Rivers Casino Des Plaines Customer Info Compromised in Cyberattack

Rivers Casino Des Plaines Customer Info Compromised in Cyberattack.

Costfoto / NurPhoto / Getty Images

Key Takeaways

, Illi., said Thursday that it suffered a cyberattack over the summer that compromised the private data of an undisclosed number of patrons and employees. While the attack occurred “on or around” August 12, it was only uncovered in early November, the casino said in a statement.

Rivers Des Plains, cyberattack, hackersRivers Casino in Des Plaines, above. The Rush Street-owned property said it had been breached by a cyberattack in August that compromised sensitive customer information. (Image: Journal and Topics)

Compromised information includes names, contact information such as phone numbers and email addresses, and driver s license and government ID numbers.

The Rush Street Gaming property warned that hackers may also have obtained a financial account, tax identification, Social Security, and passport numbers for a limited number of customers.

Passwords are particularly valuable to hackers who can sell them on mass to fraudsters via the dark web for use in “credential stuffing” schemes. This is where the fraudster uses stolen credentials to access accounts on different platforms where the user has the same password.

Who s Impacted 

Rivers declined to say how many customers the breach may have impacted. According to Illinois Gaming Board records, there were 273K visits to the casino in the month leading up to the attack and almost 300K bets placed at its sportsbook, with customers also affected.

The casino said it doesn t believe the issue affected customer passwords or credit card information.

“Casino Des Plaines utilizes robust security protocols.” the casino wrote in the statement. “Unfortunately, we recently discovered a data security incident. Upon learning of the incident, Rivers promptly took steps to contain the threat and secure our systems, avoiding any interruption to our operations or in the services we provide to our customers.”

It added that it had hired a specialist cybersecurity firm to investigate the breach.

Spate of Attacks

It’s unclear who was behind the attack, which is the latest in a spate of high-profile cybercrimes targeting casinos. In September, the systems of both and were breached by hackers who caused major disruption, particularly to MGM, which refused to pay a ransom.

Caesars regained access to its systems after paying around $15 million to restore normal services. MGM ultimately suppressed the threat after several days of disruption, resulting in an estimated $100 million worth of damage.

The attacks were attributed to a hacking group variously known as “Scattered Spider,” “Octo Tempest,” or “the Com,” which is currently being investigated by the FBI.

Earlier this week, several cybersecurity executives whose firms have been tracking Scattered Spider of a lack of arrests despite members of the collective being “known” to the agency.

Article Sources
Las Vegas Woman Arrested Again For Allegedly Drugging Man and Stealing Watch editorial policy.
  1. SkyCity Auckland First Major Casino Resort to Strip COVID-19 Safety Measures

Compare Accounts
×
California Men Arrested After Attempting to Rob Card Room Player
Provider
Name
Description
PointsBet-Univ. of Colorado Partnership Sparks Debate About Sportsbooks and College Sports  Atlantic City Once Again Important Talking Point for Democratic Nominee Hillary Clinton  Morgan Stanley Sees Bright Future for Macau Stocks, Mixed on Beijing Regulations  South Carolina Group Led By Former State Treasurer and Lawmaker Forms to Consider Legalizing Casinos  Culinary Union Holds Informational Picket at Strat, Sahara Casinos  Sphere Threat Prompts Dolan to End Oak View Agreement  Placing Sports Bets from Your Car Could Be Just a Voice Command Away  Las Vegas Adult Dancer, ‘Hazel,’ Allegedly Stole Rolex Watches  Las Vegas Adult Dancer, ‘Hazel,’ Allegedly Stole Rolex Watches  California Men Arrested After Attempting to Rob Card Room Player