In December 2025, Northern Inyo Hospital, also known as Northern Inyo Healthcare District, experienced a network security incident at its vendor, Aesto, LLC. Aesto, LLC provides healthcare data migration services. The hospital is notifying patients that their protected health information may have been accessed as a result of this incident.
The specific types of data impacted are described as full name in combination with other personal or protected health information related to patient care, with exact elements varying by individual. The number of affected individuals remains unclear, as do specific details such as whether Social Security Numbers or financial data were involved. The breach was discovered by the vendor, Aesto, LLC, on December 18, 2025.
More details may emerge as the situation develops, and consumer notification letters are being sent to those potentially affected. Regulatory filings that might provide further specifics have not been publicly located.