Employee Identity Data at Risk After Wynn Resorts ShinyHunters Breach
Wynn Resorts has disclosed that a breach affecting 21,775 employees likely resulted in the exfiltration of sensitive HR data, including Social Security numbers. The threat actor, linked to the ShinyHunters group, removed Wynn from their leak site after demanding a ransom exceeding 22 bitcoin, suggesting a probable ransom payment. The company’s filing with the Maine Attorney General states the attacker claimed to have deleted the data, but this does not guarantee the data is unrecoverable or unpublished elsewhere. The primary risk is downstream identity theft and privacy exposure for affected employees, not ongoing operational disruption. This incident highlights that removal from leak sites does not end the risk of personal data exposure or fraud long after the initial breach.