MCNA Dental agreed to a proposed multimillion-dollar settlement to resolve consolidated class action litigation stemming from a 2023 LockBit ransomware attack and data theft that exposed the personal, insurance, and health information of nearly 9 million people. Many of those affected were children enrolled in government-sponsored dental programs, and the incident also impacted more than 100 organizations connected to MCNA’s services, including state agencies and public benefit entities.
The settlement, filed in Florida federal court, provides up to $2,500 per class member for undocumented out-of-pocket losses, two years of medical data monitoring, and $1 million in identity theft coverage, along with administrative and legal costs. Plaintiffs alleged MCNA maintained negligent security practices and failed to protect sensitive data before LockBit allegedly demanded $10 million and published stolen information when the ransom was not paid; MCNA denied wrongdoing but agreed to continue taking reasonable steps to improve its security posture.

See attribution, scope, and your downstream exposure.
4 events from the most recent confirmed update back to the earliest known activity.
A New York State regulatory action imposed a $2 million fine on MCNA Dental in connection with the breach. This adds a government enforcement development beyond the previously documented attack details and civil settlement.
According to the lawsuits summarized in the references, LockBit demanded a $10 million ransom from MCNA Dental. After MCNA allegedly refused to pay, the group published the stolen data.
In 2023, MCNA Dental suffered a LockBit ransomware attack and data theft that affected nearly 9 million individuals. The breach also impacted more than 100 organizations connected to MCNA's services, including state agencies and public benefit entities.
On 2026-06-12, MCNA Dental filed a proposed multimillion-dollar settlement in Florida federal court to resolve consolidated class action litigation tied to the 2023 breach. The settlement includes up to $2,500 per class member for undocumented out-of-pocket losses, two years of medical data monitoring with $1 million theft coverage, and payment of administrative and legal costs.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
4 references tracked. Mallory keeps watching after this page renders.
govinfosecurity.com
Open sourcebankinfosecurity.com
Open sourcehealthcareinfosecurity.com
Open sourceismg-cdn.nyc3.cdn.digitaloceanspaces.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.