The cyber intelligence firm based in Bengaluru has discovered over 1200 domains actively marketing illegal betting platforms throughout IPL 2026.
One of the key findings from the research is that CloudSEK gained access to the administrative panel of a betting platform that was managing more than 25 websites with a unified backend system.
The report indicates that over 9300 withdrawal requests made between May 2025 and May 2026 were systematically denied by operators on this network alone, resulting in estimated losses for users around ₹4.65 crore.
This denial was reported to be intentional and executed manually by agents overseeing the platforms.
Additionally, CloudSEK noted another backend interface that exposed a network of business-registered bank accounts purportedly being utilized as money mule accounts, which transfer user deposits while hiding the identities of the platform operators.
The report emphasized the rising use of AI-generated deepfake videos featuring Indian cricketers and digital influencers, falsely promoting betting platforms and prediction channels.
These videos are primarily spread through Instagram reels and Telegram to entice users into joining tipster groups and betting platforms.
Researchers also uncovered multiple compromised Indian government websites that had malicious backlinks redirecting users to illegal betting sites.
According to CloudSEK, attackers leveraged the trust and visibility associated with government domains to enhance the online discoverability of betting websites.
The company stated that relevant stakeholders were notified as part of its responsible disclosure protocol.
The report further outlined a broader ecosystem supporting these activities, consisting of black hat SEO networks, bulk SMS service providers, lead generation initiatives, and fraudulent loan applications targeting users following betting losses.
CloudSEK highlighted that such loan applications access contacts, photographs, and call logs, allegedly using this information for intimidation and harassment.
“What we are documenting is more than just opportunistic scams. It represents a structured, seasonal criminal industry. The use of AI deepfakes to create fabricated celebrity endorsements and the mass rejection of withdrawal requests signify a notable escalation in both complexity and audacity. As this ecosystem becomes increasingly sophisticated, our collective awareness and response must also evolve,” stated Sourajeet Majumder, a researcher at CloudSEK, about the scale and sophistication of the networks identified during the investigation.