Chile · Technology
Key Facts
- Ongoing probe — Chile’s civil police and prosecutors are investigating possible cyber-espionage against telecom firms.
- Named carriers — Entel, Movistar and Telmex are cited as alleged targets of the suspected intrusions.
- US alert — Former US Ambassador Brandon Judd reportedly warned Chilean officials about possible attacks in February.
- Timeline — Suspected accesses reportedly ran from September 2024 to April 2025.
- Alleged actor — Investigators are looking at ’Lilac Typhoon’, a Microsoft label for a China-linked threat group.
- Legal basis — Chile’s Law 21.663 and the National Cybersecurity Agency now mandate telecom incident reporting.
Police and prosecutors investigate possible cyber-espionage against Entel, Movistar and Telmex, after a US warning. No breach is confirmed yet.
The Chile cyberattack story is an ongoing investigation, not a confirmed breach, and it is rattling the country’s telecom sector. Police and prosecutors are probing possible cyber-espionage against the biggest phone and internet companies, including Entel, Movistar and Telmex. The probe, reportedly tagged ’Lilac Typhoon’ or ’Tifón Lila’, follows a warning from US authorities. If you live in or invest in Chile, this matters because telecoms hold your calls, messages and data. A real intrusion could mean widespread privacy fallout.
The investigation is being led by the civil police, under instructions from the Metropolitan Center-North Prosecutor’s Office. Reports from 8 and 9 August 2026 say the case is framed as possible ’sabotaje informático’, or computer sabotage. The alleged activity reportedly involved malicious programs designed to access equipment and transfer information.
The suspected accesses run from September 2024 to April 2025. That is a long window of potential exposure. No verified list of stolen records has been published. No company has confirmed a data breach.
For residents and investors, the stakes are clear. Telecom networks are essential services under Chilean law. A compromise could expose personal communications, billing details or network infrastructure. The investigation is a reminder that critical infrastructure is a prime target for state-linked actors.

One-stop reference
Company Intelligence
Every listed company in Latin America — financials, ownership and structure for 1,450+ companies across 26 exchanges, in one place.
How The Case Surfaced: Chile cyberattack
The case came to light through a US diplomatic channel. Reports say former US Ambassador Brandon Judd delivered a written notice to then-security minister Luis Cordero earlier in 2026.
That notice mentioned possible attacks on electronic devices in Chile. It was then referred to the civil police.
El Dínamo first detailed the investigation on 8 August 2026. Emol followed on 9 August with reports of congressional concern.
Deputies are urging clarification of the alleged espionage. The specific US alert document has not been named publicly.
The timing fits a broader pattern. US agencies have increasingly shared threat intelligence with Latin American governments.
Chile, as a regional tech hub, is a natural recipient.
What Was Targeted
The reporting names Entel, Movistar and Telmex as alleged targets. These are three of Chile’s largest telecom operators, covering mobile, fixed-line and internet services.
One account also mentions Brotec Construcción, but that firm is not a telecom operator. The suspected activity reportedly aimed at national computer systems and telecom company information.
Attackers allegedly used malicious programs to access equipment and transfer data. Exactly which datasets were exfiltrated remains unconfirmed.
CrowdStrike research on telecom intrusions shows common targets. These include mobile subscriber information, call metadata and text messages.
That is a general pattern, not proof of what happened in Chile.
Company Responses
None of the named companies has issued a public statement about this investigation, according to the supplied sources. Entel, Movistar and Telmex have not confirmed or denied any intrusion.
They are also not commenting on the probe’s details. That silence is typical in an ongoing investigation.
Companies often wait for police findings before speaking publicly. Under Chile’s new cybersecurity law, they would be required to report confirmed incidents to regulators.
The lack of confirmed breach means customers have no specific action to take yet. Still, changing passwords and enabling two-factor authentication are sensible precautions.
Chile’s Cybersecurity Push
Chile has been building a stronger cyber-defence framework. Law 21.663, published on 8 April 2024, created the National Cybersecurity Agency.
The law imposes mandatory incident reporting for essential services, including telecoms. The agency completed its first qualification of Operators of Vital Importance on 24 July 2026.
That list covers entities whose disruption would have serious impact on the country. Telecom operators are central to that category.
The law gives the agency supervisory and sanctioning powers. Companies that fail to report incidents can face penalties.
This investigation will test how well the framework works in practice. For expats and investors, the framework offers some reassurance.
Chile is moving toward international standards on cyber-resilience. But the alleged espionage shows the threat is real.
What It Means For You
If you live in Chile, your phone and internet data could be at risk. A successful espionage operation could expose call records, messages or personal details.
The investigation is still early, so there is no evidence your data was taken. For firms operating in Chile, the lesson is to review security protocols.
Telecoms are a prime target for state-linked groups. The alleged actor, ’Lilac Typhoon’, is associated with the Chinese People’s Liberation Army as a concealment layer.
Investors should watch for regulatory fallout. If a breach is confirmed, expect scrutiny of telecom security practices.
That could mean higher compliance costs, but also a stronger sector overall.
Frequently Asked Questions
Is the Chile cyberattack confirmed?
No. Chilean police and prosecutors are investigating a possible cyber-espionage case against telecom firms. No breach has been officially confirmed.
Which companies are named in the probe?
Entel, Movistar and Telmex are named as possible targets. No company statement has been issued about the investigation.
What is ’Lilac Typhoon’?
It is a Microsoft label for a threat actor associated with China. Investigators are examining possible links to this group.
What should I do if I’m a customer?
There is no confirmed breach, so no urgent action is needed. Still, change passwords and enable two-factor authentication for safety.
Sources: Chile’s Fiscalía Metropolitana Centro Norte; the investigative police (PDI); a US cyber advisory; La Tercera; Reuters

By The Rio Times | Created at 2026-08-10 08:41:51 | Updated at 2026-08-10 09:21:29
50 minutes ago








