메뉴
BL
Wired AI 37일 전

월드컵 사기 수법, AI로 인해 더욱 교묘해지다

IMP
7/10
핵심 요약

2026년 북중미 월드컵을 겨냥한 사이버 범죄가 AI 기술을 악용하여 그 어느 때보다 정교해지고 있습니다. 범죄자들은 딥페이크와 대량으로 생성된 피싱 이메일, 정교한 가짜 웹사이트를 통해 티켓, 숙박, 비자 등과 관련된 사기를 저지르고 있습니다. AI가 공격자의 효율성을 극대화하여 대규모 피해가 우려되는 가운데, 보안 업계는 AI를 방어 도구로 활용하여 이에 대응해야 하는 과제를 안게 되었습니다.

번역된 본문

월드컵 티켓을 구했습니다. 받은편지함에 QR 코드, 정교한 브랜딩, 그리고 진짜 같아 보이는 확인 이메일과 함께 티켓이 도착했습니다. 안타깝게도, 이것은 가짜였습니다.

수년 동안 사기를 식별하는 것은 비교적 쉬웠습니다. 의심스러운 이메일 주소, 어색한 영어 문법 또는 명백한 오탈자만으로도 충분히 경계심을 가질 수 있었습니다. 하지만 2026년 FIFA 월드컵에서는 이러한 과거의 경고 징후들이 사라지고 있습니다. AI가 생성한 웹사이트, 딥페이크(Deepfake) 영상, 조작된 오디오, 그리고 교묘한 피싱(Phishing) 캠페인으로 인해 범죄자들이 합법적인 조직을 사칭하는 것이 그 어느 때보다 쉬워졌기 때문입니다.

미국, 캐나다, 멕시코가 3개국이 공동으로 개최하고 16개 도시에서 104경기가 열리는 역대 최대 규모의 이번 월드컵은 사이버 범죄자들에게 전례 없는 기회를 창출했습니다. 2026년 1월부터 5월 사이에 13,000개 이상의 FIFA 테마 도메인이 등록되었습니다. 사이버 보안 업체인 TrendAI의 지역 총괄 이사인 Tarek Jammoul에 따르면, 단 한 경기도 치러지기 전인 5월 초를 기준으로 이미 약 41개 중 1개꼴로 의심스럽거나 악성으로 판명났습니다.

FIFA는 600만 명 이상의 팬들이 경기를 관람하기 위해 경기장을 채울 것으로 추산하고 있습니다. 실제로 티켓 판매가 시작된 지 첫 15일 만에 1억 5,000만 장 이상의 티켓 요청이 쏟아졌으며, 이로 인해 이번 대회는 이전 대회들과 비교해 약 30배 가까이 초과 수요가 발생했습니다.

사이버 보안 및 블록체인 기업인 Naoris Protocol의 최고 전략 책임자(CSO)인 David Holtzman은 "월드컵은 사기꾼들에게 완벽한 기회이며, 이보다 더 좋은 기회를 만들어낼 수는 없을 것"이라고 말합니다. "이것은 축구입니다. 사람들은 즐겁고 무해하다고 느끼기 때문에 경계심이 느슨해집니다."

지난 10여 년 동안 피싱은 가장 만연한 형태의 온라인 사기로 자리 잡았습니다. 검색 엔진, 소셜 미디어 및 기타 온라인 출처에서 수집한 정보를 활용해 더욱 설득력 있는 메시지를 만들어내는 더 정교한 형태의 표적형 피싱인 스피어 피싱(Spear phishing)은 올해 월드컵 팬들에게 훨씬 더 큰 위협이 되고 있습니다.

이러한 사기의 규모는 엄청납니다. 사이버 보안 업체인 Group-IB가 주도한 연구에 따르면, FIFA의 공식 웹사이트를 사칭한 4,300개 이상의 사기성 도메인과 함께 대회에 앞서 6개의 별도 사기 그룹 및 4명의 위협 행위자가 활동하고 있는 것으로 확인되었습니다. 일반적인 사기 수법으로는 가짜 티켓 판매, 사기성 이민 또는 비자 관련 서비스, 기만적인 숙박 제안 등이 있습니다. 또한 팬들은 가짜 굿즈 및 공식 대회 브랜딩을 사칭하는 웹사이트에도 주의를 기울여야 합니다.

TrendAI의 Jammoul은 "2022년 FIFA 월드컵 당시 카타르 대회 조직위원회(SCDL2022)를 지원하면서 우리가 발견한 위협은 심각했지만 여전히 비교적 쉽게 알아볼 수 있었습니다. 가짜 티켓팅 페이지, 무료 모바일 데이터를 제공하는 설문조사 사기, 라이브 방송을 약속하는 악성 안드로이드 앱 등이었습니다."라고 말합니다.

사기 수법 자체는 크게 바뀌지 않았습니다. 달라진 것은 그 뒤에 있는 기술입니다. Jammoul은 "2022년 카타르 대회에서 우리는 가짜 스트리밍 도메인, 데이터를 노리는 설문조사 사기, 축구 선수들의 초상화를 이용한 암호화폐(Crypto) 사기를 보았습니다. 이와 동일한 범주의 사기가 지금 다시 등장하고 있지만, 단지 규모가 더 크고 AI로 더 정교해졌을 뿐입니다."라고 설명합니다.

사기꾼들도 AI를 사용합니다.

