Churchill Downs Inc
ent_019de18a5126a346cc2582fccd1d268c
Disclosures
1
State AG · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
370
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Churchill Downs Inc
- Normalized
- churchill downs— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 529900FODTBQC8MIS994
- SEC EDGAR CIK
- 0000020212
- Domain
- churchilldownsincorporated.com
Disclosure history (1)newest first
Subsidiary disclosures (9)filed by group companies
◈ These filings were made by or about subsidiaries of Churchill Downs Inc — not by Churchill Downs Inc itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Oregon State AGvia Midwest Gaming & Entertainment, LLC2023-12-13
Midwest Gaming & Entertainment, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2023-12-13. The breach occurred during 8/12/2023. The breach was discovered on 11/2/2023. Notice was sent on 11/20/2023.
- Washington State AGvia Midwest Gaming & Entertainment, LLC2023-12-04
Midwest Gaming & Entertainment, LLC dba Rivers Casino Des Plaines notified Washington AG of a ransomware incident discovered on August 12, 2023. Unauthorized access likely resulted in the exfiltration of personal information (names, SSNs, driver's licenses, financial accounts, PHI) of 1,946 Washington residents. Notifications were sent starting November 20, 2023, including one year of credit monitoring.
- New Hampshire State AGvia Midwest Gaming & Entertainment, LLC2023-12-01
Midwest Gaming & Entertainment, d/b/a Rivers Casino Des Plaines, notified the New Hampshire Attorney General of a ransomware incident discovered on August 12, 2023. Approximately 313 New Hampshire residents were affected. The unauthorized actor gained access to systems and likely exfiltrated personal information, including names and Social Security numbers. The casino offered one year of credit monitoring to affected individuals.
- California State AGvia Midwest Gaming & Entertainment, LLC2023-11-22
Midwest Gaming & Entertainment, LLC (d/b/a Rivers Casino Des Plaines) reported unauthorized access to its network on or around August 12, 2023. The incident was discovered on November 2, 2023. Files containing personal information of team members, customers, and online sportsbook customers may have been accessed or removed. The company engaged third-party cybersecurity support and law enforcement. No evidence of financial fraud or identity theft was found. Complimentary credit monitoring was offered.
- Massachusetts State AGvia Midwest Gaming & Entertainment, LLC2023-11-22
Midwest Gaming & Entertainment, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-11-22. 1,821 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGvia Midwest Gaming & Entertainment, LLC2023-11-22
Midwest Gaming & Entertainment, LLC, doing business as Rivers Casino Des Plaines, reported a data breach affecting 202 Maine residents. The incident, an external system breach (hacking), occurred between August 8 and August 12, 2023, and was discovered on November 2, 2023. The compromised information includes names and financial account or credit/debit card numbers along with their associated security codes, access codes, passwords, or PINs. Affected individuals were notified in writing on November 20, 2023, and offered credit monitoring services.
- Montana State AGvia Midwest Gaming & Entertainment, LLC2023-11-22
Rivers Casino Des Plaines experienced unauthorized network access around August 12, 2023, discovered on November 2, 2023. Files containing PII of team members and customers were accessed. No evidence of financial fraud. The company engaged third-party cybersecurity support and law enforcement, and offered one year of Experian IdentityWorks.
- Delaware State AGvia Midwest Gaming & Entertainment, LLC2023-11-20
Midwest Gaming & Entertainment, d/b/a Rivers Casino Des Plaines, experienced unauthorized access to its network on or around August 12, 2023. The incident involved the access or removal of files containing personal information of team members, customers, and online sportsbook customers. The company engaged third-party cybersecurity support and law enforcement. No evidence of financial fraud or identity theft was found. Affected individuals were offered one year of Experian IdentityWorks credit monitoring. The breach impacted residents in multiple states including Delaware, Iowa, Maryland, New York, North Carolina, Oregon, Washington D.C., New Mexico, and Rhode Island.
- Illinois State AGvia Midwest Gaming & Entertainment, LLC2023-01-01
MIDWEST GAMING & ENTERTAINMENT, LLC DBA. RIVERS CASINO DES PLAINES filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-789). The register records the breach as discovered on August 12, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.