DentaQuest data breach exposes 23M records

Published July 8, 2026

DentaQuest is notifying more than 23 million people that attackers broke into its network and may have accessed personal and dental health information. The company says it secured its systems and is offering free credit monitoring to those affected.

Report priority
High
Involves
Sun Life U.S. Dental

What to do

If you are a DentaQuest member, or a Medicaid or CHIP patient covered through a DentaQuest dental plan, and you receive or have received a written breach notice from the company, enroll in the 24 months of free credit monitoring, fraud support, and identity theft recovery services DentaQuest is offering to notified individuals, and watch for phishing messages that reference the breach.

Reported details

DentaQuest says unauthorized individuals accessed its network between May 17 and May 20, 2026. It discovered the intrusion on May 20, secured its systems, notified law enforcement, and hired Kroll to determine the scope of affected data. Exposed information may include names, addresses, Social Security numbers, Medicaid, Medicare, and member ID numbers, plus dental or vision treatment, provider, diagnosis, and billing details.

The HIPAA Journal initially reported over 15 million affected individuals before DentaQuest's own notice put the figure above 23 million. No specific initial access method, ransomware group, or exploited software flaw has been publicly disclosed.

References