Together Women’s Health Medical Group, PC, and Together Women’s Health Medical Group of Alabama, PC, were identified as clients affected by a data breach at Aesto Health, a third-party healthcare data migration and archiving provider. Aesto detected unauthorized activity affecting part of its Amazon Web Services infrastructure on or about December 18, 2025. Aesto later determined on May 26, 2026, that an unauthorized actor may have accessed or acquired information stored in its network between December 2 and December 18, 2025. Aesto posted a public notice on June 24, 2026, and began notifying affected client organizations, including Together Women’s Health, on or around June 26, 2026.
The potentially affected information varied by individual and may have included names, dates of birth, medical information, driver’s license numbers, financial account numbers, health insurance information, taxpayer identification numbers, government identification numbers, and Social Security numbers. The number of Together Women’s Health individuals affected has not been disclosed. Aesto said the incident affected more than two dozen healthcare provider clients, but no total number of affected individuals was provided. Aesto’s breach was reported to the Vermont Attorney General’s Office on July 31, 2026. Further details, including the entity-level affected count and the date individual patients were notified, remain publicly unavailable.