DraftKings
| Primary URL | Location | Industry | www[.]draftkings[.]com |
Country
United States of America
|
Entertainment
|
|---|
Profile
DraftKings is a digital sports entertainment company that operates daily fantasy sports and sports betting platforms, primarily serving customers in the United States. The company offers a range of products allowing users to compete in fantasy contests and wager on professional sporting events. As a regulated entity in the U.S. gaming industry, DraftKings holds licenses in states where online sports betting is permitted. Its services are accessible via web and mobile applications, catering to a broad audience of sports fans. The company's business model revolves around entry fees for fantasy contests and a commission on sports bets placed through its platform.
In November 2022, DraftKings experienced a credential stuffing attack that resulted in unauthorized access to customer accounts and financial losses approximating $300,000. Attackers utilized credentials previously compromised from other online services to hijack accounts, subsequently altering passwords and enabling two-factor authentication under their control before draining funds from linked bank accounts. DraftKings confirmed that its internal systems were not breached, attributing the incident to the reuse of passwords across platforms. The company committed to fully reimbursing affected users, demonstrating a customer-centric response to security incidents. This event underscores the persistent threat of credential stuffing attacks in the online gaming sector, where automated tools exploit widespread password reuse to compromise user accounts. DraftKings' handling of the incident reflects an operational emphasis on account security and customer assurance, though the attack highlights the challenges of relying solely on user credential hygiene in a high-value financial context.
