Riverside Resort Casino in Laughlin Hit by Lynx Ransomware Attack

Incident Date:

August 30, 2024

World map

Overview

Title

Riverside Resort Casino in Laughlin Hit by Lynx Ransomware Attack

Victim

Riverside Resort Hotel and Casino

Attacker

Lynx

Location

Riverside, USA

Iowa, USA

First Reported

August 30, 2024

Riverside Resort Hotel and Casino Hit by Lynx Ransomware Attack

Riverside Resort Hotel and Casino, a prominent establishment in Laughlin, Nevada, has become the latest victim of a ransomware attack orchestrated by the notorious Lynx group. The attack has raised significant concerns about cybersecurity vulnerabilities within the hospitality sector.

About Riverside Resort Hotel and Casino

Founded by Don Laughlin in 1966, Riverside Resort Hotel and Casino is a multifaceted entertainment destination. The resort features over 1,400 rooms, a sprawling 89,106 square feet gaming space, and numerous amenities including dining options, entertainment venues, and family-friendly activities. The resort generates an estimated annual revenue of $316.9 million and employs around 33 individuals.

Details of the Attack

The Lynx ransomware group has claimed responsibility for the attack, asserting that they have infiltrated Riverside Resort's data systems. The group has posted sample screenshots on their dark web portal to substantiate their claims. The attack has reportedly led to the encryption of critical files, appended with a .LYNX extension, and the exfiltration of sensitive data.

About Lynx Ransomware Group

Lynx is a double-extortion ransomware group that emerged in August. They are known for targeting multiple sectors while avoiding government, healthcare, and non-profits. Lynx distinguishes itself by encrypting files and stealing data, demanding ransom payments through TOR. Their attacks are sophisticated, often leveraging behavior-based, file-based, and machine learning-based detection methods to evade security measures.

Potential Vulnerabilities

Riverside Resort's extensive digital infrastructure, which includes online booking systems, customer databases, and financial transactions, makes it a lucrative target for ransomware groups like Lynx. The hospitality sector's reliance on continuous operations and customer trust further exacerbates the impact of such attacks, making robust cybersecurity measures imperative.

Implications for the Hospitality Sector

This attack underscores the growing threat of ransomware in the hospitality industry. As establishments like Riverside Resort continue to expand their digital footprints, they must prioritize cybersecurity to protect against increasingly sophisticated cyber threats.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.