PUBLICATION

Guide to Vulnerability Reporting for America's Election Administrators

Related topics:

Provides election administrators with a step-by-step guide, list of resources, and a template for establishing a successful vulnerability disclosure program to address possible vulnerabilities in their election systems. The six steps include:

  1. Identify Systems Where You Would Accept Security Testing, and those Off-Limits
  2. Draft an Easy-to-Read Vulnerability Disclosure Policy (See Appendix III)
  3. Establish a Way to Receive Reports/Conduct Follow-On Communication
  4. Assign Someone to Thank and Communicate with Researchers
  5. Assign Someone to Vet and Fix the Vulnerabilities
  6. Consider Sharing Information with Other Affected Parties