content. These were shown to more than 126 million Americans. Only 120 million votes were cast in the entire 2016 Presidential election.

In addition to Russia, the FBI also lists China and Iran as the top threat actors when it comes to election security. 

One of the most effective, continually evolving tactics, is to muddy the public discourse and orchestrate a demoralising miasma of discontent. The threat actor doesn’t even need to promote a specific cause, candidate, or agenda. They just need to prompt chaos, uncertainty and division. 

While there are tools available to help citizens spot news bias and disinformation (e.g. Snopes and AllSides), they often require additional skills that many older and less connected voters lack. 

Naturally, the onus is on social media businesses to adapt. All should have the ability to identify, scrape and deny bots on their platforms. It can be tricky grey area, however, with discussions about the nature of free speech frequently adding complex nuances to the mix.

Sign of the times

Although it really won’t apply to the UK this year, there are growing concerns about how votes themselves can be falsified or tampered with. 

Once again, the US is in attackers’ crosshairs more than most. Last year, F5 Labs’ Application Protection report flagged how public sector organisations were the most concerned of all industry sectors when it came to application tampering. One of the reasons is the fact that 37% of US states allow online registration.

Then there are the US’ electronic voting machines themselves. In August, more than 35,000 attendees of the Def Con hacker conference were invited to test for vulnerabilities. Every single one of 100+ machines were vulnerable to at least some kind of attack.

The UK, like most countries around the world, needs to sit up and take note. Elections will only become more digitalised and connected – whether we like it or not.

Taking back control 

Awareness is key. For example, it has never been more important to spot media bias, which often mixes drama and opinion with real facts. Even though most major social media platforms are working hard on fixes, we simply cannot afford to be unquestioning, passive content consumers anymore. 

Digital election interference – whether it influences a single vote or creates a confused political climate favourable to a specific nation-state – is a clear, present and insidious danger. Voters, politicians, or indeed anyone even tangentially involved in the democratic process, need be ready and able to navigate and interrogate this new reality. 

David Warburton

Senior Threat Evangelist

  • David Warburton
    The Changing World Of Encryption: TLS Deployments In 2020
  • David Warburton
    Improving Safety At The Rugby World Cup, On And Off The Pitch
  • David Warburton
    Whoever Controls The Multi-Cloud, Controls The Future.

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Exploited Faster, Patched Slower: Verizon DBIR 2026 Shows Security Teams Losing Ground

May 20, 20265 Mins Read

Security’s Blind Spot: The Threats Hiding in “Low-Severity” Alerts

May 6, 20265 Mins Read

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}