HackingData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Midwest Gaming & Entertainment, LLC
bd_001623e5cfc427a5 · schema v1 · pii pii-v1
Full breach record for Midwest Gaming & Entertainment, LLC →Midwest Gaming & Entertainment, LLC (d/b/a Rivers Casino Des Plaines) reported unauthorized access to its network on or around August 12, 2023. The incident was discovered on November 2, 2023. Files containing personal information of team members, customers, and online sportsbook customers may have been accessed or removed. The company engaged third-party cybersecurity support and law enforcement. No evidence of financial fraud or identity theft was found. Complimentary credit monitoring was offered.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_8564ee16c81511efMaine State AGfiled 2023-11-22Verified
- bd_f8f75959de3a4e4bMontana State AGfiled 2023-11-22Verified
- bd_26609e321a0afb25Delaware State AGfiled 2023-11-20(2d gap)Candidate
- bd_27b3111fb388bae2New Hampshire State AGfiled 2023-12-01(9d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 21d gap
- bd_d0b58bdac38de665Washington State AGfiled 2023-12-04(12d gap)Verified
- bd_f01528a86e963893Oregon State AGfiled 2023-12-13(21d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-576965
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 22, 2023
- Raw hash
- 6f7441bca0f1b66ad07e2319e62df3b4e6782eeb9da795b84a963e6ba2817a5a
Reporting entity
- Name
- Midwest Gaming & Entertainment, LLCnorm: midwest gaming entertainment
Victim entity
- Name
- Midwest Gaming & Entertainment, LLCnorm: midwest gaming entertainment
Incident
- Discovered
- Nov 2, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Consulted with law enforcement
Compliance
- Time to disclose
- 20 days(20 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.