AI Tools Breach Ballot Secrecy in Georgia Voting System

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

Researchers demonstrated that AI assistants can exploit a flaw in Georgia's voting equipment to match voters to their ballots, violating ballot secrecy and fundamental rights. Despite warnings and available fixes, state officials have not fully addressed the vulnerability, raising concerns about election integrity and privacy.[AI generated]

Why's our monitor labelling this an incident or hazard?

An AI system (AI coding tools) has been used to exploit a software flaw in an election system, enabling the matching of voters to their ballots, violating ballot secrecy rights. This constitutes a violation of fundamental rights and harms election integrity, fulfilling the criteria for an AI Incident. The harm is realized as the vulnerability has been demonstrated and can be exploited, and the state's failure to fix it exacerbates the risk. The AI's role is pivotal in enabling the exploitation, and the event involves the use and malfunction (flaw) of an AI-related system. Hence, the classification is AI Incident.[AI generated]
AI principles
Privacy & data governanceRespect of human rights

Industries
Government, security, and defenceDigital security

Affected stakeholders
General public

Harm types
Human or fundamental rightsPublic interest

AI system task:
Interaction support/chatbotsReasoning with knowledge structures/planning


Articles about this incident or hazard