Page 3 of 4 FirstFirst 1234 LastLast
Results 41 to 60 of 69

Thread: MGM hacked / all computer systems down.

  1. #41
    Plutonium Sanlmar's Avatar
    Reputation
    4327
    Join Date
    Mar 2013
    Posts
    21,237
    Load Metric
    68669360
    Quote Originally Posted by sonatine View Post
    speaking of mood, moodys just fired a shot over the bow; continued disruption = negatively impact MGM credit.


    https://robinhood.com/news/article/6...e-8f23acc0d4bb
    You just got my juices flowing. I’m smiling irl.

    Institutions are the dumb money in my world.

  2. #42
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    yeah but you know.. is there dumb liquidity / smart liquidity?
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  3. #43
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    eta on getting this unfucked is 2 weeks minimum apparently
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  4. #44
    Plutonium lol wow's Avatar
    Reputation
    1082
    Join Date
    Jul 2014
    Posts
    10,568
    Load Metric
    68669360
    hey tine two fingers MORE LIKE COMJEWTER SYSTEMS AMIRITE

  5. #45
    Plutonium lol wow's Avatar
    Reputation
    1082
    Join Date
    Jul 2014
    Posts
    10,568
    Load Metric
    68669360
    todd i apologize on behalf of ur race

  6. #46
    Diamond TheXFactor's Avatar
    Reputation
    1215
    Join Date
    Jun 2012
    Posts
    6,969
    Load Metric
    68669360
    Apparently, the physical key card they give you is some sort of master key.

    People's rooms are being broken into to and a lot of stuff is being stolen.

    Unauthorized charges are showing up on customers credit cards.

    Conventions that are suppose to be taken place soon will be cancelling.

    MGM Resorts stock ia going to take a major hit. SELL, SELL, SELL!!!

    Hotel phones may be inoperative. Druff is going to be pissed.



  7. #47
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    https://techcrunch.com/2023/09/14/mg...ttered-spider/


    good summary / sitch report.


    btw although a lot of the downtime may be directly attributable to the actions of hackers, more than likely they are being forced to rebuild every element of their infrastructure from the ground up using tapes / trusted media basically.

     
    Comments
      
      Forum Wars: Makes sense. MGM will probably have the best Hack/Ransomware infrastructure within 1 year: get ready for 25% more fees...
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  8. #48
    Plutonium Sanlmar's Avatar
    Reputation
    4327
    Join Date
    Mar 2013
    Posts
    21,237
    Load Metric
    68669360
    Forum Wars: Makes sense. MGM will probably have the best Hack/Ransomware infrastructure within 1 year: get ready for 25% more fees...

    You believe MGM will get high draft choices because they finished last?

    Worst to first rarely happens in business

    Casinos pay terrible

  9. #49
    Diamond TheXFactor's Avatar
    Reputation
    1215
    Join Date
    Jun 2012
    Posts
    6,969
    Load Metric
    68669360
    LOL.

    Comedy of failures by MGM.

    They should have paid the ransom.



  10. #50
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    mgm website back online.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  11. #51
    Platinum FRANKRIZZO's Avatar
    Reputation
    485
    Join Date
    Sep 2014
    Posts
    3,420
    Load Metric
    68669360
    Yes, saw they paid 30 milli plus

  12. #52
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    Quote Originally Posted by FRANKRIZZO View Post
    Yes, saw they paid 30 milli plus

    this was actually Caesars, and i believe they only paid 15m despite the 30m figure being tossed around. unless you saw something specific about MGM paying 30m?


    the standard practice these days is to hire a 3rd party to negotiate payment and most of these companies are insured for those payments regardless.


    whats been fun has been combing through the blockchain trying to find how/where those payments were prepped/tendered.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  13. #53
    Diamond TheXFactor's Avatar
    Reputation
    1215
    Join Date
    Jun 2012
    Posts
    6,969
    Load Metric
    68669360
    LOL.

    Everything is fine.


    Russian hackers claim MGM Resorts breach, irritating visitors

    https://www.reviewjournal.com/busine...itors-2903998/



    Okay but will they get paid two weeks from then?




  14. #54
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    fwiw ALPHV arent russian. there may have been russians involved but they are likely teenagers who happened to be tapped in for lulz after ALPHV did the lions share of the breach. ALPHV, like Lapsus$, tend to work with teens to limit their legal exposure if things go sideways. from what i read of their attack narrative there wasnt a lot going on there that they would need outside help with.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  15. #55
    Gold Ryback_feed_me_more's Avatar
    Reputation
    168
    Join Date
    Oct 2012
    Location
    Sin City
    Posts
    1,464
    Load Metric
    68669360
    Quote Originally Posted by sonatine View Post
    https://techcrunch.com/2023/09/14/mg...ttered-spider/


    good summary / sitch report.


    btw although a lot of the downtime may be directly attributable to the actions of hackers, more than likely they are being forced to rebuild every element of their infrastructure from the ground up using tapes / trusted media basically.
    Holy fuck somebody's getting fired in IT for sure after this.

