Boyd Gaming Corporation Experiences Cybersecurity Incident

Boyd Gaming Corporation recently experienced a significant cybersecurity incident in which an unauthorized third party accessed the company's internal IT system. Although the incident has had no impact on the company's properties or business operations, it has resulted in the removal of certain employee and individual data. The company has taken swift action to respond to the incident, working with external cybersecurity experts and federal law enforcement authorities to mitigate the effects. As of the filing date, the incident is not expected to have a material adverse effect on Boyd Gaming's financial condition or results of operations.

Key Takeaways:

  • The cybersecurity incident occurred when an unauthorized third party accessed Boyd Gaming's internal IT system, resulting in the removal of employee and individual data.
  • The company has taken swift action to respond to the incident, working with external cybersecurity experts and federal law enforcement authorities.
  • Boyd Gaming maintains a comprehensive cybersecurity insurance policy that is expected to cover costs associated with incident response, forensic investigations, and potential regulatory fines.
  • The company has notified impacted individuals and will notify its various regulators and other governmental agencies as required.
  • As of the filing date, the incident is not expected to have a material adverse effect on Boyd Gaming's financial condition or results of operations.
  • The company's forward-looking statements were highlighted, cautioning that actual results may differ from expectations due to various risks and uncertainties, including the potential discovery of additional information related to the incident.
  • The company's relationship with customers, employees, and governmental regulators may be impacted by the incident.
  • The incident may result in additional costs and potential regulatory inquiries and/or litigation.

Statistics:

  • The cybersecurity incident occurred on an unspecified date.
  • Approximately [REDACTED] employee and individual data were removed from the company's IT systems.
  • The company has notified [REDACTED] individuals of the incident and will notify additional individuals and regulators as required.
  • As of September 23, 2025, the incident has not had a material adverse effect on Boyd Gaming's financial condition or results of operations.
  • The company's cybersecurity insurance policy has a policy limit of [REDACTED] and a deductible of [REDACTED].

Sources:

  • Boyd Gaming Corporation SEC Form 8-K filing (September 23, 2025)
  • Securities Exchange Act of 1934, as amended (Section 18)