Aesto Health
bd_6ba6b179ea4373bf · schema v1 · pii pii-v1
Full breach record for Aesto Health →6 incidents on fileAesto, LLC reported unauthorized access to its AWS infrastructure between Dec 2 and Dec 18, 2025. The incident impacted sensitive information pertaining to HIPAA Covered Entity Clients. Aesto notified affected entities on June 26, 2026. 37,253 Washington residents were affected. No evidence of misuse was found.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 2, 2025
Begins
Dec 18, 2025
Discovered
Aug 4, 2026
Filed
vs. sector median
+14 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- New Hampshire State AGbd_c547969d194bb5d12026-08-07 · +3dVerified
- California State AGbd_b48dbb172911c31e2026-08-20 · +16dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Aug 4 (WA), last Aug 20 (CA) — a 16-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.