MIT TRACE

MIT CTL Logo
Back to Main Dashboard

MGM Resorts ransomware disrupts U.S. casino and hotel operations

Beginning 10/09/2023, MGM RESORTS INTERNATIONAL experienced a cyberattack initiated via social engineering of the help desk attributed to SCATTERED SPIDER with ALPHV involvement. MGM shut down key IT systems, disrupting hotel check‑in, digital room keys, online reservations, email, and slot machines across multiple U.S. properties. Operations substantially recovered in about 10 days, and the company disclosed around $100 million impact. Reporting also indicates data exfiltration occurred.

85

Estimated severity

85 / 100

95

Source reliability

95 / 100

Approximate Date

10/09/2023

Targeted Company

MGM RESORTS INTERNATIONAL

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

United States

USA

Other Affected Countries

No other affected countries reported

Target country

United States

Affected countries

United States

Impacted regions

No information

Operational Impact

Duration

10 days

Financial impact (USD M)

$100M

Impact types

Service unavailabilityOperational disruptionOrder processing disruptionDownstream customer disruption

Affected sectors

Hospitality & Travel

Affected departments

Information TechnologyCustomer ServiceFacilities & Physical Operations

Attack Profile

Attack types

RansomwareSocial engineeringUnauthorized accessData exfiltration

Attributed threat actors

SCATTERED SPIDERALPHV

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.