{"id":53672,"date":"2023-09-14T20:47:03","date_gmt":"2023-09-14T20:47:03","guid":{"rendered":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/"},"modified":"2023-09-14T20:47:03","modified_gmt":"2023-09-14T20:47:03","slug":"caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/","title":{"rendered":"Caesars says cyber-crooks stole customer data as MGM casino outage drags on"},"content":{"rendered":"<p>Casino giant Caesars Entertainment has confirmed miscreants stole a database containing customer info, including driver license and social security numbers for a &#8220;significant number&#8221; of its loyalty program members, in a social engineering attack earlier this month.<\/p>\n<p>The admission comes as <a target=\"_blank\" href=\"https:\/\/www.theregister.com\/2023\/09\/11\/mgm_resorts_cybersecurity_incident\/\" rel=\"noopener\">MGM Resorts<\/a> enters its fourth day of inoperable IT systems and casinos following a &#8220;cybersecurity issue.&#8221; Internet crime gang Scattered Spider, understood to be responsible for that intrusion, reportedly bragged that all it took to break into the corporation&#8217;s networks was a ten-minute call with the help desk.<\/p>\n<p>It&#8217;s also reported the arachnid crew hit both Caesars and MGM Resorts, though reps for Scattered Spider, also known as 0ktapus, claimed they only hit MGM and had nothing to do with the Caesars raid.<\/p>\n<h3 class=\"crosshead\">Then fall Caesars<\/h3>\n<p>In an <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.sec.gov\/ix?doc=\/Archives\/edgar\/data\/0001590895\/000119312523235015\/d537840d8k.htm\">8-K form<\/a> submitted late last week to the SEC, America&#8217;s financial watchdog, Caesars \u2013 which owns more than 50 resorts and casinos in Las Vegas and 18 other US states \u2013 disclosed the theft of its customer database, which it blamed on &#8220;a social engineering attack on an outsourced IT support vendor.&#8221;&nbsp;<\/p>\n<p>Caesars declined to answer <em>The Register<\/em>&#8216;s questions. The digital break-in was discovered on September 7, according to its SEC filing. The crooks stole Caesars&#8217; loyalty program database, which was stuffed with people&#8217;s sensitive personal information.<\/p>\n<p>&#8220;We are still investigating the extent of any additional personal or otherwise sensitive information contained in the files acquired by the unauthorized actor,&#8221; Caesars told the SEC. &#8220;We have no evidence to date that any member passwords\/PINs, bank account information, or payment card information (PCI) were acquired by the unauthorized actor.&#8221;<\/p>\n<p>Upon noticing suspicious IT network activity, the entertainment goliath said it not only immediately launched a probe, it also hired &#8220;leading cybersecurity firms&#8221; to help with its incident response and remediation efforts, and notified law enforcement and state gaming regulators.<\/p>\n<div aria-hidden=\"true\" class=\"adun\" data-pos=\"top\" data-raptor=\"condor\" data-xsm=\",fluid,mpu,\" data-sm=\",fluid,mpu,\" data-md=\",fluid,mpu,\"> <noscript> <a href=\"https:\/\/pubads.g.doubleclick.net\/gampad\/jump?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0\" target=\"_blank\" rel=\"noopener\"> <img decoding=\"async\" src=\"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0\" alt> <\/a> <\/noscript> <\/div>\n<p>All of this sounds pretty routine, though there is another line in the SEC filing that seems to indicate extortion \u2014 and a payment made by Caesars to potentially stop the pain:<\/p>\n<p>That to us sounds like whoever broke into the IT systems made off with the data and wanted some kind of bung to keep the information private. <em>The Register<\/em> asked Caesars to clarify what specific steps were taken, among other questions about the fiasco: who is the unnamed IT outsourcer? Who was behind the break-in? Did those crooks demand a ransom and if so, how much, and was it paid?&nbsp;<\/p>\n<p>We have yet to hear back from the corporation, though we will update this story as soon as we do.<\/p>\n<h3 class=\"crosshead\">Extortion seems like a safe bet<\/h3>\n<p>Other media outlets are reporting that it was, in fact, an extortion attack.<\/p>\n<p>Vital Vegas earlier this week <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/VitalVegas\/status\/1701324536225136719\">whispered<\/a> about hearing &#8220;rumblings&#8221; that Caesars was trying to play down word of a cyberattack. <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.bloomberg.com\/news\/articles\/2023-09-13\/caesars-entertainment-paid-millions-in-ransom-in-recent-attack\">Bloomberg<\/a> on Wednesday reported the casino giant had paid &#8220;tens of millions of dollars to hackers&#8221; who broke in and stole company data.<\/p>\n<div aria-hidden=\"true\" class=\"adun\" data-pos=\"top\" data-raptor=\"falcon\" data-xmd=\",fluid,mpu,leaderboard,\" data-lg=\",fluid,mpu,leaderboard,\" data-xlg=\",fluid,billboard,superleaderboard,mpu,leaderboard,\" data-xxlg=\",fluid,billboard,superleaderboard,brandwidth,brandimpact,leaderboard,mpu,\"> <noscript> <a href=\"https:\/\/pubads.g.doubleclick.net\/gampad\/jump?