HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
WYNN RESORTS, LIMITED
bd_1a6e76fd41bc08a9 · schema v1 · pii pii-v1
Full breach record for WYNN RESORTS, LIMITED →Wynn Resorts, Limited notified the New Hampshire Attorney General on April 3, 2026, regarding a data breach affecting 7 state residents. Unauthorized access to an HR system occurred in October 2025, exposing names, addresses, DOBs, and SSNs of employees/contractors. Wynn engaged forensic experts, disabled remote access, reset credentials, and notified law enforcement. Affected individuals received 2 years of credit monitoring via Kroll.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_1e52a6a54affd92fIndiana State AGfiled 2026-04-03Candidate
- bd_83603f97a9b77d76Indiana State AGfiled 2026-04-03Candidate
- bd_9e9a13e678e1b2c2Vermont State AGfiled 2026-04-03Verified
- bd_9faa773311b20809Maine State AGfiled 2026-04-03Verified by operator
Show 1 more filing ↓Show fewer ↑up to 3d gap
- bd_e2d7f5d9f01691c5Texas State AGfiled 2026-04-06(3d gap)Verified by operator
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/wynn-resorts-20260403.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 3, 2026
- Raw hash
- ac14e32f683c14f5d6f4618374531362a5c7ad5c9c27ecee966c4a4654c40f0e
Reporting entity
- Name
- WYNN RESORTS, LIMITEDnorm: wynn resorts
- Domain
- wynnresorts.com
Victim entity
- Name
- WYNN RESORTS, LIMITEDnorm: wynn resorts
- Domain
- wynnresorts.com
Incident
- Discovered
- Feb 20, 2026
- Materiality determined
- —
- Notification sent
- Feb 24, 2026
- Affected individuals
- 7
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 6 weeks(42 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.