{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,12]],"date-time":"2026-06-12T23:59:19Z","timestamp":1781308759166,"version":"3.54.1"},"publisher-location":"Cham","reference-count":38,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031437557","type":"print"},{"value":"9783031437564","type":"electronic"}],"license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2023,9,22]],"date-time":"2023-09-22T00:00:00Z","timestamp":1695340800000},"content-version":"vor","delay-in-days":264,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023]]},"abstract":"<jats:title>Abstract<\/jats:title><jats:p>An interesting approach to achieving verifiability in voting systems is to make use of tracking numbers. This gives voters a simple way of verifying that their ballot was counted: they can simply look up their ballot\/tracker pair on a public bulletin board. It is crucial to understand how trackers affect other security properties, in particular privacy. However, existing privacy definitions are not designed to accommodate tracker-based voting systems. Furthermore, the addition of trackers increases the threat of coercion. There does however exist techniques to mitigate the coercion threat. While the term <jats:italic>coercion mitigation<\/jats:italic> has been used in the literature when describing voting systems such as Selene, no formal definition of coercion mitigation seems to exist. In this paper we formally define what coercion mitigation means for tracker-based voting systems. We model Selene in our framework and we prove that Selene provides coercion mitigation, in addition to privacy and verifiability.<\/jats:p>","DOI":"10.1007\/978-3-031-43756-4_5","type":"book-chapter","created":{"date-parts":[[2023,9,21]],"date-time":"2023-09-21T23:02:23Z","timestamp":1695337343000},"page":"69-86","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["Coercion Mitigation for\u00a0Voting Systems with\u00a0Trackers: A Selene Case Study"],"prefix":"10.1007","author":[{"given":"Kristian","family":"Gj\u00f8steen","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Thomas","family":"Haines","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Morten Rotvold","family":"Solberg","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2023,9,22]]},"reference":[{"key":"5_CR1","unstructured":"Final report of IACR electronic voting committee. https:\/\/www.iacr.org\/elections\/eVoting\/finalReportHelios_2010-09-27.html. Accessed 05 May 2023"},{"key":"5_CR2","unstructured":"Adida, B.: Helios: web-based open-audit voting. In: van Oorschot, P.C. (ed.) USENIX Security 2008, pp. 335\u2013348. USENIX Association (2008)"},{"key":"5_CR3","doi-asserted-by":"publisher","unstructured":"Baloglu, S., Bursuc, S., Mauw, S., Pang, J.: Election verifiability in receipt-free voting protocols. In: 2023 2023 IEEE 36th Computer Security Foundations Symposium (CSF) (CSF), pp. 63\u201378. IEEE Computer Society, Los Alamitos (2023). https:\/\/doi.org\/10.1109\/CSF57540.2023.00005","DOI":"10.1109\/CSF57540.2023.00005"},{"key":"5_CR4","unstructured":"Benaloh, J.: Verifiable secret-ballot elections. Ph.D. thesis, September 1987. https:\/\/www.microsoft.com\/en-us\/research\/publication\/verifiable-secret-ballot-elections\/"},{"key":"5_CR5","doi-asserted-by":"publisher","unstructured":"Benaloh, J.C., Tuinstra, D.: Receipt-free secret-ballot elections (extended abstract). In: 26th ACM STOC, pp. 544\u2013553. ACM Press (1994). https:\/\/doi.org\/10.1145\/195058.195407","DOI":"10.1145\/195058.195407"},{"key":"5_CR6","doi-asserted-by":"crossref","unstructured":"Bernhard, D., Cortier, V., Galindo, D., Pereira, O., Warinschi, B.: A comprehensive analysis of game-based ballot privacy definitions. Cryptology ePrint Archive, Report 2015\/255 (2015). https:\/\/eprint.iacr.org\/2015\/255","DOI":"10.1109\/SP.2015.37"},{"key":"5_CR7","doi-asserted-by":"publisher","unstructured":"Chaidos, P., Cortier, V., Fuchsbauer, G., Galindo, D.: BeleniosRF: a non-interactive receipt-free electronic voting scheme. In: