Delta Dental of Virginia experienced a security incident in which an unauthorized party gained access to a corporate email account between March 21 and April 23, 2025. This breach resulted in the exposure of sensitive information belonging to approximately 146,000 customers, including names, Social Security numbers, government ID numbers, and protected health information. The company detected suspicious activity on April 23 and immediately launched an investigation with the assistance of external cybersecurity experts. There is currently no evidence that the compromised data has been misused, but Delta Dental of Virginia is offering affected individuals complimentary identity protection and credit monitoring services for one year.
Delta Dental of Virginia provides dental insurance and manages oral health programs for individuals, families, and employers across the state. The breach notification was filed with the Office of the Maine Attorney General, and the company has taken steps to notify impacted customers. The incident highlights the risks associated with email account compromises in the healthcare sector, particularly regarding the exposure of sensitive personal and health information. No evidence of data abuse has been reported so far, but customers are advised to remain vigilant for potential identity theft or fraud attempts.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
1 event from the most recent confirmed update back to the earliest known activity.
Delta Dental of Virginia disclosed a data breach impacting 145,918 customers. The available references report the scale of the incident but do not provide a more specific incident date, so the disclosure is dated from the earliest publication.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.