Data leak

Wynn Resorts Data Breach - ShinyHunters Oracle PeopleSoft (21K Employees)

πŸ“… 2025-09-01 🏒 Oracle PeopleSoft
Primary Source β†—

Incident Details

In September 2025, ShinyHunters exploited a vulnerability in Wynn Resorts’ Oracle PeopleSoft platform to access employee records. The breach was discovered in February 2026. ShinyHunters demanded a $1.5 million ransom with a February 23, 2026 deadline, threatening to leak data. Wynn Resorts confirmed the breach affected 21,775 employees, with Social Security numbers, names, phone numbers, and dates of birth compromised. After the company declined to comment on ransom payment, the hackers removed Wynn from their leak site β€” strongly suggesting a ransom was paid. Two federal lawsuits were filed against Wynn Resorts following disclosure. Affected individuals were offered free credit monitoring and identity theft protection services. The breach is part of ShinyHunters’ broader 2025–2026 campaign targeting major enterprises via multiple attack vectors.

Technical Details

Initial Attack Vector
ShinyHunters exploited a vulnerability in Wynn Resorts' Oracle PeopleSoft HR platform to gain unauthorized access and exfiltrate employee data
Vendor / Product
Oracle PeopleSoft

Timeline

  1. 2025-09-01 Breach occurred
  2. 2026-02-26 Publicly disclosed
  3. 2026-02-26 Customers notified