US Presidential election apps are reportedly full of security flaws null


The 2020 US Presidential election is fast approaching and both candidates are currently using mobile apps as a means to raise funds and reach out to potential voters. However, new research from The App Analyst has revealed that both apps contain security flaws and privacy issues that could leave voters at risk.
The Vote Joe app used by the Biden 2020 Presidential campaign was found to be leaking potentially sensitive information about voters including their political affiliations and past voting choices. Additionally, the campaign’s iOS app failed to enforce email verification which means that non-US citizens could have signed up and accessed its data.
With the Vote Joe app installed, voters can promote the campaign to their contacts by sending pre-typed promotional text messages and they can also provide information about the users in their contacts to the apps creators. During its research though, The App Analyst found that anyone could potentially compromise the data harvested by the app’s creators by creating fake contacts with false information in their contacts.
In an analysis of the Vote Joe app, The App Analyst explained how the the Biden campaign’s voter database could be flooded with fake voter data, saying:
“When a user syncs their contacts with the Vote Joe App they will be presented with a corresponding voter entry from the Biden campaigns voter database. The contact data then enriches the database entry and is stored to help solicit their vote in the future. An issue occurs when the contact in the phone does not correspond with the voter but the data continue to enrich the voter database entry. By adding fake contacts to the device a user is able to sync these with real voters.”
Collecting voter data
The Vote Joe app also contains publicly available voter registration records which are corroborated with an intelligent service called Target Smart whose VoterBase product contains the contact and voting information of over 191m voters and 58m unregistered voting age users. The service’s predictions are made available in the app using its API endpoint.
The App Analyst discovered that the API endpoint providing information to the Biden campaign’s app was also returning some additional fields. Not all of these fields were visible in the app’s interface but users could find a way to access Target Smart’s proprietary voter data which exposes past voter choices.
The team behind the Vote Joe app was notified by The App Analyst regarding the security flaws it contained at the beginning of September and the developers quickly received a patch to fix the issues in the iOS version of the app.
While the Vote Joe app contained its set of problems, so too did the app created and distributed by the Trump 2020 campaign. The Trump campaign’s app was found to be exposing hardcoded secret keys for the Twitter and Google services it used back in June and in August, it was discovered that the app was collecting large amounts of user data.
Creating and distributing a mobile app is a great way to reach voters and get a candidate’s message out. However, collecting too much data about voters can leave their privacy at risk while also putting a candidate’s campaign on the line as if this data were to leak, the campaign that collected it would be responsible.
Via BleepingComputer
The 2020 US Presidential election is fast approaching and both candidates are currently using mobile apps as a means to raise funds and reach out to potential voters. However, new research from The App Analyst has revealed that both apps contain security flaws and privacy issues that could leave voters…
Recent Posts
- Apple will let parents share their kids’ ages to limit app access
- Perplexity’s voice mode gets a futuristic makeover on your iPhone
- OpenAI announces GPT-4.5, warns it’s not a frontier AI model
- The 5 best mechanical keyboards for 2025
- OpenAI Launches GPT-4.5 for ChatGPT—It’s Huge and Compute-Intensive
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010