Securityaffairs Malicious Infrastructure Linked to Illegal Gambling Sites Exposed
Article Content
- •Infoblox identifies 1.7 million Chinese-language casino sites linked to cyber threats.
- •Major US cloud providers are hosting infrastructure for these illegal gambling operations.
- •Online scams from these sites resulted in losses estimated between $88.3 billion and $114.1 billion in 2025.
A report from Infoblox reveals that 1.7 million Chinese-language casino websites are linked to serious cybersecurity threats, including malware distribution and command-and-control operations. These sites often conceal their malicious activities behind the facade of illegal gambling and adult entertainment. They are reportedly supported by major US cloud providers like Amazon and Microsoft, raising concerns about 'infrastructure laundering.' The report highlights that these sites are used for North Korean money laundering and tax evasion, with online scams causing estimated losses of up to $114.1 billion in 2025 across East Asia and Australia. Security experts urge increased scrutiny of these platforms, as they may pose significant risks to users and organizations. The situation is exacerbated by the complexity and confusion surrounding the identification of these sites.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Following this threat?
Track Conti, Gray Rabbits and Chosen Brick in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Iranian State Actors Deploy CHOSEN BRICK Spyware Against Dissidents On September 15, 2026, the UK, US, and Netherlands issued a joint advisory regarding a spyware campaign attributed to Iranian state actors targeting dissidents, activists, and journalists. The malware, known as CHOSEN BRICK, is delivered through spear-phishing attacks on messaging platforms like WhatsApp and Telegram.…