chevron-down Created with Sketch Beta.
October 13, 2024 ABA Task Force for American Democracy

Artificial Intelligence and Election Security

Lawrence Norden and Gowri Ramachandran, Brennan Center for Justice, Oct. 5, 2023

Summary

This article focuses on how AI changes, or does not change, the cybersecurity of election offices and election infrastructure, drawing on conversations between the authors and various experts and election administrators.  After describing potential challenges posed by AI, the article describes steps the government, private sector, and media must take to guard against AI-related risks and build trust in election outcomes.

Key Findings

The article describes a range of AI-related challenges, such as more sophisticated phishing communications, more advanced malware, and other scams—but also notes that AI can help to detect these detrimental practices. Other AI risks include convincing impersonations, deepfakes, and spoofed official websites, which could be used to mislead voters into believing false information as though it were from an authoritative source. In addition, many election officials worry that AI-generated misinformation about elections could exacerbate the problem of excessive and/or frivolous Freedom of Information Act (FOIA) and other open-records requests, disrupting and burdening election offices.

Key Recommendations Made

The article recommends the following:

  1.  Build more security and resilience into election systems.
  2.  Provide local election offices with more technical support to protect election infrastructure
    1.  Develop state cyber navigator programs to identify and resolve cybersecurity vulnerabilities.
    2.  Offer targeted assistance from Cybersecurity and Infrastructure Security Agency (CISA).
    3.  Focus resources on defending AI already used in elections.
    4.  Invest in AI to protect election infrastructure.
    5.  Seek tech company investment in free and low-cost tools that increase election security, confidence, and transparency.
  3.  Authenticate election office communications and help the public spot impersonations.
    1.  Move all election websites to .gov domains.
    2.  Verify accounts and amplify truthful information.
    3.  Implement methods to ensure that open records requests are authentic.
    4.  Explore how to authenticate sensitive election materials.
    5.  Take extra steps to verify election-related content.
  4.  Give election workers AI-specific training and resources.
    1.  Remove data that could be used to personalize AI-generated communications.
    2.  Help election workers identify AI-generated content.
  5.  Push back against false narratives.