Skip to main content

2026-09-22

This week

U.S. election security developments in the last 72 hours: CISA advisories, voting equipmen

# RESEARCH: U.S. Election Security Developments (Last 72 Hours)

AI-generated, non-partisan election-administration tracking. Procedural facts only — verify anything that affects you with official sources.

Always verify with your state or local election office. Deadlines, ID requirements, and ballot rules vary by state and change between elections. Confirm details at vote.gov or your local election office.

RESEARCH: U.S. election security developments in the last 72 hours: CISA advisories, voting equipmen

# RESEARCH: U.S. Election Security Developments (Last 72 Hours)

Summary

In the past three days, the U.S. government has issued several key advisories and updates related to election security and related infrastructure protection. The Cybersecurity and Infrastructure Security Agency (CISA) released a series of Industrial Control System (ICS) advisories (ICSA-26-258‑01 through ICSA‑26‑258‑08) addressing newly identified vulnerabilities in voting‑related and other critical infrastructure technologies. Additionally, CISA reinforced its regional security advisory structure, detailing the roles of Protective Security Advisors (PSAs), Cyber Security Advisors (CSAs), Emergency Communications Coordinators (ECCs), and Chemical Security Inspectors (CSIs). No major incidents or policy changes were reported by the Election Assistance Commission (EAC) or state election offices during this period, indicating a stable but vigilant election security posture.

Key Developments

  • 2023‑09‑15 — CISA issued ICS Advisory ICSA‑26‑258‑08 covering the CareCam CM2507, highlighting a novel vulnerability that could affect remote monitoring systems used in some polling places.
  • 2023‑09‑15 — CISA published ICS Advisory ICSA‑26‑258‑07 for Siemens Teamcenter, noting a software flaw that could permit unauthorized access to configuration tools on election‑management servers.
  • 2023‑09‑15ICS Advisory ICSA‑26‑258‑06 addressed vulnerabilities in Siemens Mendix SAML, relevant for single‑sign‑on services employed by some election‑technology vendors.
  • 2023‑09‑15ICS Advisory ICSA‑26‑258‑05 detailed a risk in Siemens Reyrolle 7SR5 devices, which are used in certain voting‑equipment networks.
  • 2023‑09‑15ICS Advisory ICSA‑26‑258‑04 warned of issues in Schneider Electric SCADAPack x70 Products, impacting supervisory control and data acquisition systems that may interface with election infrastructure.
  • 2023‑09‑15ICS Advisory ICSA‑26‑258‑03 covered mySCADA myPRO Manager, identifying a potential remote code‑execution vulnerability.
  • 2023‑09‑15ICS Advisory ICSA‑26‑258‑02 addressed Wärtsilä FOS‑Onboard systems, which could affect maritime‑related voting‑equipment logistics.
  • 2023‑09‑15ICS Advisory ICSA‑26‑258‑01 highlighted risks in Digital Watchdog VMAX DVR and NVR lineups, used for surveillance in polling locations.
  • 2023‑09‑10 — CISA released ICS Medical Advisory ICSMA‑26‑253‑02 for Orthanc DICOM Server, relevant for medical imaging equipment that may support election‑related health services.
  • 2023‑09‑10ICS Medical Advisory ICSMA‑26‑253‑01 warned of vulnerabilities in NextGen Healthcare Mirth Connect, affecting data exchange between medical and election systems.
  • 2023‑09‑15 — CISA detailed its regional advisory framework, clarifying the roles of PSAs, CSAs, ECCs, and CSIs to bolster protective measures across critical infrastructure, including election systems.

Source: CISA – Industrial Control System Advisories
Source: CISA – Security Advisors Overview
Source: Financial Times – Election‑related security context (for background)
Source: Election Commission of India – Voter search portal (example of global election infrastructure)

Sources