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=4&amp;c=44ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0\" target=\"_blank\" rel=\"noopener\"> <img decoding=\"async\" src=\"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=4&amp;c=44ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D426raptor%3Dfalcon%26pos%3Dmid%26test%3D0\" alt> <\/a> <\/noscript> <\/div>\n<div class=\"adun_eagle_desktop_story_wrapper\">\n<div aria-hidden=\"true\" class=\"adun\" data-pos=\"mid\" data-raptor=\"eagle\" data-xxlg=\",mpu,dmpu,\"> <noscript> <a href=\"https:\/\/pubads.g.doubleclick.net\/gampad\/jump?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=3&amp;c=33ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0\" target=\"_blank\" rel=\"noopener\"> <img decoding=\"async\" src=\"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=3&amp;c=33ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0\" alt> <\/a> <\/noscript> <\/div>\n<\/p><\/div>\n<p>Vital Vegas <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.casino.org\/vitalvegas\/caesars-entertainment-paid-millions-to-hackers-now-look-like-geniuses\/\">updated<\/a> its coverage of the affair later that day to report Caesars paid $15 million to the extortionists, down from a $30 million demand, citing unnamed sources: &#8220;We are not making this up. Caesars talked them down like an episode of &#8216;Pawn Stars.'&#8221;<\/p>\n<p>Meanwhile, as the mass outage across MGM Resorts enters its fourth day, that Las Vegas casino and hotel behemoth issued a second statement about its ongoing &#8220;cybersecurity issue.&#8221;<\/p>\n<p>&#8220;We continue to work diligently to resolve our cybersecurity issue while addressing individual guest needs promptly,&#8221; it <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/MGMResortsIntl\/status\/1702290900217413783\">xeeted<\/a>. In response, hotel guests shared <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/LifeNLasVegas\/status\/1702043955196739613\">videos of empty casinos<\/a> and disconnected slot machines, and questioned how to <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/sydbern\/status\/1702311306475561377\">cancel reservations<\/a> and get a refund with the resorts&#8217; websites, email, and apps still not working.<\/p>\n<p>There is one benefit: <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/JacobsVegasLife\/status\/1702156532149084645\">free parking<\/a> at MGM Resorts properties.<\/p>\n<h3 class=\"crosshead\">Scattered Spider claims it wrecked MGM Resorts<\/h3>\n<p>Scattered Spider \u2013 a US-UK-based <a target=\"_blank\" href=\"https:\/\/www.theregister.com\/2023\/08\/24\/two_teens_lapsus_jury\/\" rel=\"noopener\">Lapsus$-like gang<\/a> that <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.crowdstrike.com\/blog\/scattered-spider-attempts-to-avoid-detection-with-bring-your-own-vulnerable-driver-tactic\/\">specializes<\/a> in social engineering attacks and is affiliated with the ALPHV ransomware operators \u2013 is said to be behind the MGM Resorts debacle. It&#8217;s claimed all it took for the miscreants to infiltrate MGM Resorts was finding an employee on LinkedIn, then calling a help desk presumably to impersonate that staffer and gain access, or something like that.<\/p>\n<p>&#8220;A company valued at $33,900,000,000 was defeated by a ten-minute conversation,&#8221; as malware analysis nerve center <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/vxunderground\/status\/1701758864390050145?s=46&amp;t=mOWjpAvBR_EgMxB3MbSPxw\">VX-Underground<\/a> put it.<\/p>\n<div aria-hidden=\"true\" class=\"adun\" data-pos=\"top\" data-raptor=\"falcon\" data-xsm=\",fluid,mpu,\" data-sm=\",fluid,mpu,\" data-md=\",fluid,mpu,\"> <noscript> <a href=\"https:\/\/pubads.g.doubleclick.net\/gampad\/jump?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=4&amp;c=44ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0\" target=\"_blank\" rel=\"noopener\"> <img decoding=\"async\" src=\"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=4&amp;c=44ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D426raptor%3Dfalcon%26pos%3Dmid%26test%3D0\" alt> <\/a> <\/noscript> <\/div>\n<p>In an interesting twist, and according to a <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.ft.com\/content\/a25d2897-b0ce-4ba7-92ed-ff5df09d1b47\">Financial Times<\/a> report, a spokesperson for the spider-themed crew claimed it had hoped to infect slot machine software at MGM Resort properties to rig the equipment, and then &#8220;recruit mules to gamble and milk the machines&#8221; of payouts.<\/p>\n<p>When that wasn&#8217;t possible, the gang returned to its tried and true method \u2014 a simple phone call to hoodwink some hapless employee \u2014 that worked in the past to compromise <a target=\"_blank\" href=\"https:\/\/www.theregister.com\/2023\/09\/01\/okta_scattered_spider\/\" rel=\"noopener\">Okta<\/a> and other <a target=\"_blank\" href=\"https:\/\/www.theregister.com\/2022\/08\/25\/twilio_cloudflare_oktapus_phishing\/\" rel=\"noopener\">high-profile victims<\/a>.<\/p>\n<p>That said, members of the ALPHV-Spider nexus just now <a target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/vxunderground\/status\/1702418375748538845\">denied<\/a> going after the slot machines. &#8220;Doing so would not to be to our benefit and would decrease the chances of any sort of deal,&#8221; they reportedly told VX-Underground.