Aesto, LLC
ent_95018236f0cc7a52e731c705
Disclosures
2
State AG · HHS OCR · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
17,400
as filed · HHS OCR AL
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Aesto, LLC
- Normalized
- aesto— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- 🐻California State AGas victim2026-07-31
Everside Health reported a data breach involving its third-party vendor, Aesto, LLC. Aesto, a healthcare data migration and archiving services provider, experienced a network security incident on its AWS infrastructure between December 2 and December 18, 2025. The breach potentially exposed protected health information (PHI) and personally identifiable information (PII) of a limited number of individuals. Aesto confirmed the unauthorized access on May 26, 2026, after forensic investigation. Everside Health was notified on June 26, 2026. No evidence of misuse was found, but affected individuals were offered credit monitoring services.
- ALHHS OCRas victim2022-05-20
Aesto, LLC d/b/a Aesto Health (AL) reported to HHS on 2022-05-20 a Hacking/IT Incident (ransomware attack) affecting 17,400 individuals. Breached PHI was located on a Network Server and included names, dates of birth, and clinical information. The CE notified HHS, affected individuals, and the media, provided substitute notice, and implemented additional administrative, technical, and security safeguards in response.