HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
MGM RESORTS INTERNATIONAL
bd_2cf9544a4111fecb · schema v1 · pii pii-v1
Full breach record for MGM RESORTS INTERNATIONAL →MGM Resorts International notified consumers of a data breach involving unauthorized access to systems. The incident compromised personal information including names, Social Security numbers, and dates of birth. MGM engaged cybersecurity experts, coordinated with law enforcement, and provided two years of complimentary credit monitoring and identity protection services through Experian to affected individuals.
This filing is one of 12 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_05c59c84e811817fWashington State AGfiled 2023-10-05Candidate
- bd_25f570b90148b65eOregon State AGfiled 2023-10-05Verified
- bd_36e2c8e1303bff37Delaware State AGfiled 2023-10-05Verified
- bd_4e28f4a3e508d542Maine State AGfiled 2023-10-05Verified
Show 6 more filings ↓Show fewer ↑up to 61d gap
- bd_65dbfae801fc66abDelaware State AGfiled 2023-10-05Verified
- bd_6bbbeaea01c0cd31SEC 8-Kfiled 2023-10-05Verified
- bd_e80691128547fd2dDelaware State AGfiled 2023-10-05Verified
- bd_ee40948044b421adMontana State AGfiled 2023-10-05Verified
- bd_a165e7cc6b9dc225South Carolina State AGBlackCatfiled 2023-10-06(1d gap)Verified
- bd_0171facdc96060a9California State AGfiled 2023-12-05(61d gap)Verified
Showing first 10 of 11 linked disclosures.
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-10-05-mgm-resorts-international-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 5, 2023
- Raw hash
- 68a4146e911f5bc0df2ee6ad6c5ceed21502a9039c44614ebec1191078365836
Reporting entity
- Name
- MGM RESORTS INTERNATIONALnorm: mgm resorts
Victim entity
- Name
- MGM RESORTS INTERNATIONALnorm: mgm resorts
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Oct 5, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- coordinating with law enforcement
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.