    News finally reported on the older Ceasers' attack. While I get their rivals, why Ceasers didn't shared the info on their attack with MGM is rather shitty, but this is about for once doing what's right instead of sitting on intel. Did Ceasers even report their attack to IC3 or just bury it due to concerns over stock prices? If not, they deserve a karmic bitchslap. Some night argue, they could be at least from an ethical standpoint, are a little to blame for MGMs intrusion. Good example. Your neighbor gets robbed but ya'll hate each other so he doesn't call the cops to report the break in. Same dudes break into your house, Same MO and everything I'd be pissed for sure.

  16. #56
    All Sorts of Sports gut's Avatar
    Reputation
    733
    Join Date
    Mar 2012
    Posts
    4,596
    Load Metric
    68669360
    Quote Originally Posted by Ryback_feed_me_more View Post
    Quote Originally Posted by sonatine View Post
    https://techcrunch.com/2023/09/14/mg...ttered-spider/


    good summary / sitch report.


    btw although a lot of the downtime may be directly attributable to the actions of hackers, more than likely they are being forced to rebuild every element of their infrastructure from the ground up using tapes / trusted media basically.
    Holy fuck somebody's getting fired in IT for sure after this.

    News finally reported on the older Ceasers' attack. While I get their rivals, why Ceasers didn't shared the info on their attack with MGM is rather shitty, but this is about for once doing what's right instead of sitting on intel. Did Ceasers even report their attack to IC3 or just bury it due to concerns over stock prices? If not, they deserve a karmic bitchslap. Some night argue, they could be at least from an ethical standpoint, are a little to blame for MGMs intrusion. Good example. Your neighbor gets robbed but ya'll hate each other so he doesn't call the cops to report the break in. Same dudes break into your house, Same MO and everything I'd be pissed for sure.
    I would call Ceasers and MGM more "partners in crime" than "rivals"

  17. #57
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  18. #58
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    Quote Originally Posted by Ryback_feed_me_more View Post
    Quote Originally Posted by sonatine View Post
    https://techcrunch.com/2023/09/14/mg...ttered-spider/


    good summary / sitch report.


    btw although a lot of the downtime may be directly attributable to the actions of hackers, more than likely they are being forced to rebuild every element of their infrastructure from the ground up using tapes / trusted media basically.
    Holy fuck somebody's getting fired in IT for sure after this.


    its not necessarily that cut and dried. if they follow a runbook and the runbook isnt appropriate for this contingency, you cant really hold the person who did their job as they were trained accountable.

    plus the people who wrote those guidelines might be long gone. a lot of these types of corporations are still working off policy/procedure written decades ago.

    an ex poster here used to have a lot of insight into casino IT and from what i gathered, its so heavily regulated that its basically like working for a state government. so nothing ever changes fast, if at all, to meet shifting external conditions.

    honestly this is one of the reasons why its such a big deal when white house regimes start pushing these new improved standards and start mandating disclosures etc; if they didnt the death spiral would look a lot like the florida housing market, where none of these companies could find insurance and eventually they would all just get torn apart like a dead whale in sharky waters.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  19. #59
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    Statement on MGM Resorts International: Setting the record straight
    9/14/2023, 7:46:49 PM

    We have made multiple attempts to reach out to MGM Resorts International, "MGM". As reported, MGM shutdown computers inside their network as a response to us. We intend to set the record straight.

    No ransomware was deployed prior to the initial take down of their infrastructure by their internal teams.

    MGM made the hasty decision to shut down each and every one of their Okta Sync servers after learning that we had been lurking on their Okta Agent servers sniffing passwords of people whose passwords couldn't be cracked from their domain controller hash dumps. Resulting in their Okta being completely locked out. Meanwhile we continued having super administrator privileges to their Okta, along with Global Administrator privileges to their Azure tenant. They made an attempt to evict us after discovering that we had access to their Okta environment, but things did not go according to plan.

    On Sunday night, MGM implemented conditional restrictions that barred all access to their Okta (MGMResorts.okta.com) environment due to inadequate administrative capabilities and weak incident response playbooks. Their network has been infiltrated since Friday. Due to their network engineers' lack of understanding of how the network functions, network access was problematic on Saturday. They then made the decision to "take offline" seemingly important components of their infrastructure on Sunday.

