ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

Insurance giant Delta Dental says MOVEit Transfer breach impacted almost 7m individuals

Linked InXFacebook
bookmark_borderSave to Library

San Francisco-based insurance company Delta Dental of California said it suffered a breach of the sensitive personal information of almost 7 million individuals as a result of the Clop ransomware group exploiting a zero-day vulnerability in the MOVEit Transfer web application.In a recent filing with the Office of the Maine Attorney General, Delta Dental of California, which provides services to 45 million people across 15 US states, said it used Progress Software’s MOVEit Transfer web application to send and receive files securely and was impacted after cyber criminals exploited a zero-day vulnerability in the application earlier this year.After being notified by Progress Software, the manufacturer of MOVEit software on June 1, Delta Dental launched a thorough investigation, with assistance from third party cyber security experts, and took steps to contain and remediate the incident.“On July 6, 2023, the investigation confirmed that Company information on the MOVEit platform had been accessed and acquired without authorisation between May 27, 2023 and May 30, 2023. On November 27, 2023, the Company determined what personal information was affected and to whom it belonged,” the insurance provider said.Delta Dental’s filing with the regulator revealed that at least 6,928,932 individuals were impacted by the data security incident. The compromised information included the names, addresses, Social Security numbers, driver’s license numbers, other state identification numbers, passport numbers, financial account information, tax identification numbers, individual health insurance policy numbers, and health information.“The Company stopped access to the MOVEit software, removed the malicious files, conducted a thorough analysis of the MOVEit database, applied the recommended patches from Progress Software Corporation, and reset administrative passwords to the MOVEit system,” Delta Dental said.“The Company also enhanced unauthorised access monitoring related to the MOVEit Transfer file access, malicious activity, and ransomware activity. In addition to the Company’s own investigation, law enforcement has been notified,” it added.The insurance provider has urged its customers to remain vigilant and keep an eye out for any suspicious activities in their credit report. Additionally, it is providing complimentary credit monitoring and identity theft restoration services for 24 months via Kroll to all individuals affected by the breach.Earlier this month, Pan-American Life Insurance Company (PALIC), another major insurance provider affected by the global data security incident involving the MOVEit Transfer web application, said that the incident impacted about 200,000 people across the United States.

Linked InXFacebook
bookmark_borderSave to Library
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winston House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543