What happened
Hit, Slovenia’s biggest gambling and tourism group, discovered a cyber incident early last week and pulled the plug on six of its casinos for roughly three days.
When the IT teams finally got the lights back on, slot machines were the first to spin again, but the tables, bingo halls and the loyalty platform stayed dark.
Technical impact
The breach knocked out the core gaming systems that run table games and bingo, as well as the back‑office cash‑register and hotel reception software. Staff resorted to handwritten receipts and, for a short spell, some employees were furloughed while the broken systems were patched.
- Hit casino gaming systems
- Hit loyalty program system
- Hit cash register systems
- Hit hotel reception desk systems
Who’s affected
Guests could only play slot‑machine games during the outage; anyone hoping for a table or a bingo win was left empty‑handed.
Hotel guests and casino staff also felt the pinch when the reception and cash‑register tools went dark.
Next steps for operators
Even without knowing the attacker’s identity, the incident underscores a few basics:
- Segment critical gaming and hospitality networks so a breach can’t cascade.
- Implement multi‑factor authentication on all admin consoles.
- Keep systems and third‑party software on the latest patches; test updates in a sandbox first.
- Deploy continuous monitoring and anomaly detection on transaction logs.
- Run tabletop exercises that simulate a full‑scale casino shutdown.
Slovenian police have been notified and are probing the case, so organizations should be ready to cooperate with law‑enforcement if evidence surfaces.