    After waiting a day, we successfully launched ransomware attacks against more than 100 ESXi hypervisors in their environment on September 11th after trying to get in touch but failing. This was after they brought in external firms for assistance in containing the incident.

    In our MGM victim chat, a user suddenly surfaced a few hours after the ransomware was deployed. As they were not responding to our emails with the special link provided (In order to prevent other IT Personnel from reading the chats) we could not actively identify if the user in the victim chat was authorized by MGM Leadership to be present.

    We posted a link to download any and all exfiltrated materials up until September 12th, on September 13th in the same discussion. Since the individual in the conversation did not originate from the email but rather from the hypervisor note, as was already indicated, we were unable to confirm whether they had permission to be there.

    To guard against any unneeded data leaking, we added a password to the data link we provided them. Two passwords belonging to senior executives were combined to create the password. Which was clearly hinted to them with asterisks on the bulk of the password characters so that the authorized individuals would be able to view the files. The employee ids were also provided for the two users for identification purposes.

    The user has consistently been coming into the chat room every several hours, remaining for a few hours, and then leaving. About seven hours ago, we informed the chat user that if they do not respond by 11:59 PM Eastern Standard Time, we will post a statement. Even after the deadline passed, they continued to visit without responding. We are unsure if this activity is automated but would likely assume it is a human checking it.

    We are unable to reveal if PII information has been exfiltrated at this time. If we are unable to reach an agreement with MGM and we are able to establish that there is PII information contained in the exfiltrated data, we will take the first steps of notifying Troy Hunt from HaveIBeenPwned.com. He is free to disclose it in a responsible manner if he so chooses.

    We believe MGM will not agree to a deal with us. Simply observe their insider trading behavior. You believe that this company is concerned for your privacy and well-being while visiting one of their resorts?

    We are not sure about anyone else, but it is evident from this that no insiders have purchased any stock in the past 12 months, while 7 insiders have sold shares for a combined 33 MILLION dollars. (https://www.marketbeat.com/stocks/NY...nsider-trades/). This corporation is riddled with greed, incompetence, and corruption.

    We recognize that MGM is mistreating the hotel's customers and really regret that it has taken them five years to get their act together. Other lodging options, including casinos, are undoubtedly open and happy to assist you.

    At this point, we have no choice but to criticize VX Underground for falsely reporting events that never happened. We typically consider their information to be highly reliable and timely, but we did not attempt to tamper with MGM's slot machines to spit out money because doing so would not be to our benefit and would decrease the chances of any sort of deal.

    The rumors about teenagers from the US and UK breaking into this organization are still just that—rumors. We are waiting for these ostensibly respected cybersecurity firms who continue to make this claim to start providing solid evidence to support it. Starting to the actors' identities as they are so well-versed in them.

    The truth is that these specialists find it difficult to delineate between the actions of various threat groupings, therefore they have grouped them together. Two wrongs do not make a right, thus they chose to make false attribution claims and then leak them to the press when they are still unable to confirm attribution with high degrees of certainty after doing this. The tactics, procedures, and indicators of compromise (TTPs) used by the people they blame for the attacks are known to the public and are relatively easy for anyone to imitate.

    The ALPHV ransomware group has not before privately or publicly claimed responsibility for an attack before this point. Rumors were leaked from MGM Resorts International by unhappy employees or outside cybersecurity experts prior to this disclosure. Based on unverified disclosures, news outlets made the decision to falsely claim that we had claimed responsibility for the attack before we had.

    We still continue to have access to some of MGM's infrastructure. If a deal is not reached, we shall carry out additional attacks. We continue to wait for MGM to grow a pair and reach out as they have clearly demonstrated that they know where to contact us.
    https://mgmresorts.com

     
    Comments
      
      Sanlmar: Absolutely fantastic. Thank you
      
      Tellafriend:
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  20. #60
    Plutonium sonatine's Avatar
    Reputation
    7380
    Join Date
    Mar 2012
    Posts
    33,455
    Load Metric
    68669360
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. MGM may sell Belagio and MGM Grand -- but also lease them back
    By Dan Druff in forum Casinos & Las Vegas
    Replies: 10
    Last Post: 03-07-2020, 12:39 PM
  2. Replies: 0
    Last Post: 07-27-2019, 10:25 PM
  3. Druff's tips for automated phone customer service systems
    By Dan Druff in forum Flying Stupidity
    Replies: 2
    Last Post: 04-22-2019, 03:06 PM
  4. Replies: 5
    Last Post: 06-02-2016, 10:29 AM
  5. Poker cheating systems. Warning.
    By donkdowndonedied in forum Flying Stupidity
    Replies: 7
    Last Post: 03-27-2013, 06:11 AM