4 ms·
MGM has acknowledged it's an attack [1] and certain vegas gossip sites have stated that Caesars was hit last hit last week but was able to keep it better under
by plasticsoprano 3y ago
MGM has acknowledged it's an attack [1] and certain vegas gossip sites have stated that Caesars was hit last hit last week but was able to keep it better under wraps.
1. https://www.reviewjournal.com/business/casinos-gaming/mgm-resorts-cites-cybersecurity-issue-for-outages-2902751 https://www.reviewjournal.com/business/casinos-gaming/mgm-re...
- mickdarling 3y agoRight, they say almost exactly what I said above. "MGM Resorts recently identified a cybersecurity issue affecting some of the Company’s systems. Promptly after detecting the issue, we quickly began an investigation with assistance from leading external cybersecurity experts,” "We also notified law enforcement and took prompt action to protect our systems and data, including shutting down certain systems." The systems are down due to MGM shutting them down, not the active attack shutting things down.
- imglorp 3y agoWhile there's something to be said for ransomware targeting casinos, "because that's where the money is," that might also attract the wrong attention, and not all from the government. They might wish it was only from the government. https://www.politico.com/news/2022/01/14/russia-colonial-pipeline-arrest-527166 https://www.politico.com/news/2022/01/14/russia-colonial-pip...
- Karellen 3y agoI can imagine the galaxy-brain planning session where our perps are coming up with their next target. They rule out robbing international drug cartels and black-market arms dealers, because while those orgs do have a lot of cash on hand, they don't want to get on the wrong side of violent organised crime gangs. ...so they decide to hit casinos instead! expanding-brain-starfield.gif
- andy800 3y agoCasino-based attacks aren't really because the casino has a lot of money around. 1) they have large, very detailed databases with extensive customer records (photos of drivers licenses, for example) that can are desirable on black markets 2) easy attack vector -- heavily dependent on a variety of vendor software and systems that are way out of date, run by weak, underpaid and often uninformed IT staffs unaware of some basic security vulnerabilities 3) being customer-facing and highly-regulated, casino companies are typically heavily incented to simply pay the ransom rather than face regulatory scrutiny and consumer distrust (and to restore cash flow, and because the soft IT teams probably didnt make comprehensive backups...)