I'm not sure why everyone is acting like paper ballots are fool-proof. Open source could be just as fool-proof if not even more so. With hundreds of thousands of people checking the software, and all updates there's not a lot of room to sneak malicious code in. With paper, you don't have many people overseeing the entire process, and there's a lot of room for interference.
It all boils down to incentives, as with many things in biological life: if the only available way of making money is ads, news agencies will optimize for that. I wonder if new tech will provide alternative ways of making money with different kinds of incentives.
I want to write a similar write-up for a company which basically does everything over HTTP with their own half-baked hardcoded AES key in app for sending credit card info. and that their confirmation checkup is stupid (for SMS) and can be bypassed.
The problem is that their site TOS forbids reverse engineering, and I am afraid their lawyers will go after me instead of fixing the security issues (even if I just contact them), any tips?