Skip to content
Search

Latest Stories

Follow Us:
Top Stories

Election Officials Have Been Preparing for AI Cyberattacks

Anthropic’s new AI model, Claude Mythos, warns of a heightened threat to elections — but not a new one.

Opinion

Election Officials Have Been Preparing for AI Cyberattacks

People voting at a polling station

Brett Carlsen/Getty

Since ChatGPT and other generative artificial intelligence systems first became widely available, the Brennan Center and other experts have warned that this technology may lead to more cyberattacks on elections and other critical infrastructure. Reports that Anthropic’s new AI model, Claude Mythos, can pinpoint software vulnerabilities that even the most experienced human experts would miss underline the urgency of those risks. Fortunately, election officials have been preparing for cyberattacks and have made significant progress in securing their systems over the past decade, incorporating improved cybersecurity practices at every step of the election process.

Anthropic claims that its new model can autonomously scan for vulnerabilities in software more effectively than even expert security researchers. If given access to this new model, amateurs would theoretically be capable of identifying and exploiting vulnerabilities in a way that previously only sophisticated actors, such as nation-states, could do. For this reason, Anthropic chose not to release the Mythos model publicly. Instead, under an initiative Anthropic is calling Project Glasswing, it has offered access to Mythos to a number of high-profile tech firms and critical infrastructure operators so that these companies can proactively identify and address vulnerabilities in their own systems. Although Anthropic is currently controlling access to its model to prevent misuse, experts believe it is only a matter of time before tools advertising similar capabilities are broadly available.


This danger will not necessarily be new to election officials. Year after year, elections have been targeted by highly sophisticated cyber interference efforts by foreign adversaries and criminal actors. Election officials have planned for and defused these threats as they arose. While AI-assisted vulnerability scanning may expand the scale of possible attacks, it still represents a difference only in degree — not in kind — from what election officials have prepared to face. Some security experts who have received access to Mythos have publicly agreed with that assessment, noting that even the previously undiscovered vulnerabilities were ones that could have been found by a human researcher; they were not entirely new weaknesses altogether. The layers of protection election officials built to defend against cyberattacks in the pre-AI age will continue to guard against new attacks and offer a launching point for further fortifying election systems.

Since attempts by Russian actors to scan and infiltrate state voter registration databases in the 2016 election, election officials nationwide have adopted security best practices and updated technology, with funding and support from state and federal government. A survey of state election officials shows that most states have adopted recommended voter registration database protections, such as requiring multifactor authentication for all users, using network monitoring systems, conducting system audits, and creating regular backups. Between 2018 and 2024, the federal government provided over $1 billion to update election technology and offered free access to cybersecurity assessments and vulnerability scanning, allowing election officials to better understand system threats and improve prevention protocols. While the federal government has withdrawn much of its support for election security over the past year, on the whole, states have more cybersecurity capacity to defend their systems than they did a decade ago, following a four-year, $1 billion state and local cybersecurity grant program that launched in 2021.

More importantly, election officials do not rely on cybersecurity protections alone to guarantee the accuracy of final vote tallies. They plan for things to go wrong, and they develop backups, redundancies, and recovery plans to ensure that eligible voters can cast ballots and that every vote is counted. Unlike in 2016, when a quarter of all votes were cast on paperless systems, nearly every vote now has a paper record that can be reviewed by hand in the event of concerns about a cyberattack on voting systems. In case technology fails at the polling place, states also require backup plans such as pre-printed ballots and paper pollbooks. And election officials implement a series of checks through the counting process to confirm that every vote is accurately included in the final count.

While Anthropic’s Mythos model represents a wake-up call, it’s not a call to panic. Instead, it’s a moment for election officials and those who support their efforts to redouble the work they are already doing. Above all, federal and state leaders need to provide sufficient and reliable funding for election security on the scale of what was provided in the years immediately following the foreign interference incidents in the 2016 election. The risks of AI-assisted cyberattacks make it clearer than ever that election security is a race without a finish line — the safeguards for election technology must keep pace with evolving threats.

Moving forward, states need to step up and help fill the gap left by the federal government, which has chosen to significantly reduce support for election cybersecurity (and all critical infrastructure security) under the Trump administration. The Brennan Center’s 2026 annual survey of local election officials shows that broad majorities support the government providing services that were previously offered by the federal government, including election security training, best practices on emerging security threats, security scenario-planning exercises, and incident-response support. Yet 75 percent of local election officials say their state or local government has not provided additional resources to make up for federal cuts.

The Election Security Exchange recommends several low-cost steps election officials can take, many of which they are already taking. These include keeping all software up to date and enabling automatic updates, using a dedicated password manager for all accounts, enabling multifactor authentication, and conducting regular phishing training.

Finally, Anthropic, which says it launched Project Glasswing “in an effort to secure the world’s most critical software,” should consider how it can best expand those protections to any software that underpins the election process.

