Cyber Incident Victim: Binion's Casino
Date:
Mar 2020
Location:
United States of America
Summary
A suspected ransomware attack impacted two Las Vegas casinos, including Binion's Casino, disrupting slot machine operations for nearly a week and forcing temporary cash-only transactions. The incident drew public attention as videos of inoperative gaming machines circulated widely on social media platforms. Nevada gaming authorities confirmed an active investigation into the event but did not disclose specific technical details or attribution. Business operations continued during the disruption with modified payment processing limitations.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 2 motives | 1 technique |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
In early March 2020, Binion's Casino and Four Queens Hotel and Casino in downtown Las Vegas experienced a disruptive technology incident affecting their slot machine operations. The attack rendered numerous slot machines inoperative for nearly a week, significantly disrupting normal casino activities. During this period, both establishments remained open but could only conduct cash transactions, eliminating electronic payment options typically available to patrons. Social media platforms circulated videos showing extensive rows of non-functional slot machines on otherwise empty casino floors, visually documenting the operational impact. The incident displayed characteristics consistent with ransomware attacks, though no specific threat actor or ransom demands were publicly confirmed. Casino operations faced constraints in gaming revenue generation due to the prolonged slot machine outage, a critical income source for Las Vegas gaming establishments.

The Nevada State Game Control Board initiated an investigation into the incident and confirmed it was actively monitoring the situation as of March 3, 2020. No detailed containment measures or restoration timelines were disclosed by the casinos or regulatory authorities. Both affected properties maintained basic business continuity through cash-based transactions while critical gaming systems remained impaired. The incident highlighted vulnerabilities in casino operational technology infrastructure without revealing specific technical details about attack vectors or compromised systems. Regulatory oversight continued without public disclosure of forensic findings or attribution to specific threat groups. Business operations gradually normalized following the week-long disruption, though the investigation's conclusions and any implemented security improvements were not documented in available public reporting.
