Brightstar Lottery Group and IGT Group discovered unauthorized access to internal corporate systems on November 17, 2024. The incident involved personal information including names, contact info, dates of birth, government IDs (SSN, driver's license), financial account info, and health data. A manual data review was completed on August 21, 2025. The company engaged Kroll for 24 months of identity monitoring and reported the incident to law enforcement.