Politics

Four Prosecutors Refused to Charge Hacker Who Breached 633,000 Arizona Voter Records in 2020

Documents released by the White House reveal that a self-described hobbyist hacker who admitted to stealing hundreds of thousands of voter records from Maricopa County faced no charges after four separate prosecutors declined to pursue the case, despite FBI urging.

Four Prosecutors Refused to Charge Hacker Who Breached 633,000 Arizona Voter Records in 2020

A massive data breach that exposed the personal information of 633,000 Maricopa County, Arizona voters in 2020 resulted in zero criminal charges, despite a suspect who confessed to the crime and repeated attempts by the FBI to secure prosecution, according to documents released Thursday by the White House Government Transparency Task Force.

The newly disclosed records detail how four separate prosecutors — at federal, state, and county levels — all declined to pursue charges against the hacker over a two-year period, ultimately leading the FBI to close the case in 2023 due to lack of prosecutorial interest.

Hobbyist Hacker Admits to Extracting Millions of Records

The suspect, described as a hobbyist hacker, openly admitted his conduct during the FBI investigation. According to an administration official who spoke to reporters Wednesday, the hacker acknowledged noticing the vulnerability in the county’s voter registration system for an extended period before exploiting it in the fall and spring.

“He ultimately believes that over the course of a period of time, he extracted 1 million to 2 million voter registration records, and then he stored them in four gigabytes on his hard drive,” the official stated.

Of the 633,000 Maricopa County records confirmed stolen, approximately 930 contained sensitive, non-public information including domestic violence victim status. The FBI’s investigation revealed that the hacker used a script to extract data through the same webpage voters would use to enter their own information, encountering no security measures on the front end that would have prevented access to the underlying database.

According to FBI summary documents, the suspect expressed deep remorse for his actions. “[He] said he was 100% accountable for his actions and was deeply regretful,” the summary noted, adding that the hacker “apologized and commented that he has to deal with the consequences of his actions.” The suspect also stated he did not share the stolen data with anyone.

Chain of Declined Prosecutions

The first rejection came from the U.S. Attorney for the District of Arizona on June 12, 2021, approximately six months into the Biden administration. Following the federal declination, three additional prosecutors turned down the case: the Arizona attorney general, the Maricopa County district attorney, and the Pinal County district attorney.

The FBI’s investigation went beyond simply identifying the suspect and obtaining his confession. Federal agents examined bank records and communications to determine whether the hacker was working with domestic or foreign actors, ultimately concluding he had acted alone. Despite this thorough investigation and the suspect’s admission of guilt, no prosecutor at any level of government chose to bring charges.

After years of unsuccessful attempts to find a prosecutor willing to take the case, the FBI officially closed the investigation in 2023. According to the administration official, the White House has now requested information about the prosecutors who declined to pursue charges.

Officials Allegedly Briefed but Silent

The documents also raise questions about what senior officials knew about the breach and when they knew it. According to the administration official, former Cybersecurity and Infrastructure Security Agency (CISA) Director Chris Krebs was briefed on the incident with documentation that classified the breach in the “highest concern” category and “repeatedly mentioned” it. However, Krebs never publicly addressed the breach.

Administration officials pointed to the incident as evidence of a significant vulnerability in the 2020 election infrastructure — a characterization that contrasts sharply with persistent claims by Democrats and major media outlets that the 2020 election was the most secure in American history.

No Ballots Altered, but System Vulnerabilities Exposed

While the breach did not involve any changes to actual ballots or voter registrations, an administration official emphasized that the incident demonstrates serious weaknesses in election system security. The hacker’s ability to access such a large volume of voter data through a simple script, with no security barriers preventing the exploitation, highlights potential vulnerabilities in systems designed to protect voter information.

The fact that nearly a thousand records included information about domestic violence victims raises particular concerns, as such data could potentially endanger individuals if it fell into the wrong hands, even though the suspect claimed not to have shared the information.

The release of these documents by the White House Government Transparency Task Force comes more than four years after the initial breach and follows the closure of the FBI investigation. The disclosure sheds new light on a previously unreported major cybersecurity incident affecting one of the nation’s largest county election systems during a presidential election year.

The case now raises questions about prosecutorial priorities and decision-making processes when it comes to election-related cybersecurity incidents, particularly given the suspect’s cooperation and admission of wrongdoing.

Source: thefederalist.com — https://thefederalist.com/2026/08/06/four-prosecutors-refused-to-pursue-hacker-behind-2020-breach-of-633k-arizona-voters/

The FedFront Brief

Politics from the front lines, straight to your inbox — free, every weekday.

Join the Conversation

Your email address will not be published. Required fields are marked *