Slovenian casinos reopen after cyberattack knocked gaming systems offline

One of Slovenia’s largest gambling and tourism groups has begun reopening its casinos after a cyberattack forced them to shut down for several days.
Hit, which operates casinos, hotels and other tourism businesses in Slovenia and Bosnia and Herzegovina, said it detected a cybersecurity incident early last week. The attack on the company’s servers forced six Hit-operated casinos to close for roughly three days.
In a statement Friday, Hit said it had restored enough of its IT infrastructure to gradually reopen the affected casinos, but some gaming functions and its loyalty system remained unavailable. Guests were initially limited to a selection of slot-machine games while the company worked to restore other systems and applications.
“Maintaining and further strengthening our IT infrastructure and security will remain one of the company’s development priorities going forward,” Sandi Bratasevec, chairman of Hit’s management board, said in a statement.
Hit has not provided a further update on whether operations have since fully returned to normal. As of Monday, the notice on the company’s website still said it was operating on a limited basis, with table games and bingo not yet available.
The company has disclosed few details about the attack, and has not said whether any data was stolen or disclosed how hackers gained access to its systems. It has also not said whether a ransom was demanded or paid.
“We cannot publicly comment on any further details of the information security incident because the investigation is still ongoing,” Hit said.
Local media reported the disruption affected cash registers at casinos, with some customers receiving handwritten receipts at cafes. Hotel reception desks also experienced problems.
Some employees were temporarily furloughed because systems needed for normal casino operations were unavailable. Hit later said those workers were returning to work as systems came back online.
Slovenian police confirmed to local media that they had been notified of the incident and were investigating.
Casino and gaming companies have repeatedly been targeted by cybercriminals. Las Vegas-based Boyd Gaming said last year that hackers had stolen employee information, although the incident did not disrupt its operations. Bragg Gaming Group also disclosed an attack affecting its computer systems.
In 2023, ransomware attacks caused major disruptions at U.S. casino operators MGM Resorts International and Caesars Entertainment. MGM estimated the incident reduced its profit by about $100 million, while Caesars disclosed that hackers stole customer loyalty program data.
References in this story
- V družbi Hit intenzivno rešujejo kibernetsko varnostno situacijo | HIT d.d. Nova Gorica, Slovenia www.hit.si Nova Gorica, 25. 8. 2026 - V družbi Hit so v noči iz ponedeljka na torek, 25. avgusta 2026, zaznali kibernetski varnostni incident. Strokovne ekipe so nemudoma pristopile k reševanju situacije, o dogodku so bile takoj…
- V Hitu ponovno odpirajo igralnice | HIT d.d. Nova Gorica, Slovenia www.hit.si Nova Gorica, 28. 8. 2026 – V družbi Hit so po torkovem kibernetskem napadu uspešno vzpostavili pogoje za delovanje informacijskih sistemov, ki v tem trenutku omogočajo odpiranje igralnic.
- Casino company Boyd Gaming hacked, employee data stolen therecord.media Casino and hotel operator Boyd Gaming reported a data breach to federal regulators, saying that an intruder accessed information on employees and “a limited number of other individuals."
- Casino gaming company Bragg says hackers accessed ‘internal computer environment’ therecord.media Bragg Gaming Group said on Monday that it “believes that the data breach was limited to Bragg’s internal computer environment” based on its preliminary investigation.
- Advanced Cyber Threat Intelligence | Recorded Future www.recordedfuture.com Get real-time, actionable cyber threat intelligence with Recorded Future. Mitigate cyber risks, prioritize threats, and proactively secure your organization.
- Advanced Cyber Threat Intelligence | Recorded Future www.recordedfuture.com Get real-time, actionable cyber threat intelligence with Recorded Future. Mitigate cyber risks, prioritize threats, and proactively secure your organization.
- Daryna Antoniuk (@darynant.bsky.social) bsky.app Cybersecurity Reporter at Recorded Future News. Ex at The Kyiv Independent/Forbes/The Kyiv Post 📍Kyiv, Ukraine



