DentaQuest LLC Data Breach Notice (Massachusetts Attorney General)
If you were named in this filing, here’s what the filing says was exposed, and what to do about it.
DentaQuest LLC notified Massachusetts residents of a data breach in a filing reported to the Massachusetts Office of Consumer Affairs on July 16, 2026, and the notice lists social security numbers and medical records among the information exposed.
The exposure of your Social Security number alongside medical records creates a permanent risk that cannot be undone by a password change or a simple notification. With 522,000 people named in this filing, DentaQuest LLC has reported one of the larger breaches handled by Massachusetts authorities this year. The notice, filed on July 16, 2026, lists Social Security numbers and medical records as the categories involved.
A Social Security Number Cannot Be Replaced
When a Social Security number leaves an organisation’s control it stays valuable to identity thieves for the rest of your life. Unlike a credit card or password, it cannot be reissued on request. The same number that verifies your identity for taxes, employment, government benefits, and credit applications is now listed in a public filing. That combination makes it easier for someone to open accounts, file fraudulent tax returns, or claim benefits in your name.
Medical records add another lasting dimension. They can be used to commit insurance fraud, obtain prescription drugs illegally, or build a convincing synthetic identity when paired with your Social Security number. Once stolen, health information is difficult to retract because it reflects real treatment history that providers and insurers continue to reference.
What the Filing Does and Does Not Tell Us
The Massachusetts Attorney General’s office received notice from DentaQuest LLC on July 16, 2026. The record states that Social Security numbers and medical records were exposed for 522,000 individuals. No passwords appear in the listed categories, which means there is no need to reset any DentaQuest account password solely because of this incident.
The filing does not disclose when the incident itself occurred, how the information was accessed, or whether the data was copied and taken. Those details remain unknown to the public. What matters for you is what was confirmed: your Social Security number and medical information are among the categories named.
How to Determine Whether This Affects You
DentaQuest is required to notify affected individuals directly, usually by mail. If you have not received a letter, it is likely your information was not included. However, letters can go to outdated addresses. Anyone who has moved since the incident should contact DentaQuest directly to confirm whether their records were part of the 522,000 affected.
The Lifelong Nature of These Two Data Types
Most data exposed in breaches loses relevance over time. Social Security numbers and medical records do not. A thief can wait months or years before using them. Credit monitoring helps detect new accounts opened in your name, but it cannot prevent every form of fraud. Medical identity theft may not even appear on a credit report; it surfaces when you are denied coverage, receive bills for care you never received, or see unexpected entries in your insurance explanation of benefits.
Because these identifiers cannot be changed, the practical goal is to make them harder to use. That means watching for misuse rather than hoping the exposure never happens.
Credit and Identity Monitoring as Ongoing Defense
Place a freeze on your credit files with the three major bureaus. This stops new creditors from accessing your file without your explicit permission, blocking many common identity-theft tactics. The freeze is free and reversible when you need to apply for credit yourself.
Review every Explanation of Benefits statement from your health insurer. Look for services you did not receive or providers you did not visit. Report discrepancies immediately; catching fraudulent claims early limits damage to both your finances and your medical history.
Request your annual free credit reports and read them line by line. Look for accounts you do not recognize. Even small unfamiliar entries can be early warning signs.
Tax and Government Benefit Vigilance
Identity thieves sometimes file tax returns before the legitimate taxpayer does. Check your IRS online account regularly in the months leading up to tax season. If a return has already been filed under your Social Security number, the IRS will usually send a letter. Responding quickly is the only way to resolve it.
The same number used for taxes is often used for unemployment benefits, stimulus payments, or other government aid. Monitor any state benefit portals you have used in the past. Unusual activity there can indicate someone is trying to claim benefits in your name.
Medical Identity Theft Is Harder to Spot
Unlike financial fraud, medical identity theft can remain invisible for years. You may not discover it until you need care and learn that your insurance has already paid for treatments you never received, pushing you toward your out-of-pocket maximum or causing denials.
Keep every insurance statement. Compare dates of service and provider names against your own calendar. If something looks wrong, contact your insurer at once. Some insurers now offer medical identity monitoring; ask whether yours provides it at no extra cost.
The 522,000 people named in this notice represent a significant population. The scale alone does not prove carelessness, but it does show how many individuals now face the same permanent identifiers in unknown hands.
No one can erase the exposure. What you can control is how quickly you detect misuse and how effectively you limit its consequences. Start with the credit freeze and the habit of checking Explanation of Benefits statements. Those two steps address the two categories actually named in the filing: the unchangeable Social Security number and the sensitive medical record.
What to do now
Steps that match what this notice says was exposed
Every step below is free and you do it yourself, and none of it depends on DentaQuest LLC.
- Freeze your credit — this is the one that matters. A freeze is free, it takes minutes, and it has to be done separately at all three bureaus: Equifax, Experian and TransUnion. It stops a new account being opened in your name, which is what a Social Security number in the wrong hands is for. You can lift it temporarily whenever you need credit.
- Read your next explanation of benefits. Medical identity theft shows up as treatment you did not receive, billed to your policy and written into your medical record. Your insurer can flag the policy, and you can request an accounting of disclosures from the provider named here.
One more, whatever was exposed: a breach notice is a favourite disguise for a phishing email. If a message about this arrives, do not use its links — go to the company’s site yourself, or call the number on your statement.
Report details & sourcing
Related breaches
ReliaQuest, LLC Listed by Shinyhunters Ransomware Group
This time the post is about you, not us. Let Mandiant report and advise on us accurately, go away. D…
Trezor Shipping Data Breach — 13,689 Hardware Wallet Buyers, Home Addresses Included
ShipMonk, a logistics provider used by Trezor, was breached through a vulnerability in the third-par…
Match Group (Tinder, Hinge, OkCupid) Data Breach — January 2026
ShinyHunters claimed responsibility for stealing over 10 million Match Group user records in early 2…