Houston Chronicle

MGM’s computer system targeted by cyberattac­k

- By Katrina Manson and Jamie Tarabay

Many of MGM Resorts Internatio­nal’s websites remained down on Tuesday after a cyberattac­k that began two days earlier.

MGM Resorts, which is the largest casino operator on the Las Vegas Strip, disclosed the breach on Monday. The company took “prompt action to protect our systems and data, including shutting down certain systems,” it said in a statement posted on social media.

A message on one of MGM’s websites Tuesday said the site “is currently unavailabl­e.” The FBI in Las Vegas is aware of the incident and working with MGM Resorts, according to a spokespers­on.

A MGM spokespers­on said the attack started Sunday night and affected properties companywid­e, with some slot machines taken offline and staff operating in “manual mode.”

MGM isn’t the first casino and resort to be targeted by hackers. In 2014, Iran waged a cyberattac­k against Las Vegas Sands Corp. after its chief executive officer and majority owner at the time, Sheldon Adelson, took an aggressive stance in a speech about the country’s nuclear program. The FBI has warned of the rise of threats against both physical and online casinos.

In an emailed statement on Monday, the company said its casino gaming floors were “operationa­l” and said it was working to resolve the outages.

The Las Vegas-based company said it has notified law enforcemen­t and began an investigat­ion with the help of external cybersecur­ity experts.

The FBI in Las Vegas didn’t respond to an email seeking comment.

Shares of MGM Resorts fell less than 1%, to $42.45, just after noon in New York on Tuesday.

It wasn’t immediatel­y clear who was behind the attack, and many details of the breach weren’t known.

Systems down

A receptioni­st who answered the phone this week at Mandalay Bay, an MGM property in Las Vegas that hosts the annual Black Hat cybersecur­ity conference, said guests had been unable to check in for a short time earlier in the day because the hotel couldn’t get into its system. They were now able to check in, said the employee, who declined to provide his name.

Several accounts on the social media platform X provided further details of the fallout from the attack, though the reports couldn’t immediatel­y be substantia­ted. One, attributed to John Brennan at the handle @qpr01, said he was in the Borgata casino. “All computer systems are down. Slots will not accept tickets, and anyone trying to cash out is getting the Handpay message regardless of amount,” he said in his post on X.

A receptioni­st who answered the phone at the Borgata confirmed his account, saying she was told when she got into work at 4 p.m. Monday that the office internet had gone down around four hours earlier.

“The system is still down,” she said on Monday evening, adding that slot machines were only taking cash as a result. She said most guests were understand­ing but that “a couple are angry.”

First clue

Keith Miller, who is from New York City, said the first clue that there was a problem happened on Sunday, when he and his wife used the MGM app for precheck-in. Normally, he said, they would receive a digital key, but that didn’t happen, so they checked in manually when they arrived in Atlantic City.

The next day, Starbucks and other food establishm­ents wouldn’t accept credit cards, and slot machines wouldn’t take pay vouchers, which they spit out to winners to play in other machines or cash out at the window, he said. Casino employees were handwritin­g vouchers at slot machines, creating long lines at the cashier’s window, he said.

Miller said they had checked in under his name on Sunday and went to switch to check in again on Monday under his wife’s name, but temporaril­y couldn’t because the systems were down. They finally got into their room about 4:30 p.m. and plan to stay three more nights.

“We haven’t seen any charges on our credit card yet,” he said. “I’m assuming we are going to be able to stay.”

Hacking risks

MGM Resorts was the victim of a July 2019 data breach that exposed the personal informatio­n of as many as 10.6 million customers.

Earlier this month, the FBI said a North Korean outfit known as Lazarus Group had hacked Stake.com, an online casino and betting platform, stealing $41 million in virtual currency.

The Nevada Gaming Commission, which regulates the casino industry in the state, this year introduced new cybersecur­ity regulation­s that require casinos to evaluate hacking risks and protect informatio­n systems. The aim was to set forth the importance for gaming operators to take necessary steps to protect their informatio­n systems, the commission said.

Casinos must also inform the Nevada Gaming Control Board of a cyberattac­k no later than 72 hours of becoming aware of it.

 ?? Daniel Pearson/Las Vegas Review-Journal ?? Some slot machines and kiosks at Aria Resort and Casino in Las Vegas were shut down after MGM Resorts Internatio­nal suffered a cyberattac­k.
Daniel Pearson/Las Vegas Review-Journal Some slot machines and kiosks at Aria Resort and Casino in Las Vegas were shut down after MGM Resorts Internatio­nal suffered a cyberattac­k.

Newspapers in English

Newspapers from United States