• Skip to primary navigation
  • Skip to main content
nGuard

nGuard

Call us p. 704.583.4088
  • Solutions
    • Security Assessments
    • Compliance
    • Cyber Security Incidence Response
    • Penetration Testing
    • Managed Event Collection
    • Vulnerability Management
    • Red Teaming
    • Mobile Security
    • Cloud Security
  • Industries
    • Healthcare
    • Energy
    • Information Technology
    • Manufacturing
    • Defense
    • Banking
    • Insurance
    • Government
    • Transportation
    • Entertainment
    • Food & Beverage
  • About Us
    • Our Company
    • Careers
    • Blog
  • Contact
Client PortalSpeak to An Expert

Written by nGuard / September 28, 2023

MGM’s Cyber Gamble: How One Phone Call Broke the Bank!

Share

In today’s digital age, cyber threats loom large, and even industry stalwarts like MGM Resorts can find themselves under siege. The recent cyberattacks on MGM Resorts serve as a stark reminder of the vulnerabilities that exist and the importance of robust cybersecurity measures.

The Initial Attack
The cyber onslaught on MGM Resorts began subtly but had far-reaching consequences. As detailed by Gizmodo, the notorious ransomware group ALPHV, also known as BlackCat, employed a tactic that many would consider benign: a phone call. Leveraging information from LinkedIn, they identified an MGM employee and initiated a 10-minute conversation with the company’s Help Desk. This was not a routine call. The hackers used sophisticated social engineering techniques, manipulating the employee into providing critical access information.

This breach was not just a technical failure; it was a human one. It underscores the importance of training employees to recognize and resist manipulative tactics. At nGuard, we understand this all too well. Our social engineering simulations are designed to help businesses train their staff to identify and counteract these tactics, ensuring that they don’t become the weak link in the security chain.

The Aftermath and Resolution
The ramifications of the breach were immediate and severe. As reported by Fox Business, MGM Resorts faced daily losses of approximately $8.4 million. For ten agonizing days, a wide array of MGM’s systems, from hotel reservations to credit card processing, were in disarray. The total estimated financial impact reached a staggering $80 million.

But the financial losses were just the tip of the iceberg. The breach affected MGM’s reputation, customer trust, and operational integrity. Systems across its Aria, Bellagio, and MGM Grand locations were compromised, impacting corporate emails, restaurant reservations, hotel bookings, and even digital key card access. Even after the company announced a return to normalcy, several users reported issues with MGM’s mobile app, indicating lingering challenges.

Furthermore, as highlighted by Business Insider, MGM wasn’t the sole target. Rival casino Caesars Entertainment also disclosed a cyberattack, emphasizing the industry-wide risk.

In such dire situations, having a robust incident response strategy is paramount. nGuard’s incident response services ensure that businesses are equipped to handle such crises, minimizing damage and expediting recovery. Additionally, nGuard emphasizes the importance of security awareness training, empowering employees with the knowledge and skills to prevent potential threats and breaches.

To further bolster defenses, continuous monitoring is essential. nGuard’s managed event collection provides businesses with real-time surveillance, ensuring threats are identified and neutralized promptly.

Conclusion
The MGM Resorts cyberattack is a testament to the multifaceted nature of cyber threats. While technology plays a pivotal role, human factors are equally consequential. Comprehensive training, proactive monitoring, and partnering with cybersecurity experts like nGuard can help businesses fortify their defenses and navigate the challenging cyber landscape with confidence.

Filed Under: Advisory, Breach, Compliance, Events, Financial, General, Products & Services, Vulnerabilities & Exploits Tagged With: Class Action Lawsuits, Cloud security, Comprehensive Security Audits, Customer Data Protection, Cyber Threats, cybersecurity, Data Breaches, Data Encryption, Data Privacy, Data Security, Employee Training, Financial Institutions, Financial Services, Framework Alignment, Incident Response, Legal Actions, Log Collection, Log Correlation, MOVEit Breach, network security, Penetration Testing, Regulatory Compliance, Risk Management, Security Advisory, Security Auditing, Security Best Practices, Vendor Security, vulnerability management

nGuard

nGuard

3540 Toringdon Way
Suite 200
Charlotte, NC 28277-4650

info@nGuard.com

Client Portal

Solutions

  • Security Assessments
  • Compliance
  • Cyber Security Incident Response
  • Penetration Testing
  • Managed Event Collection
  • nGuard Vulnerability Management
  • Red Team Testing
  • Mobile Security
  • Cloud Security

Industries

  • Healthcare
  • Energy
  • Information Technology
  • Manufacturing
  • Defense
  • Banking
  • Insurance
  • Government
  • Transportation
  • Entertainment
  • Food & Beverage

About Us

  • Our Company
  • Careers
  • Blog

© 2023 nGuard. All rights reserved.

  • Privacy Policy