Midwest Gaming & Entertainment, LLC
bd_26609e321a0afb25 · schema v1 · pii pii-v1
Full breach record for Midwest Gaming & Entertainment, LLC →Midwest Gaming & Entertainment, d/b/a Rivers Casino Des Plaines, experienced unauthorized access to its network on or around August 12, 2023. The incident involved the access or removal of files containing personal information of team members, customers, and online sportsbook customers. The company engaged third-party cybersecurity support and law enforcement. No evidence of financial fraud or identity theft was found. Affected individuals were offered one year of Experian IdentityWorks credit monitoring. The breach impacted residents in multiple states including Delaware, Iowa, Maryland, New York, North Carolina, Oregon, Washington D.C., New Mexico, and Rhode Island.
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_001623e5cfc427a5California State AGfiled 2023-11-22(2d gap)Verified
- bd_8564ee16c81511efMaine State AGfiled 2023-11-22(2d gap)Verified
- bd_f8f75959de3a4e4bMontana State AGfiled 2023-11-22(2d gap)Verified
- bd_27b3111fb388bae2New Hampshire State AGfiled 2023-12-01(11d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 23d gap
- bd_d0b58bdac38de665Washington State AGfiled 2023-12-04(14d gap)Verified
- bd_f01528a86e963893Oregon State AGfiled 2023-12-13(23d gap)Verified
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2023/12/Rivers-Casino-Des-Plaines.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 20, 2023
- Raw hash
- 0b61db8fe919f19a744e11725aa40c08020e7accffc0bb79770fb326d4d89800
Reporting entity
- Name
- Midwest Gaming & Entertainment, LLCnorm: midwest gaming entertainment
Victim entity
- Name
- Midwest Gaming & Entertainment, LLCnorm: midwest gaming entertainment
Incident
- Discovered
- Nov 2, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Consultation with law enforcement
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 18 days(18 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.