FlagThis — Daily Cybersecurity Intelligence Briefing

FILTERING BY: CLEAR FILTER

DentaQuest Data Breach: ShinyHunters Exfiltrates 234 GB of PHI and PII

In May 2026, the threat group ShinyHunters exfiltrated 234 GB of sensitive data from dental benefits administrator DentaQuest. The breach compromised Protected Health Information (PHI) and Personally Identifiable Information (PII), including Social Security numbers and longitudinal clinical records for an estimated 26 million individuals. Initial forensic indicators suggest the attack vector involved either credential stuffing or the exploitation of third-party software vulnerabilities. Following unsuccessful ransom negotiations, the actor published the dataset on a Tor-based leak site. The incident has triggered investigations by the HHS Office for Civil Rights and multiple class-action lawsuits, highlighting the high-value nature of healthcare administration datasets for identity fraud.

DentaQuest Data Breach: 2.6 Million Dental Member Records Exfiltrated

DentaQuest, a major dental benefits administrator, has suffered a significant data breach resulting in the exfiltration of approximately 234GB of sensitive records belonging to 2.6 million members. Attributed to the threat actor group ShinyHunters, the breach includes high-value Protected Health Information (PHI), dental insurance records, and Personally Identifiable Information (PII). While the specific initial access vector—potentially involving credential theft, zero-day exploitation, or cloud misconfigurations—is still being determined, the incident presents an acute risk for medical identity theft and sophisticated phishing campaigns. Immediate forensic investigation into lateral movement and data egress protocols is critical for remediation and regulatory compliance.


LINK COPIED TO CLIPBOARD