Delta Dental of Washington Targeted by 8Base Ransomware Group

Incident Date: Jan 16, 2025

Attack Overview
VICTIM
Delta Dental of Washington
INDUSTRY
Insurance
LOCATION
USA
ATTACKER
8base
FIRST REPORTED
January 16, 2025

Delta Dental of Washington Falls Victim to 8Base Ransomware Attack

On January 16, 2025, Delta Dental of Washington, a leading dental benefits provider, experienced a significant ransomware attack orchestrated by the notorious 8Base ransomware group. This incident has raised concerns about the security of sensitive patient data and the potential impact on the organization's operations.

Company Profile and Industry Standing

Delta Dental of Washington, headquartered in Seattle, is a prominent not-for-profit dental benefits provider. Founded in 1954, the organization has grown to serve over 1.9 million people through employer-sponsored programs. It is part of the Delta Dental Plans Association, which is the largest dental benefit provider system in the United States. The company is known for its comprehensive dental coverage, including the DeltaCare and Uniform Dental Plan, and its commitment to improving oral health across Washington State.

Details of the Ransomware Attack

The 8Base ransomware group claimed responsibility for the attack, stating that they had exfiltrated sensitive data, including patient information, X-rays, and insurance documents. The threat actors warned that this data could be accessed by unauthorized entities, posing a serious risk to the privacy and security of affected individuals. The attack highlights vulnerabilities in Delta Dental's cybersecurity defenses, which may have been exploited through phishing emails or compromised credentials.

Profile of the 8Base Ransomware Group

Emerging in March 2022, the 8Base ransomware group has quickly become a significant threat, particularly to small and medium-sized enterprises. Known for their double extortion tactics, they encrypt and exfiltrate data, threatening to release it publicly if ransoms are not paid. The group primarily targets organizations in the United States, Brazil, and the United Kingdom, leveraging sophisticated techniques such as the use of SmokeLoader and SystemBC malware families to infiltrate systems.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.