Data leak
Wynn Resorts Data Breach - ShinyHunters Oracle PeopleSoft (21K Employees)
Primary Source βIncident Details
In September 2025, ShinyHunters exploited a vulnerability in Wynn Resorts’ Oracle PeopleSoft platform to access employee records. The breach was discovered in February 2026. ShinyHunters demanded a $1.5 million ransom with a February 23, 2026 deadline, threatening to leak data. Wynn Resorts confirmed the breach affected 21,775 employees, with Social Security numbers, names, phone numbers, and dates of birth compromised. After the company declined to comment on ransom payment, the hackers removed Wynn from their leak site β strongly suggesting a ransom was paid. Two federal lawsuits were filed against Wynn Resorts following disclosure. Affected individuals were offered free credit monitoring and identity theft protection services. The breach is part of ShinyHunters’ broader 2025β2026 campaign targeting major enterprises via multiple attack vectors.
Technical Details
- Initial Attack Vector
- ShinyHunters exploited a vulnerability in Wynn Resorts' Oracle PeopleSoft HR platform to gain unauthorized access and exfiltrate employee data
- Vendor / Product
- Oracle PeopleSoft
Timeline
- 2025-09-01 Breach occurred
- 2026-02-26 Publicly disclosed
- 2026-02-26 Customers notified