Weippl, E.R., Katzenbeisser, S., Kruegel, C., Myers, A.C., Halevi, S. (eds.) ACM CCS 2016, pp. 1614\u20131625. ACM Press (2016). https:\/\/doi.org\/10.1145\/2976749.2978337","DOI":"10.1145\/2976749.2978337"},{"key":"5_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"89","DOI":"10.1007\/3-540-48071-4_7","volume-title":"Advances in Cryptology \u2014 CRYPTO\u2019 92","author":"D Chaum","year":"1993","unstructured":"Chaum, D., Pedersen, T.P.: Wallet databases with observers. In: Brickell, E.F. (ed.) CRYPTO 1992. LNCS, vol. 740, pp. 89\u2013105. Springer, Heidelberg (1993). https:\/\/doi.org\/10.1007\/3-540-48071-4_7"},{"key":"5_CR9","doi-asserted-by":"publisher","unstructured":"Clarkson, M.R., Chong, S., Myers, A.C.: Civitas: toward a secure voting system. In: 2008 IEEE Symposium on Security and Privacy, pp. 354\u2013368. IEEE Computer Society Press (2008). https:\/\/doi.org\/10.1109\/SP.2008.32","DOI":"10.1109\/SP.2008.32"},{"key":"5_CR10","doi-asserted-by":"publisher","unstructured":"Cortier, V., Dragan, C.C., Dupressoir, F., Schmidt, B., Strub, P.Y., Warinschi, B.: Machine-checked proofs of privacy for electronic voting protocols. In: 2017 IEEE Symposium on Security and Privacy, pp. 993\u20131008. IEEE Computer Society Press (2017). https:\/\/doi.org\/10.1109\/SP.2017.28","DOI":"10.1109\/SP.2017.28"},{"key":"5_CR11","doi-asserted-by":"publisher","unstructured":"Cortier, V., Dragan, C.C., Dupressoir, F., Warinschi, B.: Machine-checked proofs for electronic voting: privacy and verifiability for Belenios. In: Chong, S., Delaune, S. (eds.) CSF 2018 Computer Security Foundations Symposium, pp. 298\u2013312. IEEE Computer Society Press (2018). https:\/\/doi.org\/10.1109\/CSF.2018.00029","DOI":"10.1109\/CSF.2018.00029"},{"key":"5_CR12","doi-asserted-by":"publisher","unstructured":"Cortier, V., Galindo, D., K\u00fcsters, R., Mueller, J., Truderung, T.: SoK: verifiability notions for E-voting protocols. In: 2016 IEEE Symposium on Security and Privacy, pp. 779\u2013798. IEEE Computer Society Press (2016). https:\/\/doi.org\/10.1109\/SP.2016.52","DOI":"10.1109\/SP.2016.52"},{"key":"5_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"214","DOI":"10.1007\/978-3-030-19052-1_14","volume-title":"Foundations of Security, Protocols, and Equational Reasoning","author":"V Cortier","year":"2019","unstructured":"Cortier, V., Gaudry, P., Glondu, S.: Belenios: a simple private and verifiable electronic voting system. In: Guttman, J.D., Landwehr, C.E., Meseguer, J., Pavlovic, D. (eds.) Foundations of Security, Protocols, and Equational Reasoning. LNCS, vol. 11565, pp. 214\u2013238. Springer, Cham (2019). https:\/\/doi.org\/10.1007\/978-3-030-19052-1_14"},{"key":"5_CR14","unstructured":"Cortier, V., Gaudry, P., Yang, Q.: Is the JCJ voting system really coercion-resistant? Cryptology ePrint Archive, Report 2022\/430 (2022). https:\/\/eprint.iacr.org\/2022\/430"},{"key":"5_CR15","doi-asserted-by":"publisher","unstructured":"Cortier, V., Lallemand, J., Warinschi, B.: Fifty shades of ballot privacy: privacy against a malicious board. In: Jia, L., K\u00fcsters, R. (eds.) CSF 2020 Computer Security Foundations Symposium, pp. 17\u201332. IEEE Computer Society Press (2020). https:\/\/doi.org\/10.1109\/CSF49147.2020.00010","DOI":"10.1109\/CSF49147.2020.00010"},{"key":"5_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1007\/3-540-48969-X_3","volume-title":"Lectures on Data Security","author":"I Damg\u00e5rd","year":"1999","unstructured":"Damg\u00e5rd, I.: Commitment schemes and zero-knowledge protocols. In: Damg\u00e5rd, I.B. (ed.) EEF School 1998. LNCS, vol. 1561, pp. 63\u201386. Springer, Heidelberg (1999). https:\/\/doi.org\/10.1007\/3-540-48969-X_3"},{"key":"5_CR17","doi-asserted-by":"publisher","unstructured":"Distler, V., Zollinger, M.L., Lallemand, C., Roenne, P.B., Ryan, P.Y.A., Koenig, V.: Security - visible, yet unseen? CHI \u201919, pp. 1\u201313. Association for Computing Machinery, New York (2019). https:\/\/doi.org\/10.1145\/3290605.3300835","DOI":"10.1145\/3290605.3300835"},{"key":"5_CR18","doi-asserted-by":"publisher","unstructured":"Dragan, C.C., et