Midwest Gaming & Entertainment, LLC
ent_b5d34859bf4a7e96197d8885
Disclosures
11
State AG · 10 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
1,946
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Midwest Gaming & Entertainment, LLC
- Normalized
- midwest gaming entertainment— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- Churchill Downs Inc— per SEC Exhibit 21 filing
Disclosure history (11)newest first
- Oregon State AGas victim2023-12-13
Midwest Gaming & Entertainment, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2023-12-13. The breach occurred during 8/12/2023. The breach was discovered on 11/2/2023. Notice was sent on 11/20/2023.
- Washington State AGas victim2023-12-04
Midwest Gaming & Entertainment, LLC dba Rivers Casino Des Plaines notified Washington AG of a ransomware incident discovered on August 12, 2023. Unauthorized access likely resulted in the exfiltration of personal information (names, SSNs, driver's licenses, financial accounts, PHI) of 1,946 Washington residents. Notifications were sent starting November 20, 2023, including one year of credit monitoring.
- New Hampshire State AGas victim2023-12-01
Midwest Gaming & Entertainment, d/b/a Rivers Casino Des Plaines, notified the New Hampshire Attorney General of a ransomware incident discovered on August 12, 2023. Approximately 313 New Hampshire residents were affected. The unauthorized actor gained access to systems and likely exfiltrated personal information, including names and Social Security numbers. The casino offered one year of credit monitoring to affected individuals.
- South Carolina State AGas reporting2023-11-28
Midwest Gaming & Entertainment, LLC (d/b/a Rivers Casino Des Plaines) disclosed unauthorized access to its network on or around August 12, 2023, discovered on November 2, 2023. The incident involved the access or removal of files containing personal information of team members, customers, and online sportsbook customers. No evidence of financial fraud or identity theft was found. The company engaged third-party cybersecurity support and law enforcement, and offered one year of Experian Identity Works Credit 3B to affected individuals.
- California State AGas victim2023-11-22
Midwest Gaming & Entertainment, LLC (d/b/a Rivers Casino Des Plaines) reported unauthorized access to its network on or around August 12, 2023. The incident was discovered on November 2, 2023. Files containing personal information of team members, customers, and online sportsbook customers may have been accessed or removed. The company engaged third-party cybersecurity support and law enforcement. No evidence of financial fraud or identity theft was found. Complimentary credit monitoring was offered.
- Massachusetts State AGas victim2023-11-22
Midwest Gaming & Entertainment, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-11-22. 1,821 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2023-11-22
Midwest Gaming & Entertainment, LLC, doing business as Rivers Casino Des Plaines, reported a data breach affecting 202 Maine residents. The incident, an external system breach (hacking), occurred between August 8 and August 12, 2023, and was discovered on November 2, 2023. The compromised information includes names and financial account or credit/debit card numbers along with their associated security codes, access codes, passwords, or PINs. Affected individuals were notified in writing on November 20, 2023, and offered credit monitoring services.
- Montana State AGas reporting2023-11-22
Rivers Casino Des Plaines experienced unauthorized network access around August 12, 2023, discovered on November 2, 2023. Files containing PII of team members and customers were accessed. No evidence of financial fraud. The company engaged third-party cybersecurity support and law enforcement, and offered one year of Experian IdentityWorks.
- Delaware State AGas victim2023-11-20
Midwest Gaming & Entertainment, d/b/a Rivers Casino Des Plaines, experienced unauthorized access to its network on or around August 12, 2023. The incident involved the access or removal of files containing personal information of team members, customers, and online sportsbook customers. The company engaged third-party cybersecurity support and law enforcement. No evidence of financial fraud or identity theft was found. Affected individuals were offered one year of Experian IdentityWorks credit monitoring. The breach impacted residents in multiple states including Delaware, Iowa, Maryland, New York, North Carolina, Oregon, Washington D.C., New Mexico, and Rhode Island.
- Delaware State AGas reporting2023-11-20
Rivers Casino Des Plaines, operated by Midwest Gaming and Entertainment, LLC, disclosed a cybersecurity incident where unauthorized access to its network occurred on or around August 12, 2023. The breach affected Team Members and customers, potentially exposing personal information including names and government IDs. The company engaged third-party cybersecurity support and law enforcement, offering one year of Experian IdentityWorks to affected individuals. No financial fraud or identity theft has been confirmed.
- Illinois State AGas victim2023-01-01
MIDWEST GAMING & ENTERTAINMENT, LLC DBA. RIVERS CASINO DES PLAINES filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-789). The register records the breach as discovered on August 12, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.