After the customer's personal data was compromised in the 2019 MGM Resorts data breach, the company reached a $45 million settlement agreement as part of a class-action lawsuit. Sensitive customer information, such as full names and postal addresses, email addresses, phone numbers, and dates of birth, became publicly accessible during the breach. Fortunately, the breach did not expose payment card details or passwords.
Background Information
MGM Resorts was hit by a cybercrime in the summer of 2019, which gave hackers illegal access to its guest database. In February 2020, Russian hackers published over 10 million pieces of data in a forum, raising public awareness of the breach. An analysis revealed that an offender listed the entire database of 142 million records for sale on the dark web for $2,900. In May 2022, the stolen MGM Resorts data resurfaced on Telegram, expanding its potential exposure to customers.
Details About The Settlement
Affected individuals will receive a portion of the $45 million settlement funds to cover their potential data breach damages. Although the court has not yet approved the compensation distribution plan, qualified victims will certainly receive financial compensation. As part of the settlement, MGM Resorts expresses its dedication to enhancing its cybersecurity defenses and securing future incident prevention.
Implications and Company Responses
Through this settlement, large corporations must understand the standards by which they should deal with similar data breaches in the future. The breach has resulted in significant financial compensation for those negatively affected. Legal professionals believe that the substantial payments demonstrate the magnitude of breach exposure and the extent of affected parties. This case demonstrates to all companies that failing to secure data properly will result in major financial penalties and reputational damages.
While the $45 million settlement is a considerable sum, some critics dispute that it fails to address the enduring issues faced by victims of the compromised data. Law experts predict that victims may incur two kinds of damages, including emotional trauma and the cost of protecting themselves against potential attacks. The settlement could spark a chain reaction of lawsuits against companies that fail to meet cybersecurity standards. Analysts in the field of law believe that this case will result in the enforcement of enhanced regulatory requirements and increased industrywide compliance standards.
The settlement establishes that companies must protect customer data by law. MGM Resorts is committed to developing better security arrangements that protect guest information. The well-known casino attack shows why intense and persistent cybersecurity measures keep maximum relevance for companies in the hotel and casino sector.

Reviews (0)
No comments yet. Be the first to comment!