al.: Machine-checked proofs of privacy against malicious boards for Selene & co. In: CSF 2022 Computer Security Foundations Symposium, pp. 335\u2013347. IEEE Computer Society Press (2022). https:\/\/doi.org\/10.1109\/CSF54842.2022.9919663","DOI":"10.1109\/CSF54842.2022.9919663"},{"key":"5_CR19","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"10","DOI":"10.1007\/3-540-39568-7_2","volume-title":"CRYPTO\u201984","author":"T ElGamal","year":"1984","unstructured":"ElGamal, T.: A public key cryptosystem and a signature scheme based on discrete logarithms. In: Blakley, G.R., Chaum, D. (eds.) CRYPTO\u201984. LNCS, vol. 196, pp. 10\u201318. Springer, Heidelberg (Aug (1984). https:\/\/doi.org\/10.1007\/3-540-39568-7_2"},{"key":"5_CR20","volume-title":"Practical Mathematical Cryptography","author":"K Gj\u00f8steen","year":"2023","unstructured":"Gj\u00f8steen, K.: Practical Mathematical Cryptography. Chapman and Hall\/CRC, Boca Raton (2023)"},{"key":"5_CR21","unstructured":"Gj\u00f8steen, K., Haines, T., Solberg, M.R.: Coercion mitigation for voting systems with trackers: a Selene case study. Cryptology ePrint Archive, report 2023\/1102 (2023). https:\/\/eprint.iacr.org\/2023\/1102"},{"key":"5_CR22","doi-asserted-by":"publisher","unstructured":"Haines, T., M\u00fcller, J.: SoK: techniques for verifiable mix nets. In: Jia, L., K\u00fcsters, R. (eds.) CSF 2020 Computer Security Foundations Symposium, pp. 49\u201364. IEEE Computer Society Press (2020). https:\/\/doi.org\/10.1109\/CSF49147.2020.00012","DOI":"10.1109\/CSF49147.2020.00012"},{"key":"5_CR23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"385","DOI":"10.1007\/978-3-319-70278-0_24","volume-title":"FC 2017 Workshops","author":"V Iovino","year":"2017","unstructured":"Iovino, V., Rial, A., R\u00f8nne, P.B., Ryan, P.Y.A.: Using Selene to verify your vote in JCJ. In: Brenner, M., et al. (eds.) FC 2017 Workshops. LNCS, vol. 10323, pp. 385\u2013403. Springer, Heidelberg (Apr (2017). https:\/\/doi.org\/10.1007\/978-3-319-70278-0_24"},{"key":"5_CR24","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"162","DOI":"10.1007\/3-540-44448-3_13","volume-title":"Advances in Cryptology \u2014 ASIACRYPT 2000","author":"M Jakobsson","year":"2000","unstructured":"Jakobsson, M., Juels, A.: Mix and match: secure function evaluation via ciphertexts. In: Okamoto, T. (ed.) ASIACRYPT 2000. LNCS, vol. 1976, pp. 162\u2013177. Springer, Heidelberg (2000). https:\/\/doi.org\/10.1007\/3-540-44448-3_13"},{"key":"5_CR25","unstructured":"Juels, A., Catalano, D., Jakobsson, M.: Coercion-resistant electronic elections. Cryptology ePrint Archive, Report 2002\/165 (2002). https:\/\/eprint.iacr.org\/2002\/165"},{"key":"5_CR26","unstructured":"Karayumak, F., Olembo, M.M., Kauer, M., Volkamer, M.: Usability analysis of Helios-an open source verifiable remote electronic voting system. In: EVT\/WOTE, vol. 11, no. 5 (2011)"},{"key":"5_CR27","doi-asserted-by":"publisher","unstructured":"K\u00fcsters, R., M\u00fcller, J., Scapin, E., Truderung, T.: sElect: a lightweight verifiable remote voting system. In: Hicks, M., K\u00f6pf, B. (eds.) CSF 2016 Computer Security Foundations Symposium, pp. 341\u2013354. IEEE Computer Society Press (2016). https:\/\/doi.org\/10.1109\/CSF.2016.31","DOI":"10.1109\/CSF.2016.31"},{"key":"5_CR28","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"129","DOI":"10.1007\/3-540-46766-1_9","volume-title":"Advances in Cryptology \u2014 CRYPTO \u201991","author":"TP Pedersen","year":"1992","unstructured":"Pedersen, T.P.: Non-interactive and information-theoretic secure verifiable secret sharing. In: Feigenbaum, J. (ed.) CRYPTO 1991. LNCS, vol. 576, pp. 129\u2013140. Springer, Heidelberg (1992). https:\/\/doi.org\/10.1007\/3-540-46766-1_9"},{"key":"5_CR29","unstructured":"Ramchen, K.: Parallel shuffling and its application to Pr\u00eat \u00e0 voter. In: EVT\/WOTE (2010)"},{"key":"5_CR30","unstructured":"Ryan, P.Y.A., Rastikian, S., R\u00f8nne, P.B.: Hyperion: an enhanced version of the Selene end-to-end verifiable voting