Between January and June 2026, researchers tracked over 35,000 malicious websites exploiting the 2026 FIFA World Cup. These sites, which garnered nearly 1.5 million visits from Japan alone, range from counterfeit merchandise stores to sophisticated cloned ticketing platforms. The campaign utilizes SEO poisoning to dominate search results and compromised legitimate infrastructure to host fraudulent content.
The most dangerous aspect of this wave involves real-time credit card skimming on fake hospitality sites, which allows attackers to bypass multi-factor authentication (MFA) by tricking victims into entering one-time passwords. Additionally, fake live-streaming sites redirect users through malicious ad networks, leading to PII harvesting and unauthorized subscription enrollments. Security professionals recommend navigating only to verified official domains and utilizing AI-powered web protection to mitigate these evolving threats.
Top comments (0)