Skip to content

Part IV: Financial Fraud · Internal Collusion & Employee Fraud

Scam #37: Electronic Gaming Machine Remote Manipulation by Employee

IT Insider ThreatSkill: Professional

How it works

Modern slot machines and electronic gaming machines (EGMs) are connected to casino management systems for monitoring, accounting, and configuration. An employee with remote access credentials or physical access to machine internals can: change game parameters including pay tables and RTP; trigger jackpots or bonus rounds; add free play credits; manipulate progressive meter amounts; disable security features; and install unauthorized hardware or software. The proliferation of server-based gaming and network-connected machines has increased this vulnerability. Some employees have used their technical maintenance access to trigger jackpots or modify machine configurations to favor accomplices.

Where it appears

Slot machines, electronic gaming machines, server-based gaming systems

On the record

Various cases of slot machine manipulation have been documented globally. In 2020, a group was reported to have exploited slot machine algorithms for $750,000 in payouts before detection. Server-based gaming systems present new attack surfaces that require enhanced security measures.

Published as a detection reference for surveillance, compliance and gaming-operations professionals. Thresholds and tuning are set by the property. Nothing here is instruction — the method is described so it can be recognised.

Related methods