Mobile Gambling - Sportsbooks Face Growing Fraud

The sports betting industry has seen rapid digitalisation as punters increasingly use mobile devices as their go-to method of betting. However, their convenience, especially in live betting scenarios, exposes the industry to significant fraudulent activities.

Mobile betting remains the dominant method of online gambling in the UK. This is particularly true for younger people, with three quarters of 18-34 year old online gamblers using a smartphone to gamble compared to only 14% of those aged 65 and over (according to the The Gambling Commission.)

This large audience makes it more likely that fraudsters will target sportsbooks, making it crucial for them to have a strategy in place for protecting bettors from fraud.

Non-genuine engagement and fraudulent activity is happening completely undetected, siphoning away campaign margins from sportsbooks and hindering growth.  Guarding against this fraud not only ensures campaigns reach their maximum potential, but also helps protect brand reputation. By taking a proactive stance, sportsbooks can prevent further funds from flowing through to fraud.

Mounting Digital Threats

The mobile betting market is set to expand considerably over the next few years, with Market Research Future estimating the market size will reach $173.87 billion in 2032. This growth will further incentivise fraudsters to target the industry.

These fraudsters use invalid traffic (IVT) to exploit sportsbooks’ advertising campaigns with concerning levels of success. IVT consists of any activity originating from sources lacking genuine user interest. This includes ad fraud carried out by threat actors, typically by using bots. This adversely affects sportsbooks by artificially inflating impressions, so mobile advertising campaigns appear to be performing much better than they actually are. Not only does this waste ad spend for Sportsbooks, it also misleads them with fundamentally flawed campaign data on which they make future ad spend decisions. 

Artificial Intelligence (AI) powered bots are also used by fraudsters regularly to create and carry out frequent attacks. These bots create masses of fake accounts, inflating campaign data and abusing sportsbook’s promotions. This significantly drains campaign resources, and our research shows on average around 5-7% of sports betting campaigns are affected.

Conventional anti-fraud tools deployed on mobiles don’t operate at the impression or click level, and therefore fail to identify IVT, leaving sportsbooks vulnerable to threats.

Non-genuine engagement from returning users also poses a challenge for sportsbooks, as loyal customers unintentionally drive-up costs. When these users attempt to navigate back to a website, they can end up clicking on paid brand advertisements. This inflates customer acquisition costs (CACs), and as these existing users won't generate new conversions, the sportsbook faces a loss. Without a strategy to manage their traffic and control non-genuine engagement, sportsbooks will continue to be vulnerable to fraud and optimising their campaign value will be even more difficult.

Being Proactive In The Fight Against Fraud

To adapt to an evolving market, sportsbooks must embrace mobile betting. As most anti-fraud tools on mobiles lack the ability to identify more sophisticated threat methods, it’s crucial to develop a strategy to augment this vulnerability. This way sportsbooks can then reap the benefits of the mobile betting industry while protecting themselves and their users.

Here are some of the steps sportsbooks can take to mitigate campaign losses:

Traffic Monitoring:  The biggest advantage fraudsters leverage is IVT’s ability to pass through systems unnoticed. It’s possible to circumvent this by regularly monitoring traffic. This provides valuable insights into campaign data, and sportsbooks can discover any indicators that fraudulent activity is occurring. This can then be swiftly dealt with and the threat to margins will be removed.

Install an Ad-Verification Platform:  Bots can be deployed in overwhelming numbers, making it increasingly challenging for teams to effectively monitor their traffic. To ensure fraudulent traffic doesn’t slip through the cracks, an ad-verification platform can be utilised to boost operational efficiency. These platforms can determine if traffic is legitimate by identifying its source in real time. Suspicious traffic can then be blocked, mitigating any threat to budgets.

Set Custom Verification Rules:  To control the number of times a user interacts with a campaign, sportsbooks can set custom verification rules. This limits the number of times a particular user can click on an ad as once they pass the set threshold, they’ll no longer see the advertisement. This prevents bots or other non-genuine forms of engagement from repeatedly attempting to engage with an ad. The result is significantly reduced cost-per-click (CPC) rates and budgets protected from bot spam.

Staying Ahead Of Fraudsters

As the digital landscape continues to develop, fraud tactics are evolving, becoming increasingly complex to both identify and mitigate. If sportsbooks want to successfully reap the benefits of a booming mobile betting market, they have to ensure they’ve taken the right steps to protect themselves first.

Monitoring and verifying traffic can help prevent fraudulent activity from passing through systems and impacting budgets. With full transparency into their data, sportsbooks can make sure they are the only ones that get to enjoy their margins.

Elie Shuggi is CPO at  TrafficGuard

Image: Ideogram

You Might Also Read: 

Open Banking, Security, APIs & Mobile Apps:

DIRECTORY OF SUPPLIERS - Fraud Detection & Prevention:

__________________________________________________________________________________________

If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

 

« LockBit Resurrection
Stolen NHS Data Published On The Dark Web »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

North Infosec Testing (North IT)

North Infosec Testing (North IT)

North IT (North Infosec Testing) are an award-winning provider of web, software, and application penetration testing.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Cofense

Cofense

Cofense (formerly PhishMe) is a leading provider of human-driven phishing defense solutions.

National Institute of Information and Communications Technology (NICT) - Japan

National Institute of Information and Communications Technology (NICT) - Japan

NICT is Japan’s sole National Research and Development Agency specializing in the field of information and communications technology.

IQ Solutions

IQ Solutions

IQ Solutions is a Digital Integrator and an ICT Services Provider, focusing on innovative Cyber Secured ICT managed solutions tailored to the needs of the Maritime Industry.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Solidified

Solidified

Solidified is the largest audit platform for smart contracts. Our community has the highest concentration of top Blockchain security specialists and best-in-class code auditors.

Ukrainian Academy of Cyber Security (UACS)

Ukrainian Academy of Cyber Security (UACS)

UACS is a professional non-profit public organization established to promote the development of an extensive network and ecosystem of education and training in the field of cyber security.

SkyePoint Decisions

SkyePoint Decisions

SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider.

Cyrebro

Cyrebro

CYREBRO is your online cybersecurity central command managed SOC that integrates all your security events with strategic monitoring, proactive threat intelligence, and rapid incident response.

SecureTeam

SecureTeam

SecureTeam are a UK-based information security practice, specialising in all areas of cybersecurity.

QEDIT

QEDIT

QEDIT is leading the standardization of Zero-Knowledge Proofs through the ZKProof.org Workshops, and builds production-grade ZKP systems for blockchain.

Google Safety Engineering Center (GSEC)

Google Safety Engineering Center (GSEC)

GSEC Málaga is an international cybersecurity hub where Google experts work to understand the cyber threat landscape and to create tools that keep users around the world safer online.

Anzen Technology Systems

Anzen Technology Systems

Anzen create software solutions which allows organisations to utilize the public cloud for sensitive or classified information, whilst increasing data security and retaining data sovereignty.

Nihka Technology Group

Nihka Technology Group

Nihka offers full end-to-end ICT solutions from business optimisation, data centre modernisation, cloud connection and management, and ICT security.

Rebellion Defense

Rebellion Defense

Rebellion Defense is a technology company developing advanced software to ensure mission-critical organizations stay ahead of emerging threats.

Invisinet Technologies

Invisinet Technologies

Invisinet is a cybersecurity technology company specializing in innovative solutions that protect network infrastructure and critical assets from advanced threats.

RedArx Cyber Group

RedArx Cyber Group

At RedArx Cyber Group, our vision is to empower businesses with cutting-edge, proactive security solutions that safeguard their digital landscapes.