Earlier quoted context omitted.
> On an optically isolated (phyiscally receive only) server which only receives codes sent from the application servers and produces results. And how does it count votes per candidate then? > Yes. More secure than Diebold machines to be certain. That seems very questionable.
> And how does it count votes per candidate then? Codes can be simply be computed as HMAC(secret key, SIN + candidate) or something similar, the user and any attacker without the secret key just has a random string of bits. You do realize votes are tallied by computer currently, right? Most of these just rely on phone-based systems that often expose interfaces to news orgs and such. The sort of interface I'm talking…
Changing a vote to be for another candidate is not the only way to influence an election; you could have votes for the 'wrong' candidate be thrown out as invalid, too.