Aesto Health
bd_bf704f7baef228c1 · schema v1 · pii pii-v2
Full breach record for Aesto Health →6 incidents on fileAesto LLC d/b/a Aesto Health, a healthcare data migration and archiving service provider, experienced a network security incident impacting its AWS infrastructure. An unauthorized actor copied data between December 2 and December 18, 2025. The incident was discovered on December 18, 2025. Affected data for Nebraska Orthopaedic Center patients included names, Social Security numbers, medical record numbers, dates of birth, and financial account numbers. Approximately 47 New Hampshire residents were affected. Aesto engaged forensic specialists, contained the incident, and is offering credit monitoring services.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 2, 2025
Begins
Dec 18, 2025
Discovered
Aug 19, 2026
Filed
vs. sector median
+24 wks slower
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- New Hampshire State AGbd_44b55c8508053bbd2026-08-20 · +1dCandidate
- California State AGbd_cb2bb8a2cd3f59b62026-08-25 · +6dVerified
- New Hampshire State AGbd_3b97726fa4a0fefa2026-08-11 · +8dCandidate
Filing propagation · 4 filings · 2 states
View merged incident ↗Pattern: first filing Aug 11 (NH), last Aug 25 (CA) — a 14-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.