惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

雷峰网
雷峰网
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - 三生石上(FineUI控件)
博客园 - 聂微东
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Hugging Face - Blog
Hugging Face - Blog
Apple Machine Learning Research
Apple Machine Learning Research
博客园 - Franky
MyScale Blog
MyScale Blog
A
About on SuperTechFans
博客园_首页
B
Blog RSS Feed
Martin Fowler
Martin Fowler
大猫的无限游戏
大猫的无限游戏
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Vercel News
Vercel News
C
Check Point Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
博客园 - 【当耐特】
M
MIT News - Artificial intelligence
宝玉的分享
宝玉的分享
T
Tailwind CSS Blog
I
InfoQ
罗磊的独立博客

Latest from TechRadar

Quordle hints and answers for Monday, April 13 (game #1540) NYT Strands hints and answers for Monday, April 13 (game #771) NYT Connections hints and answers for Monday, April 13 (game #1037) Morbid Metal developer explains why he ditched an origami art direction in favor of gritty sci-fi — 'It worked, but it didn't really feel like me' '71% of US households get routers from ISPs': Why new FCC rules could leave millions stuck with outdated,… 'The CPU is the system’s executive layer': Intel joins SambaNova as both face existential threat from… ‘More bang for your buck’: 7 easy ways to boost your MacBook Neo’s performance for free DJI Romo P vs Roborock Saros 10R — which robot vacuum comes out on top when it comes to dodging obstacles? I put… I spent 6 hours with Genshin Impact on the Galaxy S26 Ultra, and I can't believe how far mobile gaming has come What is the release date for The Testaments episode 4 on Hulu and Disney+? I reviewed the LG G6 for 3 weeks, and it's a fantastic OLED TV that's the new best option for brighter rooms Is your bird feeder camera doing more harm than good? 3 tips for using it safely as RSPB issues urgent disease warning Chelsea vs Man City Live Streams: How to watch Premier League 2025/26 from anywhere in the world, team news How to watch Alcaraz vs Sinner for FREE: TV Channels for Monte-Carlo Masters Final Sunderland vs Tottenham Live Streams: How to watch Premier League 2025/26 from anywhere in the world, team news Are these the best-designed workout headphones ever? I used them for a month to find out How to watch Snooker 900 John Virgo online (it's free) – stream O'Sullivan vs Higgins anywhere I've only just discovered the Walk With Frodo app on Garmin's Connect IQ store — and as as a huge LOTR nerd, it's going to make the next 1,800 miles fly by 'Just not sustainable': Why your monthly £25 broadband internet bill could soon hit £45 How to watch Paris-Roubaix 2026: Free Streams & TV Info as Tadej Pogacar chases third Monument How to watch Euphoria season 3 online – stream Zendaya & Sydney Sweeney drama from anywhere today '$15K bill destroyed a solo developer’s startup': How hackers are using leaked Google API keys to… There's a sneaky way to watch UFC 327 really cheap... NYT Connections hints and answers for Sunday, April 12 (game #1036) NYT Strands hints and answers for Sunday, April 12 (game #770) Quordle hints and answers for Sunday, April 12 (game #1539) Amazon's Ring cameras are the perfect solution to secure your home on a budget — shop today's best deals… I've tested every iPhone since the iPhone 12, and Ceramic Shield 2 is the first iPhone glass I fully trust UFC 327 live stream: how to watch Procházka vs Ulberg, start time, preview, full card We're officially getting the DJI Pocket 4 on April 16, but here's how Insta360 could beat it
How the gaming and gambling industry can strengthen their...
Sam Peters · 2026-06-12 · via Latest from TechRadar

No business wants to take a gamble when it comes to cybersecurity. Ironically, that’s especially true in the gaming and gambling industry.

It’s a sector that’s booming. By 2030, the global online gambling market is expected to nearly double to approximately $154 billion, growing at almost 12% year on year. For operators, it’s good news. However, that growth is also attracting cybercriminal attention.

Chief Product Officer, ISMS.online.

Between 2022 and 2024, iGaming fraud surged 64% year-over-year on average. And more recently, several major incidents have made headlines.

In July 2025, Flutter Entertainment (the parent company of Paddy Power, Betfair, Sky Betting & Gaming, PokerStars and other brands), confirmed that it had suffered a data breach affecting 800,000 customers.

More recently, in February 2026, casino operator Wynn Resorts confirmed that it had suffered a cyberattack from hacking group ShinyHunters, which claimed to have stolen over 800,000 records including employee data and personally identifiable information.

Mounting data, operational, reputational and supply chain threats

Gaming and gambling firms have become increasingly attractive targets for threat actors for several reasons. These are companies that have extensive digital footprints and hold vast amounts of financial and personal information.

