logo

A tale of 2 casino ransomware attacks: One paid out, one did not

ID: 25e1a5e4-772f-539c-b7c2-5dffa0d8b169

STIX ID: report--25e1a5e4-772f-539c-b7c2-5dffa0d8b169

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2023-12-28

Date Updated: 2026-04-26

Author: Jessica Lyons Hardcastle

...
...

Two Las Vegas casino owners — Caesars Entertainment and MGM Resorts — were compromised by a cybercrime group (Scattered Spider) that used social-engineering/phishing against IT support, deployed ransomware, and exfiltrated customer data; Caesars reportedly negotiated and paid a multi-million dollar ransom and recovered more quickly, while MGM did not pay, suffered about $100M in losses and week-long outages, and had stolen data later leaked. The report examines factors influencing ransom payment decisions, legal/sanctions implications, and the need to disrupt the ransomware ecosystem.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.