Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - Sport Teams And Events Are Easy Targets For Hackers
News & Analysis

Sport Teams And Events Are Easy Targets For Hackers

ISBuzz TeamBy ISBuzz TeamJuly 12, 2016Updated:July 4, 20244 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

With a sports packed summer upon us, including WImbledon, Euro’s and the Olympics, 2016 really is a year of sport. But as sports teams, organisations and tournaments embrace mobile, cloud and analytics, how does this open them up to cyber attacks and hackers? What do hackers want from these targets and how do they plan to achieve this?

Mark Bower of HPE Security – Data Security, a provider of advanced encryption, tokenization and key management solutions, and Stephen Gates of NSFOCUS IB, a global network and application security provider, have shared their thought on this topic below.

Mark Bower, Global Director at HPE Security – Data Security:

Mark Bower“The importance of protecting data associated with sports events, whether it’s professional or amateur athletics, school teams or something as large as the Olympics and other major organised sports, is no different than protecting enterprise or customer data. It’s prudent for organisations of all kinds to follow best practices of encrypting all sensitive personal data as it enters a system, at rest, in use and in motion.

With systems that process online and in-person point-of-sales ticket purchases, for example, the ability to neutralise a breach by rendering data useless if lost or stolen, through data-centric encryption, is an essential benefit to ensure data remains secure.

Hackers will steal anything of value, and even the information could be held for sale on the black market to be used for social engineering attacks for spearphishing to attempt to gain access to deeper systems with even more lucrative data that can be monetised directly if stolen.

We have a saying in security, it’s not a matter of if a breach will happen, but when. Beyond the threat to sensitive data, companies need to be concerned with the impact a data breach can have on their reputation and, ultimately, on their bottom line.  A data-centric approach to security is the industry-accepted cornerstone needed to allow organisations to mitigate the risk and impact of cyber attacks and other attempts to get this sensitive information.

Many organisations are not readily equipped with modern data-centric protection which enables them to neutralise breach risks.  Any organisation dealing with medical data or other personally identifiable information (PII) must shift gears to modern data security practices while joining their peers in other industries who’ve already learned the importance of mitigating data threats.  The value of data-centric security controls enables organisations to protect valuable data assets and enable data-rich analytic insight without risk.”

Stephen Gates, Chief Research Intelligence Analyst at NSFOCUS IB:

StephenGates_Professional“In cases like these, sports teams, organisations, and tournaments are threatened by the same cyber-attacks everyone else faces.  It’s all about hacker motivations and those unfortunately can be just about anything.  From notoriety, financial gain, competitive advantage, protest, you name it, the motivations are extremely broad. Most hackers are financially motivated.  Stealing someone’s identity by way of stealing their health, training, and/or financial records seems obvious to those aware of cyber threats. However, if a hacker had access to team records that showed someone was injured, or someone wouldn’t be playing etc. that inside information could be used to increase sports betting odds.  Remember, betting/gambling on sporting events is a huge business.

Hackers can achieve this by exploiting vulnerable systems, vulnerable defenses, or vulnerable people.  There is nothing special in this case with regards to hacking the systems that support these teams and these events.

To protect against these types of threats teams, organisations, and tournament organisers need to determine what would cause the most damage to the team and/or the event, and defend it to the nth degree.   Loose defenses only serve to make the hackers’ job easier.  They will appreciate and take advantage of your carelessness.

We are currently seeing many emerging attacks and threats, with the list of vulnerable applications, vulnerable defenses, and vulnerable people grows exponentially every day.  In this case, phishing attempts by hackers will likely be extremely high.  In addition, hackers taking advantage of vulnerabilities in applications and operating systems that allow remote code execution, will likely be high as well.”

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read

AppSec is dead, long live AI security

April 29, 20265 Mins Read

Making stolen data worthless: why security must start with the data

March 30, 20265 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}