Professional sports organizations are facing sustained cyber targeting, with Darktrace reporting that 84% were targeted in the past year and 57% experienced multiple incidents. The sector has become an attractive target because disruption during live events can have immediate operational and reputational impact, while teams, leagues, venues, and partners also hold valuable fan, athlete, and commercial data. Increased digitization across stadium operations, broadcasting, ticketing, and cloud services has expanded the attack surface and heightened dependence on interconnected third parties.
Phishing emerged as a leading threat vector, with sports organizations receiving 19% more phishing emails than other sectors. Darktrace said 21% of analyzed phishing messages targeted executives or VIPs, 37% used novel AI-assisted social engineering techniques, and 84% bypassed DMARC authentication checks. The reporting also warned that supply-chain exposure through ticketing platforms, broadcasters, cloud providers, and stadium technology vendors is compounding risk for the sports sector as attackers look for ways to disrupt events, steal sensitive data, and exploit trusted business relationships.

Get the infrastructure and lures behind it.
1 event from the most recent confirmed update back to the earliest known activity.
Darktrace published a report on cyber threats facing sports organizations, stating that 84% of sports organizations were targeted in the last year and 57% experienced multiple incidents. The report also highlighted elevated phishing exposure, supply-chain risk, and operational disruption threats tied to live events.
Get the infrastructure, lures, and IOCs behind this campaign, ready to push into your email and identity stack.
2 references tracked. Mallory keeps watching after this page renders.
infosecurity-magazine.com
Open sourcedarktrace.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.