The threat of AI-assisted cyberattacks is one to take seriously, as experts have long warned. But everyone in the election community must be equally vocal in emphasizing that this emerging danger will not force election officials back to square one. The groundwork they have laid over the last 10 years will continue to provide critical protections, helping to ensure every eligible voter can cast a ballot and have their ballot counted. The responses to previous election security threats also show a path toward future improvements.

Now is the time for legislators and other public officials to invest in what works and partner with election officials to guarantee our safeguards remain one step ahead of the threats seeking to undermine them.

Derek Tisler is counsel and manager in the Brennan Center’s Elections and Government Program

Election Officials Have Been Preparing for AI Cyberattacks was first published by the Brennan Center and was republished with permission.


Read More

Nevada pro-democracy groups condemn SAVE Act

Sen. Catherine Cortez Masto, D-Nev., speaks at a press event about free and fair elections. A recent study from MIT ranked Nevada second in the nation for quality of election administration, based on measures of accessibility and security.

(Battle Born Progress)

Nevada pro-democracy groups condemn SAVE Act

President Donald Trump has made passing the Safeguard American Voter Eligibility Act a top priority before the midterms but supporters of safe and fair elections in the Silver State said it would be a disaster for democracy.

The bill, which purports to combat noncitizen voting, would make it much harder to register to vote. It passed the U.S. House but is stalled in the Senate.

Keep ReadingShow less
How A 2022 Law Changed Election Certification: Assessing the Electoral Count Reform Act

A sign that reads: Voting

E4C

How A 2022 Law Changed Election Certification: Assessing the Electoral Count Reform Act

This nonpartisan policy brief, written by an ACE fellow, is republished by The Fulcrum as part of our partnership with the Alliance for Civic Engagement and our NextGen initiative — elevating student voices, strengthening civic education, and helping readers better understand democracy and public policy.

Key Takeaways

  • The Electoral Count Reform (ECRA) of 2022 modernizes the 1887 Electoral Count Act, which governed how Congress counts Electoral College votes. The original Act has been widely criticized as vague and susceptible to exploitation.
  • The ECRA clarifies that the Vice President’s role is ceremonial, raises the objection threshold to 20 percent of both chambers, and designates governors as responsible for submitting elector certificates.
  • Supporters argue that the bipartisan reform prevents future election disputes and protects democratic stability, while critics contend that it was rushed, doesn’t address deeper election integrity issues, and raises concerns about federalism.
  • The Act reflects bipartisan cooperation but continues debates about federalism and the balance of power between states and Congress.

The Electoral Count Reform and Presidential Transition Improvement Act (ECRA) was introduced by Senator Susan Collins (R-ME) in July 2022 and signed into law by President Joe Biden in December 2022. It is a reform to the Electoral Count Act of 1887 (ECA), a law that governs how Congress counts the Electoral College votes for president every four years. The Act is also a response to President Donald Trump’s efforts to dispute the 2020 presidential election results, which revealed several gaps in the law that could be exploited by a presidential candidate.

Keep ReadingShow less
The Bipartisan War on Independent Voters
A pole with a sign that says polling station
Photo by Phil Hearing on Unsplash

The Bipartisan War on Independent Voters

The Washington Post editorial board penned a bold piece (Bill Cassidy and America’s Increasingly Broken Primary System) in the wake of President Trump’s successful vendetta against the Louisiana Senator. They could have taken the easy route and pointed a finger at the Republicans. Instead, they took issue with both parties and their insatiable appetite to control the rules of the game and punish anyone who steps out of line.

In a media landscape dominated by partisan propaganda, it’s refreshing to read an opinion piece that encourages readers to actually look at what’s happening.

Keep ReadingShow less
Oregon Pioneered Vote-by-Mail. Its Ballot Access Laws Are Still in the Covered Wagon Era.
white printer paper on white table

Oregon Pioneered Vote-by-Mail. Its Ballot Access Laws Are Still in the Covered Wagon Era.

Oregon's primary election was on May 19. Neither of the two major-party candidates in Oregon's 6th Congressional District faced a primary opponent. They'll automatically advance to November's general election ballot, without a single voter really needing to weigh in, without collecting a single petition signature, and without knocking on a single door. The Democratic incumbent represents a party that accounts for 29.75 percent of registered voters in this district. The Republican nominee represents a party with 24.78 percent of the vote. Together, the two parties represent a minority of OR-6's electorate, and both of their candidates are already on the November ballot.

I represent the largest voting bloc in this district. Nearly 40 percent of OR-6's registered voters are unaffiliated, more than either party. These voters have never had a candidate who answers only to them—not to party bosses, party lines, or special interests. I am trying to be that candidate. And I am still on the porch, clipboard in hand, collecting the 5,500 hand-signed paper petitions I will need just to guarantee that my name appears beside theirs in November.

Keep ReadingShow less