Were you recently affected by a data breach?

Soniva Dental Care Data Breach

Soniva Dental Care, a South Texas dental network, may have suffered a data breach after the ransomware group The Gentlemen claimed a June 2026 attack, reportedly affecting at least 30,000 Texans. Learn what’s known and how to protect yourself.

Soniva Dental Care
Date of Breach: May-June 2026 (irregularities detected ~May 26, 2026; ransomware group claim ~June 4, 2026)
CAU logo

Who was affected:

Clients of Soniva Dental Care

Impacted Data:

Not publicly disclosed by the company; potentially includes patient names, contact information, dates of birth, insurance information, and dental/medical treatment records

Soniva Dental Care operates a network of dental clinics across South Texas, along with an affiliated practice in Massachusetts. According to public reporting and dark web monitoring, the company experienced a cybersecurity incident in mid-2026 that may have exposed sensitive patient information. Companies entrusted with medical and personal data have a responsibility to safeguard it, and when that trust is broken, affected patients deserve clear answers.

Soniva Dental Care’s Data Breach Investigation

Soniva Dental Care is a dental services organization that manages more than a dozen clinics throughout South Texas, along with an affiliated practice in Massachusetts. In late May 2026, the company’s IT support provider identified irregularities in Soniva Dental Care’s remote access systems, prompting an internal review. Shortly afterward, the ransomware group known as The Gentlemen claimed responsibility for a cyberattack on Soniva Dental Care, posting the company’s name and samples of allegedly stolen data to its dark web leak site on or around June 4, 2026.

As of this writing, Soniva Dental Care has not publicly confirmed the incident or issued a formal notification describing exactly what patient information was accessed. Dark web monitoring firms and threat intelligence trackers that catalog ransomware group activity corroborate that the company’s name appeared on the group’s leak site, and public reporting indicates the breach may affect at least 30,000 Texans. Multiple patients of Soniva Dental Care’s affiliated clinics have since filed lawsuits alleging the company failed to adequately protect sensitive patient data and delayed notifying those affected.

Soniva Dental Care’s affiliated network reportedly includes Ziva Dental, Wise Dental, Wilson Dental, Portland Dental, Mysa Dental, Kashi Dental, Lone Star Braces, Dental Hut, FloMo Dental, Allwyn Dental, Azle Smiles, and Agave Dental locations in Kenedy and Floresville, Texas, as well as Whalom Dental in Fitchburg, Massachusetts. Patients of any of these affiliated practices could potentially be impacted by the same incident, even if they never visited a location branded specifically as Soniva Dental.

Healthcare organizations, including dental practices, have become an increasingly common target for ransomware groups. Medical and dental providers typically store a uniquely valuable combination of data, including Social Security numbers, insurance information, treatment histories, and billing records, that can be resold or used for identity theft and insurance fraud long after a breach occurs. Unlike a stolen credit card, which can simply be canceled and reissued, medical identity information is difficult or impossible to change, making healthcare data breaches especially damaging for the people affected.

Ransomware groups like The Gentlemen typically use a double extortion model: in addition to encrypting a victim organization’s internal systems, they exfiltrate data beforehand and threaten to publish it unless a ransom is paid. This tactic pressures victim organizations even if they are able to restore operations from backups, since the threat of public data exposure remains. When a healthcare provider’s systems are compromised this way, patients often only learn their information may have been exposed well after the fact, sometimes from news reports or lawsuits rather than a direct notification from the company itself.

Under most state data breach notification laws, organizations that experience a security incident involving personal information are required to notify affected individuals within a defined window, and in some cases to notify state regulators as well. Delays in notification, or notifications that omit specifics about what information was exposed, are a recurring source of frustration and potential legal exposure for organizations that experience these attacks. Patients and former patients of Soniva Dental Care and its affiliated clinics who have not yet received a clear explanation of what happened may want to stay alert for updates and consider speaking with legal counsel about their options.

Because Soniva Dental Care has not yet released a detailed public accounting of the incident, much about the scope and timeline of the breach remains unclear. Patients who received a notification letter, or who learn later that their information was involved, should keep any correspondence from the company, since it may be relevant to a future legal claim. This page will be updated as more information becomes available from the company, regulators, or ongoing litigation.