Naoris Protocol의 Holtzman은 "지난 2년 동안 사기가 천문학적으로 증가했으며, AI가 그 큰 이유 중 하나입니다."라고 말합니다. 전문가들에 따르면, AI가 완전히 새로운 공격 방식을 발명하는 것은 아니지만, 공격자들이 예전보다 훨씬 더 효율적이게 만들고 있습니다. 대규모로 개인화되고 전문적으로 보이는 이메일을 생성하고, 공격자가 설득력 있는 가짜 웹사이트를 만들 수 있도록 도움으로써 AI는 위협 환경을 극적으로 확장하고 있습니다.

동시에 AI는 사이버 보안 업계에서 가장 강력한 방어 도구 중 하나가 되고 있습니다. 방대한 양의 데이터를 분석하고 비정상적인 패턴을 감지함으로써 의심스러운 도메인을 식별하고 새롭게 떠오르는 위협을 예측하는 데 도움을 줄 수 있습니다. 하지만 기술만으로는 충분하지 않을 수 있습니다. 기업들은 [이러한 위협에 선제적으로 대응해야 합니다.]

원문 보기
원문 보기 (영어)
Comment Loader Save Story Save this story Comment Loader Save Story Save this story You got a World Cup ticket. It arrived in your inbox with a QR code, professional branding, and a confirmation email that looked like the real thing. Unfortunately, it wasn’t. For years, spotting a scam was relatively simple. A suspicious email address, broken English, or an obvious typo were often enough to raise suspicion. But at the 2026 FIFA World Cup , those old warning signs are disappearing. AI-generated websites, deepfake videos , fabricated audio, and convincing phishing campaigns are making it easier than ever for criminals to impersonate legitimate organizations. With the United States, Canada, and Mexico cohosting 104 matches across 16 cities, the largest World Cup in history has created an unprecedented opportunity for cybercriminals. More than 13,000 FIFA-themed domains were registered between January and May 2026. By early May, roughly one in 41 had already been identified as suspicious or malicious—before a single match had been played, according to Tarek Jammoul, regional managing director at cybersecurity firm TrendAI. FIFA estimates that more than 6 million fans will fill stadiums to watch the tournament. In fact, more than 150 million tickets were requested within the first 15 days of the sales window alone, making this edition approximately 30 times oversubscribed compared to previous tournaments. “The World Cup is the perfect opportunity for scammers—you couldn’t create a better one,” says David Holtzman, chief strategy officer at Naoris Protocol, a cybersecurity and blockchain company. “This is soccer. It feels fun and harmless, which lowers people’s defenses.” For more than a decade, phishing has emerged as the most prevalent type of online scams. Spear phishing—a more targeted form of phishing in which attackers use information gathered from search engines, social media, and other online sources to create more convincing messages—presents an even bigger threat for World Cup fans this year. The scale of the operation is enormous. Research led by cybersecurity firm Group-IB identified more than 4,300 fraudulent domains impersonating FIFA’s official web presence, alongside six parallel fraud schemes and four independent threat actors operating ahead of the tournament. Common scams include fake ticket sales, fraudulent immigration or visa-related services, and misleading accommodation offers. Fans are also warned to look out for counterfeit merchandise and websites impersonating official tournament branding. “When we supported the Qatar Supreme Committee for Delivery & Legacy (SCDL2022) [at the 2022 FIFA World Cup], the threats we helped identify were serious but still relatively recognizable—fake ticketing pages, survey scams offering free mobile data, and a malicious Android app promising live broadcasts, among others,” says TrendAI's Jammoul. The scams themselves have not changed dramatically. The difference is the technology behind them. “At Qatar 2022 , we saw fake streaming domains, data-bait survey scams, and crypto schemes using footballers’ likenesses. Those same categories are staging again now, only larger and more AI-polished,” Jammoul says. The Scammers Are Using AI Too “There’s been an astronomical increase in scams over the past two years, and AI is a big reason why,” says Holtzman, of Naoris Protocol. According to experts, AI isn’t inventing entirely new attack methods—it’s making attackers far more efficient than they were before. By generating highly personalized, professional-looking emails at massive scale and helping attackers create convincing fake websites, AI is dramatically expanding the threat landscape. At the same time, AI is also becoming one of the cybersecurity industry’s most powerful defensive tools. By analyzing vast amounts of data and detecting unusual patterns, it can help identify suspicious domains and anticipate emerging threats. But technology alone may not be enough. Companies are increasingly relying on collaboration between platforms, cybersecurity firms, and law enforcement to track potential threats. Meta, for example, says it has worked through initiatives such as the Global Signal Exchange (GSE) and Fraud Intelligence Reciprocal Exchange (FIRE) to identify and disrupt coordinated scams targeting users. “Through collaboration with Visa via the GSE, we helped identify and take action against a network on Facebook that was using spoofed branding and promoting fake offers designed to mislead people into sharing personal or financial information,” says Basma Ammari, director of public policy MENA at Meta. “We can predict what future attacks may look like by using the same technology attackers are using—but for defense,” says Kristopher Russo, a principal threat researcher at Palo Alto Networks' cybersecurity wing, Unit 42. But even as AI becomes a powerful tool for cybersecurity companies, it may not be enough to eliminate the threat. “What consumers need to understand is that many of the old ways of identifying scams simply aren’t as reliable any more,” Russo says, adding that fans should beware of newer tactics, such as QR code scams , where attackers place malicious codes over legitimate ones in bars, restaurants, and other public venues. This story originally appeared in WIRED Middle East .