casinotricks4.co.ukAll Guides

Cybersquatters Run Secret Online Casino on Cloned Chichester Baptist Church Site for Three Years

Written by Bianca Vogel · Mar 26, 2026

Cybersquatters Run Secret Online Casino on Cloned Chichester Baptist Church Site for Three Years

Exterior view of Chichester Baptist Church building in the UK, highlighting the site targeted by cybersquatters

What's interesting about the latest cyber twist in Chichester is how cybersquatters cloned the entire website of the local Baptist Church and turned it into a covert online casino, operating undetected for three full years until March 2026 when church officials finally stumbled upon the scheme; the revelation, detailed in a Telegraph report, exposes vulnerabilities that small organizations face daily, especially when domains lapse unnoticed.

Uncovering the Hidden Casino

Church members in Chichester first noticed oddities in early March 2026, when searches for their official site led to pages filled with slot machines, poker tables, and roulette wheels instead of sermons and service times; turns out, the original Chichester Baptist Church domain had been hijacked years earlier, cloned pixel-for-pixel to mimic the legitimate layout while layering casino games behind password-protected sections accessible only to invited players. Observers note that this setup tricked search engines and casual visitors alike, since the front end displayed familiar church branding, hymns, and event calendars without a hint of gambling activity.

Experts who've studied domain takeovers point out that the scammers registered a near-identical domain or exploited a lapsed registration, a tactic outlined in ICANN's Uniform Domain-Name Dispute-Resolution Policy, which handles such cybersquatting cases globally; here, the operation ran smoothly from around 2023 onward, pulling in bets from international users who believed they were on a licensed platform disguised as a innocuous church site. And while the church pushed out weekly bulletins through email and social media, unaware of the digital double life, the fake site raked in transactions via cryptocurrencies and e-wallets, evading basic oversight.

Now, investigators trace player logs showing thousands of sessions over those three years, with games mimicking popular titles from providers like NetEnt and Evolution, all hosted on offshore servers; the ball's in the church's court to reclaim the domain, but recovery efforts highlight how slowly these incidents surface, especially for volunteer-run groups without dedicated IT staff.

Cloning Tactics Employed by the Cybersquatters

Those behind the scheme mirrored the church's homepage down to the last photo of the congregation and Bible verses, then injected casino software through iframes and subdomains that loaded only after specific login credentials; this approach, common in phishing clones, kept the site's SEO intact so it ranked high in local searches for "Chichester Baptist Church," funneling traffic seamlessly. Data from similar cases reveals that such mirrors often use content management systems like WordPress duplicates, altered via plugins to hide gambling elements from bots and public views.

But here's the thing: the casino backend featured live dealer tables, progressive jackpots, and sports betting odds, complete with fake licensing badges from obscure jurisdictions; players deposited funds thinking they backed a legit operation, since the church aesthetic lent an air of trust, even as real bets flowed to anonymous wallets. Chichester Baptist Church staff later confirmed they hadn't checked domain renewals since 2022, a gap that let the hijackers pounce when the registration quietly expired; cybersecurity researchers emphasize that auto-renewal failures affect thousands of non-profits annually, turning sacred digital spaces into unintended gambling dens.

Take one parallel instance where experts analyzed cloned charity sites; they found identical methods, with operators using VPNs to mask locations, primarily from Eastern Europe and Southeast Asia, regions known for lax enforcement on unauthorized gaming platforms. In this Chichester case, server traces point to hosting in Cyprus and the Philippines, hubs for unregulated iGaming that skirt traditional oversight.

Screenshot mockup showing a cloned church website interface with hidden casino games layered beneath

Three Years of Unseen Operations

The secret casino hummed along for 36 months, processing deposits in Bitcoin, Ethereum, and fiat via processors like those tied to Curaçao licenses, though no official ties exist; visitors clicking through "donation" links on the cloned front—rebranded as "faith-based rewards"—landed in high-stakes lobbies offering blackjack, baccarat, and themed slots with church-inspired graphics like "Holy Rollers" reels. That's where the rubber meets the road for scammers, blending legitimacy with vice to build player retention without raising church-side alarms.

Church records show no complaints until a congregant wagered £500 in February 2026, only to question the "ministry" branding afterward; this prompted a deeper dive, revealing transaction volumes estimated in the low millions, funneled offshore before vanishing. And while the church site served its community offline through physical gatherings, the digital twin preyed on global gamblers, some of whom chased bonuses tied to "charity matches" that never materialized.

Church Response and Domain Recovery Efforts

Once alerted, Chichester Baptist Church leaders contacted domain registrar GoDaddy and Nominet—the .uk overseer—filing urgent takedown requests that halted the casino within days of the March 21, 2026, exposure; volunteers scrubbed the site, restored backups, and shifted to a new domain with two-factor authentication and monitoring tools. Figures from domain registries indicate such recoveries succeed 85% of the time when acted on swiftly, yet the three-year lapse underscores risks for under-resourced faith groups.

Local police in West Sussex launched inquiries alongside UK's National Cyber Security Centre, probing money trails that span continents; affected players, numbering in the hundreds per forensic logs, now seek refunds through chargeback channels, though crypto losses prove hardest to claw back. Observers who've tracked these hijackings note that churches, synagogues, and mosques represent 12% of cloned domains in recent reports, drawn for their clean reputations that boost conversion rates on illicit sites.

Implications for Digital Security in Non-Profits

This Chichester episode shines a light on how cybersquatters exploit expired domains, a vulnerability hitting 20% of small orgs yearly according to registrar data; non-profits often prioritize missions over tech upkeep, leaving sites ripe for takeover, especially when WHOIS privacy hides owner details. What's significant is the seamless integration of casino tech—HTML5 games, RNG certifications faked from Malta labs—that ran flawlessly, drawing repeat business until human error exposed it.

Yet, the writing's on the wall for better practices: experts recommend annual audits, DNSSEC implementation, and tools like Google Workspace alerts that flag anomalies early; in one study of 500 faith-based sites, researchers discovered 7% hosted malware unknowingly, mirroring this casino infiltration. And for the gambling angle, while offshore ops dodge licenses, traces link the scheme to networks busted in prior raids by Europol, showing patterns of religious site abuse for quick trust hacks.

People who've dealt with similar breaches often discover that insurance policies cover domain disputes up to £10,000, a lifeline Chichester might tap; community drives now fund their IT overhaul, turning a scandal into a cautionary upgrade.

Conclusion

So, the Chichester Baptist Church saga wraps with a reclaimed domain and lessons etched in code, reminding small outfits everywhere that digital vigilance pays dividends; as March 2026 fades, this story lingers as a stark example of how a three-year casino shadow can lurk behind familiar facades, urging proactive checks before the next clone spins up. With recovery complete and warnings issued across networks, the church resumes online outreach stronger, while scammers scatter—until the next lapse invites them back.