When Did This Breach Occur?

According to public reporting, Soniva Dental Care’s IT support provider first identified irregularities in the company’s remote access systems around May 26, 2026. The ransomware group The Gentlemen claimed responsibility for the attack and posted the company to its dark web leak site on or around June 4, 2026. As of this writing, Soniva Dental Care has not issued a public notification confirming the exact dates of unauthorized access or how long its systems may have been exposed.

What Information Was Breached?

Soniva Dental Care has not publicly disclosed a specific list of the data elements involved in this incident. Because the affected systems reportedly included remote access infrastructure tied to patient records, the categories of information typically maintained by a dental practice, such as patient names, contact details, dates of birth, insurance information, and treatment records, could potentially be at risk, though this has not been confirmed by the company. If Soniva Dental Care releases a formal breach notification specifying which categories of information were compromised, this page will be updated accordingly.

What You Can Do

If you are a current or former patient of Soniva Dental Care or one of its affiliated clinics, there are steps you can take to protect yourself while more information becomes available:

  • Monitor your bank and insurance statements for unfamiliar activity.
  • Request a free credit report from each of the three major credit bureaus and review it for accounts you don’t recognize.
  • Consider placing a fraud alert or credit freeze on your credit files.
  • Watch for phishing emails, calls, or letters that reference Soniva Dental Care or your dental treatment, since scammers sometimes use breach news to target victims.
  • Keep any notification letter or email you receive from Soniva Dental Care, since it may be needed to support a legal claim.

If Soniva Dental Care offers free credit monitoring or identity theft protection as part of a formal breach response, consider enrolling as soon as it becomes available.

File a Data Breach Lawsuit Against Soniva Dental Care

If you were a patient of Soniva Dental Care or one of its affiliated dental practices and believe your personal or medical information may have been exposed in this incident, you may be entitled to compensation. Companies that store sensitive patient data are expected to maintain reasonable safeguards to protect it, and when those safeguards fail, the people affected can be left dealing with the fallout for years.

Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.

Were you recently affected by a data breach?
Other Data Breaches
Date of Breach: May-June 2026 (irregularities detected ~May 26, 2026; ransomware group claim ~June 4, 2026)
Date of Breach: May 27, 2026
Related News

Frequently Asked Questions

A data breach occurs when sensitive, confidential, or protected information is accessed, stolen, or disclosed without authorization. Data breaches often occur through phishing emails, malware, weak passwords, insider threats, or unsecured databases. Indicators of a data breach can include unexpected password resets, suspicious account activity, unauthorized transactions, or notifications from companies about compromised information.If you suspect your data has been compromised, you must take measures and act quickly. Change passwords, enable two-factor authentication, review your financial accounts for unusual activity and consider freezing your credit.

Once stolen, your personal information may be sold on the dark web or used for identity theft and financial fraud. In some cases, hackers use the data to extort companies or launch further attacks. Victims often face long-term risks, including damage to credit and privacy.

If you receive a data breach notification, don’t ignore it. Immediately change passwords for the affected account and any others that share credentials. Enroll in any free credit monitoring services offered and monitor financial statements closely.

To pursue a data breach claim, you’ll need documentation showing your information was compromised and proof of resulting harm, such as fraudulent charges, credit score damage, or identity theft reports. Notification letters, financial records, and communication with the breached company can help support your claim.

Yes. If a company fails to protect consumer data or delays notifying victims, it may be held liable under state and federal privacy laws. Many victims join class action lawsuits to recover financial losses and hold negligent organizations accountable.

Data breach settlements vary widely depending on the size of the breach, type of data compromised, and damages suffered by victims. Payouts may include cash compensation, identity theft protection, or reimbursement for losses. Many settlements range from a few hundred to several thousand dollars per person. A skilled data breach lawyer can guide victims through the complex legal process, ensuring their rights are protected. If you’ve received a data breach notification or believe your personal data was exposed, you may be eligible for compensation. Contact Class Action U to learn more about how to join a data breach lawsuit and understand the process of filing.