
A 68-year-old man has been jailed in the UK for more than six years for running an illegal IPTV (Internet Protocol Television) service that generated £980,812 ($1.3 million) over three years.
An investigation by the City of London Police’s Intellectual Property Crime Unit (PIPCU) found that Milan Ibrahim ran a “sophisticated operation” which provided illegal IPTV services to users in the UK and abroad.
According to the PIPCU, Ibrahim sold illegal broadcasts from major rights holders such as the BBC, ITV, Sky, the Premier League and the Motion Picture Association.
Police seized and shut down all the servers they found during the operation, cutting off the illegal streams that users of the IPTV service were receiving.
“The investigation revealed the business operated 80 servers from premises in Chorley and generated £980,812 over a three-year period,” London police said.
“During the enforcement activity, all 80 servers were seized and shut down, significantly disrupting the operation’s ability to provide illegal streaming services.”
Seizure of the servers may result in the identification of users of the Service who could pay fines or suffer other consequences for financing and engaging in copyright infringing activities.
Police say Ibrahim will also face proceedings under the Proceeds of Crime Act aimed at recovering the money generated by the service.
Stefan Sergot, the Premier League’s director of enforcement, called the enforcement operation “significant”, characterizing the seized IPTV service as “one of the UK’s most prominent and long-standing providers of pirated services”.
the UK government records show that Ibrahim was a director of CTU Systems, a now defunct company which marketed IPTV softwarebut authorities have not identified CTU Systems as connected to the illegal service prosecuted in this case.
BleepingComputer contacted the Federation Against Copyright Theft (FACT), who participated in the action, and PIPCU for more information on the illegal IPTV service and we will update this post with their response once we receive it.
Generic prevention scores can hide what happens after initial access. Once attackers use valid credentials, prevention plummets.
The 2026 Blue Report measures security techniques by techniques in 338 million simulations run in customer production environments.

