Security pros say once the attackers gain access to the ESXi servers, they essentially have control over MGM’s Windows systems, which can lead to additional data theft, system disruptions, and other malicious activities.
While details are still scarce, prior research points to that once the breach of the casinos was made, the threat group Scattered Spider exploited a vulnerable kernel-mode driver to gain high-level access to Windows privileges.