Riverside Resort Hotel and Casino
bd_53dc4ff2ca73947a · schema v1 · pii pii-v1
Full breach record for Riverside Resort Hotel and Casino →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Lynx on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Riverside Resort Hotel and Casino, founded in 1966 and headquartered in Laughlin...
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Jul 23, 2024
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- Indiana State AGbd_fefb172362fa619d2024-09-03 · +42dVerified by operator
- Montana State AGbd_0026efaaec81103a2024-09-05 · +44dVerified by operator
- Massachusetts State AGbd_2a2a4fa6a0568d542024-09-05 · +44dVerified by operator
- Oregon State AGbd_497dc1019cb41fd52024-09-05 · +44dVerified by operator
Show 5 more filings ↓Show fewer ↑up to 44d gap
- California State AGbd_59a69d524ee29f9b2024-09-05 · +44dVerified by operator
- Maine State AGbd_6464deb74409d1af2024-09-05 · +44dVerified by operator
- Vermont State AGbd_88a88e93ec9ff00f2024-09-05 · +44dVerified by operator
- Washington State AGbd_b8c0f5653a6694c12024-09-05 · +44dVerified by operator
- New Hampshire State AGbd_bfb6ab5b0604d6572024-09-05 · +44dVerified by operator
Filing propagation · 10 filings · 9 states
View merged incident ↗Pattern: first filing Jul 23, last Sep 5 (NH) — a 44-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
lynx
According to ransomware.live, Lynx is a ransomware-as-a-service operation that emerged in mid-2024 as a rebrand of INC Ransomware (whose source code was sold for $300,000 on the RAMP forum), claiming ~300 victims across manufacturing, business services, technology, and transportation with an 80/20 profit split for affiliates.