The incident mainly affected users in the UK and Ireland, becoming one of the consecutive data security incidents encountered by the gambling industry in recent months.
According to an announcement from Betfair's parent company Flutter Entertainment, after breaking through the system's defenses, the attackers successfully accessed data including usernames, email addresses, IP addresses, and some device information. In some cases, some information about the user's home address was also leaked. However, Betfair emphasized that sensitive data such as passwords, bank accounts, identification, and financial information directly related to transactions were not leaked.
The company said that the incident was discovered quickly after the monitoring system detected abnormal access, and countermeasures were taken immediately. Flutter worked with external network security experts to block the relevant accounts and fix the security vulnerabilities within a few hours. At the same time, a detailed forensic investigation was launched to clarify the attack method, the scope of impact, and prevent similar intrusions in the future.
Betfair has proactively notified all affected users and reported the incident to the UK Gambling Commission and the Irish Data Protection Commissioner. The company reminds users to be aware of potential phishing attempts and be wary of any emails or messages that use compromised information to commit fraud.
Although no cases of misuse of the leaked data have been found so far, Betfair said it has strengthened its security defenses across the board, including operating a 24/7 response center, strengthening identity authentication mechanisms, and a comprehensive review and restriction of internal access permissions.
The incident comes amid growing security concerns in the gambling industry, with the British Horseracing Authority and other gambling services also reporting data breaches in recent months. The attack highlights the gambling industry as a hub for high-value data that is increasingly being targeted by cybercriminals.
Betfair said that customer information security has always been its core work, and it will continue to increase its investment in network security to ensure the stable operation of the platform and user trust.