scheme. E-Vote-ID 2021, 285 (2021)"},{"key":"5_CR31","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"176","DOI":"10.1007\/978-3-662-53357-4_12","volume-title":"Financial Cryptography and Data Security","author":"PYA Ryan","year":"2016","unstructured":"Ryan, P.Y.A., R\u00f8nne, P.B., Iovino, V.: Selene: voting with transparent verifiability and coercion-mitigation. In: Clark, J., Meiklejohn, S., Ryan, P.Y.A., Wallach, D., Brenner, M., Rohloff, K. (eds.) FC 2016. LNCS, vol. 9604, pp. 176\u2013192. Springer, Heidelberg (2016). https:\/\/doi.org\/10.1007\/978-3-662-53357-4_12"},{"key":"5_CR32","unstructured":"Sallal, M., et al.: VMV: augmenting an internet voting system with Selene verifiability (2019)"},{"key":"5_CR33","volume-title":"Applied Cryptography: Protocols, Algorithms, and Source Code in C","author":"B Schneier","year":"1995","unstructured":"Schneier, B.: Applied Cryptography: Protocols, Algorithms, and Source Code in C, 2nd edn. John Wiley & Sons Inc, Hoboken (1995)","edition":"2"},{"key":"5_CR34","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"239","DOI":"10.1007\/0-387-34805-0_22","volume-title":"Advances in Cryptology \u2014 CRYPTO\u2019 89 Proceedings","author":"CP Schnorr","year":"1990","unstructured":"Schnorr, C.P.: Efficient identification and signatures for smart cards. In: Brassard, G. (ed.) CRYPTO 1989. LNCS, vol. 435, pp. 239\u2013252. Springer, New York (1990). https:\/\/doi.org\/10.1007\/0-387-34805-0_22"},{"key":"5_CR35","unstructured":"Smyth, B.: Surveying definitions of coercion resistance. Cryptology ePrint Archive, Report 2019\/822 (2019). https:\/\/eprint.iacr.org\/2019\/822"},{"issue":"6","key":"5_CR36","doi-asserted-by":"publisher","first-page":"551","DOI":"10.3233\/JCS-191415","volume":"29","author":"B Smyth","year":"2021","unstructured":"Smyth, B.: Ballot secrecy: security definition, sufficient conditions, and analysis of Helios. J. Comput. Secur. 29(6), 551\u2013611 (2021). https:\/\/doi.org\/10.3233\/JCS-191415","journal-title":"J. Comput. Secur."},{"key":"5_CR37","unstructured":"Smyth, B., Clarkson, M.R.: Surveying definitions of election verifiability. Cryptology ePrint Archive, Report 2022\/305 (2022). https:\/\/eprint.iacr.org\/2022\/305"},{"key":"5_CR38","doi-asserted-by":"publisher","unstructured":"Zollinger, M.L., Distler, V., R\u00f8nne, P., Ryan, P., Lallemand, C., Koenig, V.: User experience design for E-voting: how mental models align with security mechanisms (2019). https:\/\/doi.org\/10.13140\/RG.2.2.27007.15527","DOI":"10.13140\/RG.2.2.27007.15527"}],"container-title":["Lecture Notes in Computer Science","Electronic Voting"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-43756-4_5","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,9,21]],"date-time":"2023-09-21T23:03:24Z","timestamp":1695337404000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-43756-4_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"ISBN":["9783031437557","9783031437564"],"references-count":38,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-43756-4_5","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023]]},"assertion":[{"value":"22 September 2023","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"E-Vote-ID","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Joint Conference on Electronic Voting","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Luxembourg City","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Luxembourg","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"3 October 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6 October 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"8","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"evoteid2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/e-vote-id.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"38","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"9","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"24% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3-4","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}