Bragg Gaming Group, one of the largest providers of online gaming technology, announced that it suffered a serious cyberattack on the morning of Saturday, August 16, 2025. The company detected unauthorized access to its infrastructure, which managed to exceed the security perimeter, immediately activating incident response protocols.

Bragg's internal network breach
According to initial analysis, cybercriminals gained unauthorized access to the company's internal computer environment. Although the incident was limited to the corporate IT network, investigations are ongoing to clarify the exact method of intrusion.
See also: Workday reveals it suffered a data breach
Bragg has already activated network segmentation protocols , enhanced data flow monitoring, and conducted extensive audits of critical infrastructure, such as the Bragg Hub platform and Player Account Management (PAM) systems . In addition, independent cyber experts are conducting vulnerability assessments and penetration tests.
What it means for customers
The company emphasizes that no player personal data or financial information has been compromised, thanks to encryption and access control mechanisms that prevented data from being extracted from the systems. All of Bragg’s iCasino and sports betting platforms continue to operate normally without any service interruption.
Strengthening measures and staff training
On high alert, the Security Operations Center has placed all endpoints and server clusters under surveillance. In addition, Bragg announced that it is implementing mandatory cybersecurity training for all staff, aiming to enhance preparedness against future threats.
See also: Universities: Cyberattacks and ways to protect yourself

The bigger picture
This incident highlights the challenges cybersecurity for companies operating in the online gambling industry, one of the most targeted industries worldwide. This sector is one of the most attractive targets for hackers, as it combines:
- Huge cash flows.
- Continuous 24/7 service availability.
- Sensitive personal data of players.
- Complex technological infrastructures with multiple access points.
Even a temporary outage or data leak can cause incalculable damage in terms of financial losses and reputation.
Ways to protect companies like Bragg Gaming Group
To protect themselves against such threats, companies in the industry should adopt a multi-layered security strategy (defense in depth), which includes:
- Zero Trust Architecture
- No user or device is considered trusted.
- Continuous verification of identity and rights.
- Network segmentation & isolation
- Separation of critical systems (e.g. RGS, PAM) from the rest of the corporate network.
- Limiting lateral movement of invaders.
- Advanced Threat Detection & Monitoring
- Use SIEM and EDR/XDR for real-time behavioral analysis.
- Continuous recording and evaluation of logs.
- Regular Penetration Tests & Red Team Exercises
- Simulation of real attacks.
- Identifying "blind spots" in defense.
- Enhanced third-party risk management
- Third-party software security assessment.
- Contracts with security and compliance clauses (PCI-DSS, ISO 27001, GDPR).
- Staff training in cybersecurity awareness
- Countering phishing, social engineering, and proper credential management.
- Simulated cyberattack scenarios.
- Backup Systems and Disaster Recovery
- Offline / immutable backups.
- Rapid recovery plan for continuity of service.
See also: Legal liability in the event of a cyberattack

The message to the industry
The cyberattack on Bragg is yet another wake-up call for the online gambling industry. As experts point out, it's not a question of if a company will be attacked but when – and the key lies in how prepared it is to respond.
Bragg appears to have responded quickly and limited the damage. However, this case highlights that cyber resilience should be a priority for any organization that handles critical data and financial transactions. Hackers are constantly evolving their tactics and discovering new ways to break into companies’ internal systems.
Source: cybersecuritynews.com
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
