Skip to content

Electoral Roll Data on 13.7 Million Chileans Advertised as a Complete Database

Breach Report Chile Government No Price Stated

Electoral Roll Data on 13.7 Million Chileans Advertised as a Complete Database

A forum user posting as GordonFreeman is advertising what they describe as the complete electoral roll of Chile, listing 13,737,519 citizens and attributing it to SERVEL, the national electoral service. The stated field list covers full names split into paternal and maternal surnames, RUT national identity numbers with check digits, sex, registered address, region, province, commune and municipality, along with the electoral district and polling table each voter is assigned to. The file is given as 3.35 GB in .DB format, with a 500,000 record sample published openly. No price is stated, only a messenger contact. The claim is unverified.

Citizens13,737,519
Size3.35 GB
Format.DB
ActorGordonFreeman

Post details

TargetSERVEL
CountryChile
SectorElectoral authority
ListingNo price stated
Volume13,737,519 records
Format.DB, 3.35 GB
Observed
ActorGordonFreeman

!What the post claims

  • 13,737,519 citizens
  • 3.35 GB in .DB format
  • Given names and both surnames
  • RUT national ID numbers
  • RUT check digits
  • Sex field
  • Registered addresses
  • Region and province
  • Commune and municipality
  • Electoral district
  • Assigned polling table
  • Attributed to SERVEL
  • 500,000 record sample
  • No mechanism described

Screenshot

Forum post advertising Chilean electoral roll data, observed 24 August 2026.

Mapped techniques

The post describes no intrusion method. Both entries are inferred from the artefacts, not stated.

  • Collection T1213 Data from information repositories Inferred A single database file with a uniform schema points to an export rather than an assembled set. Whether the source was an internal system or a published roll is not established.
  • Exfiltration T1567 Exfiltration over web service Inferred The sample is distributed through a public file host. The route out of any environment is not described.

Potential impact

At 13.7 million records this covers essentially the entire voting age population of Chile, which makes the usual question of whether a given person is affected close to meaningless. The field that carries the weight is the RUT, because it is the single identifier used across Chilean banking, telecoms, healthcare and public services, and it is not something a citizen can change. Paired with a full name and a registered address, it is the standard starting point for account opening fraud and for the identity checks that call centres still perform verbally. The electoral fields are a separate concern: district and polling table place every named individual geographically at a resolution useful for targeted political messaging, and in combination with an address, for physical targeting of anyone whose safety depends on not being locatable. The important caveat is that parts of the Chilean electoral roll are published by law for public review, so a set like this may represent aggregation of public records rather than a system compromise. That distinction changes the response entirely but does not much change the exposure, since the aggregation is what creates the risk.

iStatus Unverified

The post asserts the data was obtained from SERVEL and offers nothing to support it, describing no intrusion, no date and no access route. That matters more here than in most listings, because Chile publishes electoral roll extracts for public consultation, which means a sample that checks out against reality would demonstrate the data is genuine without demonstrating that anything was breached. Verification against the sample is therefore a weak test of the central claim, and any reporting that treats a matching record as proof of a compromise is going further than the evidence allows. The account is established rather than new, with a substantial posting history and a paid forum rank. No price is given, which is unusual and may indicate the set is being used to build standing rather than sold. Dark Web Informer has not retrieved the sample and is not linking it, nor the contact address. SERVEL has not publicly addressed the claim.

Dark Web Informer // Threat Intelligence

Latest