For sector players, the use of data is crucial: to better understand player behaviors, drive strategic investments and content strategies, and enable the redesigning and personalization of games to make them more engaging.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

However, for cybercriminals who seek financial gain or simply wish to execute malicious attacks on companies and their players, that creates fertile ground on which they can wreak havoc.

With so much transactional data, personal information and payment information at play, any single breach can be devastating. Threat actors also know that gaming and gambling companies typically operate around the clock, making downtime disproportionately costly.

For industry players, uptime is the foundation of revenue generation. Many platforms serve players on a 24/7 basis, and even minor user experience issues or disruptions from hacks can quickly have users turning to competitors.

These pressures are amplified by the real-time nature of gaming industry transactions. Bets must be accepted and settled instantly. If they’re not, players will almost always look elsewhere in an industry where customer loyalty can be thin and alternatives are plentiful.

For threat actors, the opportunity to inflict maximum pain on their targets is, therefore, clear. Any downtime or disruption quickly results in lost revenue and undermines customer trust, making it easier to back companies into a corner when it comes to data breaches or ransomware.

At the same time, there is also the growing challenge of increasingly interconnected supply chains. Behind the polished UX of gaming platforms is a complex web of third-party vendors, data providers, software solutions, payment processors, identity verification services, cloud platforms, odds generators and more that collectively contribute to an ever-widening attack surface.

For cybercriminals, going after suppliers that have privileged access to core systems can be an easy way in, with compromises of minor vendors capable of resulting in huge ripple effects.

For many attack groups, it’s become a preferred method. So much so that the global annual cost of software supply chain attacks to businesses is expected to reach a staggering $138 billion by 2031, up from $60 billion in 2025. Indeed, one small weak link in the chain can present massive cyber risks for gambling and gaming companies.

ISO 27001 and ISO 27701 should be the foundations for improved resilience

With the stakes so high in the gaming and gambling sector, cyber resilience has become essential.

For many, it’s a priority concern. In a survey conducted by EY, 47% of gaming executives stated that mitigating cyber risks is a key challenge. The question for operators is what practical steps can be taken.

For many, ISO 27001 will serve as a natural starting point, being a globally recognized framework and blueprint for developing an effective information security management system. Critically, it provides organizations with a structured way to identify risks, implement controls and embed clear processes and policies in relation to data protection.

For gambling companies, ISO 27001 is particularly relevant. The Gambling Commission’s remote gambling and software technical standards (RTS) specifically require operators to complete a third-party annual security audit that is mapped to specific sections of ISO 27001.

In this sense, while full certification isn’t mandatory, aligning with it can help operators easily demonstrate best practice in relation to secure authentication, data encryption, identity verification, monitoring, data retention and supplier oversight.

Other legislation also applies. For example, any online gambling organization taking credit card payments must also adhere to PCI-DSS – however, it’s worth noting that many of the security requirements overlap and intersect with the controls identified under the Gambling Commission’s technical requirements.

For gambling firms that operate across multiple jurisdictions, there can be a host of different licensing rules, data processing conditions and data transfer restrictions to manage.

For firms to which this applies, ISO 27701 also acts as a useful extension to ISO 27001, providing them with a privacy management framework which aligns with GDPR and other international privacy expectations.

As regulatory expectations evolve, supportive partners can help ease growing burdens

While sound starting points, these standards represent only part of the regulatory landscape. Given the gaming and gambling industry’s various challenges, controls and restrictions, firms are having to comply with an increasingly wide range of regulatory obligations that extend beyond information and privacy.

The responsible gambling regulations stand as a prime example, requiring firms to demonstrate robust processes around player protection, affordability assessments, behavioral monitoring and self‑exclusion.

Further, more bespoke oversight is also often demanded of operators in areas such as game fairness, random number generator testing, anti‑money laundering controls, geolocation restrictions, new market licensing conditions and even internal governance or board‑level reporting structures.

It’s of little surprise that companies frequently cite evolving regulation and region-specific licensing requirements as common pain points, alongside increasing enforcement on responsible gambling, rising expectations for encryption and secure logins, pressure to evidence processes to regulators, growing data privacy risk, high cost of failed audits or license delays, disjointed internal tools and manual processes.

In reality, the burdens are extensive. And for many firms, the most logical way to ease these is to work with a dedicated security, privacy and compliance partner that can provide support and solutions covering the full spectrum of regulatory requirements and industry best practices.

In an industry where the regulatory picture never stands still, that kind of comprehensive support can be the difference between keeping pace with compliance and customer expectations - and falling behind.

We've featured the best business VPN.

This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.

The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit

Chief Product Officer, ISMS.online.