Illegal sports streams riddled with threats that even the smartest users might miss

Erling Braut Haaland
Erling Braut Haaland blir presentert for pressen spillende for Manchester City (Image credit: Getty Images / Matt McNulty)

Illegal sports streaming sites are riddled with malware, some of which is capable of draining victims' bank accounts, a new report from Opentext Security Solutions reveals.

Opentext recently analyzed 50 “popular” illegal streaming sites and discovered that “every single one” contained malicious content. Furthermore, four in ten did not have the necessary security certificates. To top it all off, users are also “bombarded” with explicit and extreme pop-up ads. 

“With a huge weekend of TV approaching, including Anthony Joshua’s latest fight, the launch of House of the Dragon, and Man Utd vs Liverpool in the Premier League, viewers could be tempted to stream illegally,” the report states. ”However, they could also be exposing themselves to a whole range of dangerous material, designed to part them from their personal information and ultimately their cash.”

Banking trojans galore

There are different kinds of threats on these sites, the researchers claim, but banking trojans designed to steal people’s money are arguably the most damaging. The distribution method is also quite simple: when people press the unmute button on the video stream, they download the virus

“Users didn’t even have to enter any information – one click was enough to do the damage,” the researchers warned. 

In earlier years, bitcoin-related scams were most common, but this year there’s been a “notable absence”. Instead, fraudsters are going for other types of cryptocurrencies.

Finally, these sites expose people to explicit content. The researchers described the content as “extreme” and “a real risk to families who might share devices with children.”

Read more

In other words, streaming sports events on illegal sites is not worth the money saved, especially knowing that many of these sites don’t actually offer any real streaming service, but rather just try to trick people into visiting.

“These illegal streaming sites are often run by criminal enterprises to gain users’ personal data and sell them on,” added Kelvin Murray, Senior Threat Researcher at Opentext Security Solutions.

“There is no safe way to use them without putting yourself at risk. As the people who run these sites become savvier, the scams that they employ to trick users into giving up their data will be harder to spot. Therefore, we recommend avoiding these types of websites and not putting yourself in danger.”

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
A padlock resting on a keyboard.
Understanding and avoiding malvertizing attacks
Representational image of a cybercriminal
Criminals are spreading malware disguised as DeepSeek AI
Pirate skull cyber attack digital technology flag cyber on on computer CPU in background. Darknet and cybercrime banner cyberattack and espionage concept illustration.
Microsoft reveals over a million PCs hit by malvertising campaign
A concept image of someone typing on a computer. A red flashing danger sign is above the keyboard and nymbers and symbols also in glowing red surround it.
Fake Reddit sites found pushing Lumma Stealer malware
botnet
YouTubers targeted by blackmail campaign to promote malware on their channels
 In this photo illustration a Google Play logo seen displayed on a smartphone.
Why is there so much spyware hidden in the Play Store?
Latest in Security
NordProtect logo
Standalone identity theft protection from Nord Security is now available
A man holds a smartphone iPhone screen showing various social media apps including YouTube, TikTok, Facebook, Threads, Instagram and X
Ofcom cracks down on UK tech firms, will issue sanctions for illegal content
3d rendering of a submarine power cable on the seabed
Subsea internet cables can now ‘listen’ for sabotage using irregular pulses of light
Dark Web monitoring
A worrying critical security flaw in Apache Tomcat could let hackers take over servers with ease
A graphic showing someone on a tablet working through a supply chain.
Security issue in open source software leaves businesses concerned for systems
ransomware avast
One of the most powerful ransomware hacks around has been cracked using some serious GPU power
Latest in News
FCC filing for the Nothing CMF Buds 2 Plus
Nothing’s next-gen CMF cheap earbuds slated to arrive within the month, but don’t expect hi-res audio support
John Loeffler holding the Ryzen 7 7800X3D
Great news! The best gaming CPU ever made is finally available for it's original MSRP again
Garmin Instinct 3
A new Garmin study hints at the link between burning calories and happiness, and I've got good and bad news
A woman sitting in a chair looking at a Windows 11 laptop
Microsoft is supercharging Windows 11’s voice commands on Copilot+ PCs with Snapdragon CPUs, and fine-tuning a few Recall features
MacBook Air M4
Apple's rumored foldable iPad tipped to launch sooner than expected with an exciting software twist
A phone displaying the Google Messages logo
Google Messages could finally be getting this WhatsApp-style group chat feature