Cybersecurity Agency Releases Election Infrastructure Security Plan 40 Days Before Midterms
Quick Look
- Cybersecurity and Infrastructure Security Agency released an election infrastructure security plan 40 days before the November midterms, outlining threats such as software vulnerabilities, hacks of voter registration databases, insider threats, and physical security incidents like bomb threats targeting polling locations in 2024.
- The plan, delayed from its original mid-August release date promised by Homeland Security Secretary Markwayne Mullin, aims to support state election officials amid criticism that federal efforts came too late after the Trump administration reduced the agency’s election security workforce last year.
AI-generated summary
Why It Matters
The Trump administration had previously reduced the Cybersecurity and Infrastructure Security Agency’s election security workforce, prompting state election officials to seek private services for protection. Homeland Security Secretary Markwayne Mullin had originally promised the election infrastructure security plan by mid-August.
The nation’s cybersecurity agency on Thursday released an election infrastructure security plan 40 days before November’s midterms, laying out potential threats to election systems and listing services it would offer to election officials to protect the vote.
The plan, which Homeland Security Secretary Markwayne Mullin had originally promised to release by mid-August, comes as the Trump administration has been trying to kickstart efforts to help states protect voting systems. Election officials have argued that such efforts are too little, too late after the administration gutted the agency’s election security work last year, prompting the officials to pay for private services to ensure they were prepared for the upcoming elections.
“Election security is national security,” Mullin said in a statement on Thursday. “This plan, which will be implemented in full, is crucial to the security, freeness and fairness of choosing the leaders of our country.”
The document warns of various threats to election security, including software vulnerabilities, hacks of voter registration databases, insider threats and physical security incidents, such as bomb threats that targeted several polling locations in the 2024 elections.
What to Watch
AI outlook — possibilities, not facts
CISA will implement the election infrastructure security plan in full before the November midterms.
Likely · Within weeks
Election officials will increasingly rely on federal cybersecurity services rather than private providers for future elections.
Possible · Within months
Open Questions
- What specific services will CISA offer to election officials under this plan?
- How much funding is allocated for the implementation of this election security plan?
- Which states have already signed up to receive CISA’s election security services?
- Were the bomb threats in the 2024 elections linked to any specific extremist groups?







