Aesto Health Data Breach Exposes Over 9.5 Million Patients' Information
Company discloses recent security incident; investigation ongoing into root cause and data types

Key Takeaways
- Aesto Health disclosed a data breach affecting over 9.5 million individuals.
- The incident involves personal and protected health information.
- The breach was discovered recently and publicly disclosed on September 1, 2026.
- The root cause, specific data types, and attack vector are under investigation.
- No public details on exploitation method have been released at the time of disclosure.
- The company is conducting forensic analysis and plans to implement security improvements.
Quick answers
- What happened?
- Aesto LLC, operating as Aesto Health, has disclosed a data breach affecting more than 9.5 million individuals. The incident involves personal and protected health information. The breach was discovered recently and publicly disclosed on September 1, 2026. The company states that the scope and specific data types are under investigation, and no public details regarding the attack vector or exploitation method have been released.
- What should defenders do?
- Aesto Health is conducting a forensic investigation and implementing security improvements. Affected individuals are being notified. No patches or software updates are applicable as the incident involves a data breach rather than a software vulnerability.
Aesto LLC, doing business as Aesto Health, announced a data breach impacting over 9.5 million individuals. The company confirmed that the incident involves personal and protected health information. The breach was discovered recently and formally disclosed on September 1, 2026. At the time of disclosure, Aesto Health stated that the exact root cause, specific data types exposed, and the attack vector remain under investigation. The company has not released details on whether ransomware, phishing, or another method was involved. Forensic analysis and incident response efforts are ongoing. The disclosure notes that security improvements will be implemented as part of the remediation process. The full extent of the compromised data and the number of affected individuals are subject to further investigation.
Security Details
Under investigation; no public details on attack vector or exploitation method. Incident response and forensic investigation underway.
Mitigation
Aesto Health is conducting a forensic investigation and implementing security improvements. Affected individuals are being notified. No patches or software updates are applicable as the incident involves a data breach rather than a software vulnerability.
Sources
BleepingComputer
Aesto Health says data breach affects over 9.5 million patients
Sep 1, 2026 · 19:28
Original link
Related Security News

Times Car Confirms Data Breach Affecting 6.6 Million User Accounts
Times Car, a Japanese car-sharing service, has confirmed a data breach compromising approximately 6.6 million user accounts. The incident was disclosed late last week, with the exact attack vector and nature of exposed personal information yet to be fully specified. Authorities and the company are reportedly investigating the breach.

French Tax Administration Data Breach Exposed Hundreds of Thousands of Records via Stolen Staff Credentials
An unauthorized access incident at France's Direction Générale des Finances Publiques (DGPP) compromised tax data belonging to hundreds of thousands of taxpayers and businesses between June and July 2026. According to a report published by France's national cybersecurity agency ANSSI on 29 September 2026, the attacker used stolen staff passwords to gain entry. The agency stated the attack was 'not sophisticated' and went undetected for seven weeks due to weak security controls. ANSSI noted that neither the tax administration nor the agency itself observed data exfiltration, though the breach resulted in unauthorized access to sensitive fiscal information.



