Recent findings from Check Point Research reveal that a Chinese-speaking cybercrime group, dubbed Gambling Goblin, has successfully compromised web servers belonging to Brazilian government and educational institutions. Since mid-2025, the group has been installing malicious Apache modules, exploiting these platforms to redirect legitimate traffic to illegitimate websites focused on online betting and gambling. This alarming tactic not only undermines the integrity of public sector websites but also poses significant risks to users who might unknowingly engage with these malicious links.
For businesses, particularly those in the public sector, this incident underscores the critical importance of robust cybersecurity measures. The exploitation of trusted government and educational platforms highlights the potential for reputational damage and loss of public trust. Organizations must prioritize the implementation of strong security protocols, including regular vulnerability assessments, updates to server configurations, and active monitoring of web traffic to detect unusual activities. This situation serves as a reminder that the evolving landscape of cyber threats necessitates a proactive approach to cybersecurity to protect both institutional integrity and user safety.
---
*Originally reported by [The Hacker News](https://thehackernews.com/2026/09/malicious-apache-modules-hijack.html)*