Threat Actors Spoofing FIFA Websites in Advance of the 2026 World Cup


The FBI is issuing this Public Service Announcement (PSA) to warn the public that cyber threat actors are conducting spoofing attacks against the Fédération Internationale de Football Association (FIFA) website in advance of the 2026 FIFA World Cup. A spoofed website is designed to pose as a legitimate website, with branding, product listings, etc., and malicious actors use them to further illegal activity like personal information theft and facilitating monetary scams.

Read more…
Source: U.S. Federal Bureau of Investigation Cyber Division


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • Ernst & Young reveals data breach following hack on support system

    July 20, 2026

    Ernst & Young (EY) has confirmed suffering a cyberattack in which it lost sensitive customer information, including tax data. In a data breach notification letter sent to affected individuals, the firm said that on April 23, 2026, it spotted “anomalous activity” within a third-party platform its IT team uses. This is an IT service management platform ...

  • HOLLOWGRAPH: Turning Microsoft 365 Calendars into Covert Command-and-Control Channels

    July 20, 2026

    The Group-IB Threat Intelligence team has identified HOLLOWGRAPH, a new malware sample that we attribute, with high confidence, to the Cavern backdoor framework. This malware is one component of a larger toolkit, and it uses the Microsoft Graph API through a compromised Microsoft 365 account observed in Israel to communicate with its operators — a technique ...

  • Healthcare giant Abbott probes two cyber incidents amid extortion claims

    July 20, 2026

    Abbott Laboratories, one of the world’s largest healthcare and medical device companies, is investigating two apparently unrelated cyber incidents after confirming unauthorized access to internal systems. While Abbott says there has been no impact on manufacturing, laboratory operations, or patient care, cybercriminal groups ShinyHunters and ShadowByt3$ claim the breaches were far more extensive. Those claims ...

  • Hackers breached DHS after alarms were twice ruled ‘false positives’

    July 17, 2026

    Hackers managed to find their way into the US Department of Homeland Security’s primary information sharing platform, gaining unfettered access to the HSIN network that hosts unclassified information that multiple US agencies and international rely on. The hack allowed the attackers to modify server files, run malicious code and steal credential files while installing backdoors and ...

  • Attackers target critical FortiSandbox flaws as CISA issues patch order

    July 17, 2026

    Fortinet admins have two more reasons to clear their calendars after CISA confirmed a pair of critical FortiSandbox bugs are being actively exploited. The two bugs, tracked as CVE-2026-39808 and CVE-2026-25089, both carry CVSS scores of 9.1 and affect FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS. According to Fortinet, they are OS command injection flaws that allow ...

  • Nichirei getting back online after cyberattack hit KFC supplies

    July 16, 2026

    Nichirei, the food distributor hit by a cyberattack that disrupted supplies to Kentucky Fried Chicken Japan and other outlets, said its systems are getting back online as it takes steps to remedy the disruption. The Tokyo-based provider of frozen food, ice and meat products said in a statement Thursday that it worked with an external cybersecurity specialist to ...