When a family dental practice shows up on a ransomware leak-site tracker, every small dental office feels the same pressure: practice-management and charting software, digital X-ray and imaging, the patient-communication and online-scheduling tools, front-desk email, card terminals, and the IT and software vendors who connect in remotely. Public aggregators indexed All Smiles Dental of Falls Church as a claimed victim of The Gentlemen ransomware group around October 9, 2026.
Ransomware.live lists discovery around 2026-10-09 19:22 UTC, with an actor-posted date of Oct. 6 (country US; activity Healthcare in the tracker taxonomy). The listing ties the claim to allsmilesnova.com, a dental practice in Falls Church, Virginia, in the Northern Virginia suburbs of Washington, DC. The practice's site returned a Cloudflare challenge page (HTTP 403) to our automated check at publish research, so we are not quoting anything from it. A plaintiff-firm "lawyers investigate" page about the practice appeared on Oct. 9; that is attorney outreach, not a practice disclosure. As of our sources, we have no confirmed practice disclosure of encryption, patient data (PHI) theft, a HIPAA breach notice, appointment disruption, or ransom payment, so we treat The Gentlemen listing as a leak-site / tracker claim only.
For dental practices, DSOs, and other small healthcare offices across Georgia, Tennessee, Alabama, and New York, the useful lesson is identity hygiene, tested backups of the practice-management database and imaging, and a calm patient-communication plan, not inventing a breach the named practice has not confirmed.
What trackers report, and what they do not
Public facts from aggregators: All Smiles Dental of Falls Church; The Gentlemen claim; discovery ~Oct. 9, 2026 (actor date ~Oct. 6); U.S. healthcare listing tied to allsmilesnova.com. The same group added a large batch of U.S. small and mid-size organizations to its leak site on Oct. 9. Aggregators republish the actor listing; that is not a verified inventory of patient charts, X-rays, insurance details, or payment data. We do not have a practice-confirmed encryption event, confirmed PHI exposure, a breach notice on the HHS portal, closed operatories, or a payment. Do not invent those details from silence, and do not treat a "Healthcare" tag or a law-firm solicitation as proof that patient records were taken.
Small dental practices share a familiar pattern: a practice-management system such as Dentrix, Eaglesoft, or Open Dental on a local server or in the cloud, an imaging server tied to sensors and panoramic units, front-desk PCs that share logins, Microsoft 365 or Google email, a patient-reminder and review platform, and remote-support tools left installed for the IT provider, the imaging vendor, and the software company.
Why Brotherly-footprint dental practices should treat this as their drill
Patients still show up for cleanings and emergencies whether or not a headline hits the inbox. Offices that lean on password-only email, shared front-desk accounts, untested backups of the practice-management database, and always-on vendor remote tools inherit the headline as scam and continuity risk, even when your practice is in Rome, Northwest Georgia, metro Atlanta, Chattanooga, Birmingham, Auburn/Opelika, or Wallkill, NY, and the claimed victim is a Northern Virginia office.
Post-headline scams are predictable in dentistry: spoofed "your patient data was exposed, click to verify" texts and emails to patients, fake "software vendor support" calls asking for remote access, and "updated bank details" messages to the office manager from a supposed lab or supplier. Ask: if the practice-management system were down for a week, how would you still see the day's schedule, pull X-rays, contact patients, and spot fake recovery calls?
Write a one-page continuity card: who to call, where a printed or offline copy of the next few days' schedule lives, where the last known-good backup of the practice-management and imaging data is, and who decides what patients are told. Do it before the next tracker post arrives.
Clear takeaway
Treat The Gentlemen leak-site claim against All Smiles Dental of Falls Church as a continuity and scam-hygiene drill for dental practices in Brotherly's footprint: require MFA on email, the practice-management system, imaging, and admin logins; protect the practice-management database and imaging with immutable copies and a restore test; give every team member a named login; inventory vendor remote access; and plan patient communications, without inventing PHI theft, encryption, downtime, or payment the practice has not confirmed.
Actions to take this week
- Require MFA on email, the practice-management and imaging systems, insurance and lab portals, and remote-access tools; password-only access is still the cheapest way in.
- Verify immutable, offsite backups of the practice-management database and imaging server, and run a restore test this month, not just a "backup completed" email.
- Replace shared front-desk and operatory logins with named accounts so access can be traced and revoked one person at a time.
- Inventory vendor remote access (IT provider, imaging vendor, practice-management support): unique accounts, MFA, sessions you approve, and remove tools nobody uses.
- Brief the team and patients on scam texts and calls: the practice will never ask patients to "verify" data through a link, and staff never grant remote access to an unscheduled caller.
Brotherly Technology helps dental practices, specialty clinics, and other healthcare SMBs across Rome, Northwest Georgia, metro Atlanta, and our TN/AL/NY (Wallkill) footprint turn ransomware headlines into a short continuity and HIPAA-minded review, without inventing details a named practice has not confirmed. The Gentlemen claim against All Smiles Dental of Falls Church is a timely reminder to run that drill now.
Sources:
- Ransomware.live: All Smiles Dental of Falls Church / The Gentlemen. Discovery ~2026-10-09 19:22 UTC; actor date ~2026-10-06; U.S. healthcare listing; claim-level only.
- allsmilesnova.com, the domain on the tracker listing (Falls Church, VA dental practice). The site returned a Cloudflare challenge to our check, and we cite no incident acknowledgment from the practice.