On June 3, 2026, the Canadian Centre for Cyber Security (the Centre) released a cyber threat bulletin (the Bulletin) outlining cyber threats facing individuals and organizations during the FIFA World Cup 2026 (the World Cup). The Centre notes that the tournament’s global visibility and broad attack surface, including digital systems, involved businesses and supply-chain partners, make it a high-profile target for cybercriminals and state-sponsored actors.
The Bulletin groups identified cyber threats into the following three categories:
The Bulletin also emphasizes the threat posed by SMS blasters deployed near World Cup events. These portable devices can send large volumes of “smishing” messages containing malicious links to nearby cellphones to harvest credentials, personal information or financial information from victims.
Among the key threats identified, the Bulletin notes ransomware, distributed denial-of-service and defacement attacks are particularly relevant for organizations associated with the World Cup. It also warns that state-sponsored actors may conduct disruptive cyber activity against the World Cup, particularly where a host nation is involved in or aligned with a party to a geopolitical conflict.
The Centre concludes that awareness and cybersecurity best practices can mitigate many of these threats, and encourages individuals and organizations to take protective measures.
Summary By: Uday Bahal
Disclaimer: This Newsletter is intended to provide readers with general information on legal developments in the areas of e-commerce, information technology and intellectual property. It is not intended to be a complete statement of the law, nor is it intended to provide legal advice. No person should act or rely upon the information contained in this newsletter without seeking legal advice.
E-TIPS is a registered trade-mark of Deeth Williams Wall LLP.