DentaQuest disclosed a security incident that exposed sensitive personal and health-related information belonging to nearly 4 million individuals after attackers gained unauthorized access to its internal network. The company said it detected the intrusion on May 20 and later determined the threat actors had been inside since May 17, during which time confidential data was stolen. A filing cited by regulators in Texas put the affected population at up to 3,973,000 people.
The compromised data reportedly included names, personal identifiers, and dental or vision information such as provider names, diagnoses, treatments, and billing details. DentaQuest is offering affected individuals two years of identity protection and credit monitoring through Kroll. The incident follows claims by ShinyHunters that it had breached DentaQuest and obtained more than 2.6 million unique email addresses along with names, addresses, and phone numbers.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
DentaQuest disclosed a data security incident affecting up to 3,973,000 individuals and said exposed data included personal identifiers and dental or vision health information. The company also offered affected people two years of identity protection and credit monitoring through Kroll.
In May, the ShinyHunters group claimed it had breached DentaQuest and stolen more than 2.6 million unique email addresses along with names, addresses, and phone numbers. The source does not provide a specific day for the claim.
DentaQuest said it detected unauthorized access to its internal network on May 20. This detection prompted an investigation into the scope and impact of the incident.
DentaQuest's investigation found that attackers gained access to its internal network on May 17. The intrusion ultimately led to the theft of sensitive personal and health-related information.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.