Were you recently affected by a data breach?

iDentalSoft Data Breach

iDentalSoft, a cloud-based dental practice management software provider, was named on October 9, 2026 by the Termite ransomware group, which claims it attacked the company. iDentalSoft has not confirmed a breach.

iDentalSoft
Date of Breach: October 9, 2026 (claimed by attackers; not confirmed)
CAU logo

Who was affected:

Clients of iDentalSoft

Impacted Data:

Not yet disclosed. The company has not confirmed a breach or stated what information may be involved

iDentalSoft, a cloud-based dental practice management software provider, has been named by the Termite ransomware group, which claims it attacked the company. The claim is dated October 9, 2026, and the company has not publicly confirmed a breach.

iDentalSoft’s Data Breach Investigation

iDentalSoft provides cloud-based practice management software and operational support to dental offices. A platform like this sits between a dental practice and its records. Depending on how a practice uses it, the software can hold scheduling data, patient contact details, insurance information, billing histories and clinical notes, as well as employee records for the practices and for the software company itself. That concentration of information in one vendor is a large part of why providers like this attract attackers.

On October 9, 2026, the ransomware monitoring site Ransomware.live listed iDentalSoft as a victim of the Termite ransomware group, and the attack was estimated to have occurred the same day. A second cybersecurity blog, HookPhish, also reported that Termite claimed responsibility for an attack on the dental practice management company. Everything on this page about the attack comes from the attackers’ own posting and from sites that track those postings.

It is important to be clear about what is and is not known. iDentalSoft has not, as of this writing, publicly confirmed that an incident took place, has not described how any intruder got in, and has not said whose information may be involved or how many people may be affected. No state attorney general filing or notice letter has been located. The sources we reviewed did not say what kind of data the group claims to hold or how much. Claims made by ransomware groups are not always accurate, so this page treats them as unverified allegations rather than established fact.

Ransomware operations of this kind typically work by breaking into a network, copying files, and then threatening to publish the stolen data on a leak site unless a ransom is paid. Posting a victim’s name is usually the first public step in that pressure campaign, and any stolen files may be released later if no deal is reached. Whether that has happened here is not known.

If the claim turns out to be accurate, the people who could be affected fall into more than one group. They include current and former employees of iDentalSoft, and patients of the dental practices that use its software. Patients may not recognize the name of the software company at all, because they deal with their dentist rather than with the vendor. That is one reason a notice from a vendor, or from a dental office describing a vendor incident, can be confusing to receive.

Dental and medical records are detailed. Insurance and billing paperwork can contain policy numbers, member identification numbers and payment details. Intake and consent forms often carry signatures, dates of birth, addresses and the names of family members or guarantors. Clinical notes can reveal diagnoses, treatments and medications. Any of these can be used to build a convincing phishing message, to commit insurance or medical identity fraud, or to pressure someone with sensitive information. We are describing what this kind of data generally allows, not what was taken in this incident.

When a covered healthcare provider or its business associate confirms that patient information was accessed without permission, federal and state breach notification rules generally require notice to the affected people, and larger incidents must also be reported to regulators. Those notices usually arrive by mail weeks or months after the incident, and they tend to be the first reliable source of details such as the dates involved, the data types exposed, and any credit monitoring offered. Until iDentalSoft says more, patients and staff are left to watch for official communication.

If you are a current or former employee of iDentalSoft, or a patient of a dental office that uses its software, there is no need to assume your information was taken, but it is reasonable to stay alert. Keep an eye out for a letter, review explanation of benefits statements from your dental and health insurers, and be careful with unexpected calls, texts or emails that mention your dental care. This page will be updated if iDentalSoft or a regulator publishes confirmed details about what happened.

When Did This Breach Occur?

Ransomware.live listed iDentalSoft as a Termite victim on October 9, 2026, and the attack was estimated to have occurred the same day. iDentalSoft has not confirmed when any intrusion began or when it was discovered, so the actual timeline of the incident remains unknown.

What Information Was Breached?

The sources we reviewed did not say what information the group claims to hold. iDentalSoft has not confirmed that any information was taken, and the specific data types affected for any individual have not been disclosed.

What You Can Do

If you are connected to iDentalSoft or a dental practice that uses its software, consider these steps:

  • Watch your mail for a notice and keep any letter you receive.
  • Review explanation of benefits statements and insurance activity for services you did not receive.
  • Check your credit reports for free at annualcreditreport.com, and consider a fraud alert or credit freeze with Equifax, Experian and TransUnion.
  • Be cautious with unexpected calls, texts or emails that mention your dental care, and confirm any request through a phone number you already trust.
  • Report suspected identity theft to the Federal Trade Commission at identitytheft.gov and to your state Attorney General.

File a Data Breach Lawsuit Against iDentalSoft

If you are a current or former iDentalSoft employee or a patient of a dental practice that uses its software, and you received notice about this incident or believe your information was exposed, you may have legal options. Companies that hold sensitive patient records are expected to safeguard them, and a class action can help hold them accountable when they fail to do so.

Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.

Were you recently affected by a data breach?
Other Data Breaches
Date of Breach: March 28, 2026 to April 12, 2026
Date of Breach: Discovered October 7, 2026
Date of Breach: Not publicly disclosed (discovered September 9, 2026)
Related News

Frequently Asked Questions

A data breach occurs when sensitive, confidential, or protected information is accessed, stolen, or disclosed without authorization. Data breaches often occur through phishing emails, malware, weak passwords, insider threats, or unsecured databases. Indicators of a data breach can include unexpected password resets, suspicious account activity, unauthorized transactions, or notifications from companies about compromised information.If you suspect your data has been compromised, you must take measures and act quickly. Change passwords, enable two-factor authentication, review your financial accounts for unusual activity and consider freezing your credit.

Once stolen, your personal information may be sold on the dark web or used for identity theft and financial fraud. In some cases, hackers use the data to extort companies or launch further attacks. Victims often face long-term risks, including damage to credit and privacy.

If you receive a data breach notification, don’t ignore it. Immediately change passwords for the affected account and any others that share credentials. Enroll in any free credit monitoring services offered and monitor financial statements closely.

To pursue a data breach claim, you’ll need documentation showing your information was compromised and proof of resulting harm, such as fraudulent charges, credit score damage, or identity theft reports. Notification letters, financial records, and communication with the breached company can help support your claim.

Yes. If a company fails to protect consumer data or delays notifying victims, it may be held liable under state and federal privacy laws. Many victims join class action lawsuits to recover financial losses and hold negligent organizations accountable.

Data breach settlements vary widely depending on the size of the breach, type of data compromised, and damages suffered by victims. Payouts may include cash compensation, identity theft protection, or reimbursement for losses. Many settlements range from a few hundred to several thousand dollars per person. A skilled data breach lawyer can guide victims through the complex legal process, ensuring their rights are protected. If you’ve received a data breach notification or believe your personal data was exposed, you may be eligible for compensation. Contact Class Action U to learn more about how to join a data breach lawsuit and understand the process of filing.