HackingHospitalityCapture Stored DataData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Crystal Bay Casino
bd_626acf628d698127 · schema v1 · pii pii-v1
Full breach record for Crystal Bay Casino →Crystal Bay Casino (Crystal Bay, NV) notified affected individuals in February 2023 of a data security incident in which certain files and database records may have been copied from their systems on or around November 27, 2022, with additional database exfiltration identified as of January 25, 2023. The incident involved unauthorized copying of personal information including names. The FBI was notified. Approximately 40 Rhode Island residents were among those potentially impacted.
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_945f609227dd9a05Maine State AGfiled 2023-03-29Verified
- bd_c63b5c4ded012f30New Hampshire State AGfiled 2023-04-03(5d gap)Verified
- bd_09d311cad9d34b3bVermont State AGfiled 2023-02-24(33d gap)Verified
- bd_537251f71a609215Oregon State AGfiled 2023-02-24(33d gap)Candidate
Show 4 more filings ↓Show fewer ↑up to 33d gap
- bd_743f2080c8c7d3a0Montana State AGfiled 2023-02-24(33d gap)Verified
- bd_d1f04738c35f60ceMaine State AGfiled 2023-02-24(33d gap)Verified
- bd_fb79e1791bba8063California State AGfiled 2023-02-24(33d gap)Verified
- bd_fdeb40f7cd1fe562Washington State AGfiled 2023-02-24(33d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-564885
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 29, 2023
- Raw hash
- 840daed94935233ab54fae6997020923026de7d4955e81755e06d34182b4e502
Reporting entity
- Name
- Crystal Bay Casinonorm: crystal bay casino
Victim entity
- Name
- Crystal Bay Casinonorm: crystal bay casino
- Industry
- Hospitalityllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 0
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated CollectionT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Reported the activity to the FBI
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.