CSIDB logo
Incident

Las Vegas Sands Corporation

Incident posture

Attack window
Feb 2014
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2026-01-21 15:12

Linked entities

Victim
Las Vegas Sands Corporation
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
Feb 2014
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

Las Vegas Sands Corp experienced a severe cyberattack that disrupted operations at its Venetian casino, causing widespread system failures including computer and server shutdowns, email and phone outages, and critical IT infrastructure paralysis. The attack involved cascading hardware failures with numerous hard drives wiped, crippling the company's technical capabilities in an unprecedented manner that overwhelmed its engineering teams during the incident response.

Motives

Detailed motive labels are available to members.

3 motives

TTPs

Detailed technique labels are available to members.

1 technique

Description

On the morning of February 10, 2014, Las Vegas Sands Corp. experienced a catastrophic cyber attack targeting its corporate offices above the Venetian casino on the Las Vegas Strip. The incident began during early hours when most casino operations were inactive, with computer systems abruptly failing across the organization. Technical staff encountered widespread IT infrastructure collapse characterized by cascading system failures, including disabled computers, inoperable email systems, and non-functional phones. Multiple servers and workstations experienced hard drive wipes that erased critical data. Company engineers diagnosed a coordinated cyber attack within one hour of detection, recognizing the unprecedented scale and sophistication of the incident. The attack paralyzed essential technology systems supporting Sands' global gaming operations, which generated $14 billion in annual revenue at the time.

Las Vegas Sands' technical teams responded immediately to contain the damage, though specific remediation steps weren't detailed in available reports. The attack caused significant operational disruption across business functions dependent on the compromised IT infrastructure. Bloomberg Businessweek later characterized the incident as foreshadowing the destructive Sony Pictures hack that would occur months later, noting similarities in data-wiping techniques. No operational details about casino floor systems or guest data were mentioned in the coverage. The company's public statements about attribution or financial impact weren't disclosed in the cited reporting. Security analysts subsequently noted the attack's significance as an early example of destructive cyber operations against major corporations.

Sources

Sources available to members: 1 source.

CSIDB