Confirmed breach. Intrusion May 17, 2026–May 20, 2026, discovered May 20, 2026 — the first regulatory filing landed 42 days later (flagged late). 19,064,700 individuals reported across the linked filings.
incident inc_f754743d01de46fb · merge_method human · confidence 100%
Litigation Timing
Supplemental
Notification delay
42days
Discovered → first regulatory filing
Discovery variance
0days
Range of discovered_at dates across filings
Leak precedence
Regulatory clocksOregon✗ OR AG >45dTexas✗ TX AG >30dMassachusetts⏱ MA AG >30dLeak gap⏱ Leak >30dWashington⏱ WA AG >30dFull clock table in Litigation Timeline
Leak SiteState AGConfirmedLifecycle stage 2 of 3: ConfirmedUnverified claimConfirmedEnforcedshinyhunters
32days
Gap between first leak claim and first regulatory filing
Filing span
48days
Time between earliest and latest filing
Not recorded for this incident
Materiality delta · SEC filing delay — no SEC 8-K in this cluster.
high sensitivity
Affected (total reported)
19,064,700
Data types
3
Government ID · PHI · PII
Jurisdictions
9
CA DE IA MA OR SC TX WA
Linked filings
9
Leak Site · State AG
Sensitive data
identity_government
Affected residents by state
per-filing reported counts
OR15,000,000
TX3,973,000
WA91,700
State AGs report only their own residents; bars show per-filing counts.
Timeline
Earliest sighting first · deep chronology in Litigation Timeline
9 filings across 9 jurisdictions · May 30, 2026 – Jul 17, 2026 · 2 milestones
Breach window
May 17, 2026 → May 20, 2026
When the intrusion reportedly occurred, per the linked filings
Breach discoveredletter-grounded
May 20, 2026
Reported by MASSACHUSETTS AG, SOUTH CAROLINA AG, WASHINGTON AG, CALIFORNIA AG, OREGON AG, DELAWARE AG, TEXAS AG filings
🌐GLOBALClaimed by ShinyhuntersFirst sightinglinked via operator-confirmed · 100%
The company failed to reach an agreement with us despite our incredible patience, all the chances and offers we made. They don't care. | Size: 234GB+ (compressed) | Updated: 30 May 2026 | SHA256: db3088225c36be26ce2b458fa7a190176d071441e2e0830c0d82143e6323a3e1
32 days
Most recent
8 State AG filingsJul 1, 2026 – Jul 17, 2026ExpandCollapse
MAWACASCIAORTX
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
DE
🏛️Massachusetts State AGLeaked → filing gap · 32dlinked via multistate filing link · 95%
DentaQuest LLC notified Massachusetts residents of a data breach occurring May 17-20, 2026. Unauthorized individuals accessed personal identification and dental/vision health information, which was subsequently posted on the internet. DentaQuest engaged cybersecurity experts, reported the incident to law enforcement, and offered 24 months of identity monitoring via Kroll.
DentaQuest, LLC, a health sector entity reported a phishing incident to the Washington Attorney General. The organization became aware of the incident on 2026-05-20 and filed notice on 2026-07-16. 91,700 Washington residents were affected. 57 days elapsed between awareness and notification. 3 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 91,700
WA AG >30dLeak >30d
🐻California State AGLeaked → filing gap · 47dlinked via multistate filing link · 100%
DentaQuest LLC disclosed that unauthorized individuals accessed its computer network between May 17 and May 20, 2026. The incident involved the exfiltration and public posting of personal identification and dental/vision health information (PHI) for adults, minors, and deceased individuals. DentaQuest engaged forensic experts, secured the network, and is offering 24 months of identity monitoring via Kroll.
Leak >30d
🌴South Carolina State AGLeaked → filing gap · 47dlinked via multistate filing link · 100%
DentaQuest LLC reported a data breach discovered on May 20, 2026, involving unauthorized access to its computer network between May 17 and May 20, 2026. The incident exposed personal identification, dental/vision health information, and for minors, Social Security numbers. DentaQuest engaged independent cybersecurity experts, reported the incident to law enforcement, and offered 24 months of identity monitoring via Kroll to affected individuals.
DentaQuest LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2026-07-16. The breach occurred during 5/17/2026 - 5/19/2026. The breach was discovered on 5/20/2026. 15,000,000 individuals were affected. Notice was sent on 7/16/2026.
DentaQuest, LLC based in Wellesley Hills, Massachusetts, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-05-20 and reported on 2026-07-17. 3,973,000 Texas residents were affected. 15,000,000 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Medical Information;Health Insurance Information;Date of Birth.
Affected (this filing): 3,973,000
TX AG >30dLeak >30d
💎Delaware State AGLeaked → filing gap · 48dlinked via multistate filing link · 100%
DentaQuest LLC notified affected individuals in Delaware of a data breach occurring May 17-20, 2026. Unauthorized individuals accessed personal identification and dental/vision health information, which was posted on the internet. DentaQuest engaged cybersecurity experts, reported to law enforcement, and offered 24 months of Kroll identity monitoring. Data types included names, SSNs, and health records.