<\/p>\n<div aria-hidden=\"true\" class=\"adun\" id=\"story_eagle_xsm_sm_md_xmd_lg_xlg\" data-pos=\"mid\" data-raptor=\"eagle\" data-xsm=\",mpu,dmpu,\" data-sm=\",mpu,dmpu,\" data-md=\",mpu,dmpu,\" data-xmd=\",mpu,dmpu,\" data-lg=\",mpu,dmpu,\" data-xlg=\",mpu,dmpu,\"> <noscript> <a href=\"https:\/\/pubads.g.doubleclick.net\/gampad\/jump?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=3&amp;c=33ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0\" target=\"_blank\" rel=\"noopener\"> <img decoding=\"async\" src=\"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=3&amp;c=33ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0\" alt> <\/a> <\/noscript> <\/div>\n<p>MGM Resorts declined to answer <em>The Register<\/em>&#8216;s questions about the security breach. \u00ae<\/p>\n<p> READ MORE <a href=\"https:\/\/go.theregister.com\/feed\/www.theregister.com\/2023\/09\/14\/caesars_mgm_hacks\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Zero-days are so 2022. Why not just social engineer the help desk? Casino giant Caesars Entertainment has confirmed miscreants stole a database containing customer info, including driver license and social security numbers for a &#8220;significant number&#8221; of its loyalty program members, in a social engineering attack earlier this month.\u2026 READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[63],"tags":[],"class_list":["post-53672","post","type-post","status-publish","format-standard","hentry","category-the-register"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Caesars says cyber-crooks stole customer data as MGM casino outage drags on 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Caesars says cyber-crooks stole customer data as MGM casino outage drags on 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2023-09-14T20:47:03+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Caesars says cyber-crooks stole customer data as MGM casino outage drags on\",\"datePublished\":\"2023-09-14T20:47:03+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/\"},\"wordCount\":863,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/pubads.g.doubleclick.net\\\/gampad\\\/ad?co=1&amp;iu=\\\/6978\\\/reg_security\\\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0\",\"articleSection\":[\"The Register\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/\",\"name\":\"Caesars says cyber-crooks stole customer data as MGM casino outage drags on 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/pubads.g.doubleclick.net\\\/gampad\\\/ad?co=1&amp;iu=\\\/6978\\\/reg_security\\\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0\",\"datePublished\":\"2023-09-14T20:47:03+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/#primaryimage\",\"url\":\"https:\\\/\\\/pubads.g.doubleclick.net\\\/gampad\\\/ad?co=1&amp;iu=\\\/6978\\\/reg_security\\\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0\",\"contentUrl\":\"https:\\\/\\\/pubads.g.doubleclick.net\\\/gampad\\\/ad?co=1&amp;iu=\\\/6978\\\/reg_security\\\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Caesars says cyber-crooks stole customer data as MGM casino outage drags on\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Caesars says cyber-crooks stole customer data as MGM casino outage drags on 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/","og_locale":"en_US","og_type":"article","og_title":"Caesars says cyber-crooks stole customer data as MGM casino outage drags on 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2023-09-14T20:47:03+00:00","og_image":[{"url":"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Caesars says cyber-crooks stole customer data as MGM casino outage drags on","datePublished":"2023-09-14T20:47:03+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/"},"wordCount":863,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/#primaryimage"},"thumbnailUrl":"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0","articleSection":["The Register"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/","url":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/","name":"Caesars says cyber-crooks stole customer data as MGM casino outage drags on 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/#primaryimage"},"thumbnailUrl":"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0","datePublished":"2023-09-14T20:47:03+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/#primaryimage","url":"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0","contentUrl":"https:\/\/pubads.g.doubleclick.net\/gampad\/ad?co=1&amp;iu=\/6978\/reg_security\/cybercrime&amp;sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&amp;tile=2&amp;c=2ZQODCSxDPjC5OQTNmMnf8wAAAEs&amp;t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/caesars-says-cyber-crooks-stole-customer-data-as-mgm-casino-outage-drags-on\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Caesars says cyber-crooks stole customer data as MGM casino outage drags on"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/53672","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=53672"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/53672\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=53672"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=53672"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=53672"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}