Interestana
Home/News/Aesto Health Reports Data Breach Impacting 9.5 Million Patients
BleepingComputer2 min read

By Interestana AI Editorial — AI-drafted, human-overseen. How we report

Aesto Health Reports Data Breach Impacting 9.5 Million Patients

Aesto LLC, operating under the name Aesto Health, has announced a substantial data breach that has impacted more than 9.5 million individuals. The company disclosed this incident on May 28, 2024, detailing that sensitive personal and protected health information was accessed by unauthorized parties. The breach was initially discovered on March 29, 2024, and an investigation was immediately launched to determine the scope and nature of the incident. Aesto Health stated that the unauthorized access occurred between March 28, 2024, and April 10, 2024.

The compromised data may include a wide range of personal identifiers and health-related information. Specifically, the types of information potentially exposed encompass patient names, addresses, dates of birth, social security numbers, medical record numbers, health insurance information, and details about medical treatments or diagnoses. The company has emphasized that the full extent of the data accessed is still under investigation, but the potential for widespread identity theft and medical fraud is a significant concern for affected individuals. Aesto Health is working with third-party forensic investigators to assist in their ongoing inquiry and to implement enhanced security measures.

In response to the breach, Aesto Health is offering identity theft protection and credit monitoring services to all affected individuals at no cost. These services typically include credit report monitoring, fraud alerts, and identity restoration assistance. The company has also established a dedicated call center to address patient concerns and provide information about the breach and the protective services available. Affected individuals are encouraged to remain vigilant against potential instances of identity theft and fraud by reviewing their account statements and credit reports for any suspicious activity. Aesto Health has begun mailing notification letters to individuals whose information may have been involved, providing them with specific details and instructions on how to enroll in the offered protection services.

This incident highlights the ongoing challenges faced by healthcare organizations in safeguarding sensitive patient data against sophisticated cyber threats. The healthcare sector is a prime target for cybercriminals due to the high value of protected health information on the black market. Breaches of this magnitude can have severe consequences for individuals, including financial loss, reputational damage, and emotional distress. Regulatory bodies such as the Department of Health and Human Services (HHS) are likely to scrutinize Aesto Health's security practices and response to the incident. The company has stated its commitment to enhancing its cybersecurity infrastructure and protocols to prevent future occurrences and to rebuild trust with its patients and partners.

Original source — read the full reporting at the publisher:

Read on BleepingComputer

Get the weekly AI digest

AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.

Read next