[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f1btmtls3v1idl":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":29,"seoTitle":30,"seoTitleEn":31,"seoDescription":30,"seoDescriptionEn":32,"logoUrl":33,"isVerified":4,"isSensitive":4,"isSpamList":34,"isMalware":34,"company":35},"6a714e921f435dae698d6799","WashingtonGastroenterology2024","Washington Gastroenterology 2024 Data Breach","washington-gastroenterology-2024","washgi.com","2024-10-23T00:00:00.000Z","2026-08-04T02:29:37.734Z","Third party breach","https:\u002F\u002Fagportal-s3bucket.s3.amazonaws.com\u002Fdatabreach\u002FBreachA33408.pdf",[14,16],"https:\u002F\u002Foag.my.site.com\u002Fdatasecuritybreachreport\u002Fapex\u002FDataSecurityReportsPage",583471,"known",null,"people","High",[23,24,25,26,27,28],"Names","Dates of birth","Physical addresses","Social security numbers","Financial account information","Medical information","\u003Cp>\u003Cstrong>The 2024 Washington Gastroenterology data breach\u003C\u002Fstrong> was a security incident in which an unknown third party may have accessed and exposed data in a legacy system. The Texas Attorney General record reports 583,471 affected people nationwide.\u003C\u002Fp>\u003Cp>Washington Gastroenterology (WAGI) provides gastroenterology care in Washington state. The organization said the event did not affect its current networks or affiliated organizations' systems.\u003C\u002Fp>\u003Ch2>When did the Washington Gastroenterology data breach occur?\u003C\u002Fh2>\u003Cp>The incident form attached to the federal health notification identifies October 23, 2024 as the access date. WAGI discovered the potential unauthorized access in the legacy system on March 10, 2025 and began an investigation.\u003C\u002Fp>\u003Cp>The Texas record contains August 2, 2025 in a separate discovery field. Because the organization's notice explicitly identifies March 10 as the initial detection date, the August date is not represented as the access date or first discovery.\u003C\u002Fp>\u003Ch2>How did the incident happen?\u003C\u002Fh2>\u003Cp>According to WAGI's official notice, an unknown third party may have accessed and exposed data in a legacy system. The federal form classifies the event as a hacking\u002FIT incident involving a network server.\u003C\u002Fp>\u003Cp>WAGI did not disclose the technical access method or identify the responsible party. Unverified claims about a threat actor or ransomware are therefore not included in the catalog record.\u003C\u002Fp>\u003Ch2>What information may have been affected?\u003C\u002Fh2>\u003Cp>The official filings list names, dates of birth, addresses and ZIP codes, Social Security numbers, financial account information, and medical diagnosis or condition information.\u003C\u002Fp>\u003Cp>The affected data varied by individual. This does not mean every listed field was present in every person's records.\u003C\u002Fp>\u003Ch2>How many people were affected?\u003C\u002Fh2>\u003Cp>The Texas Attorney General reports 583,471 affected people nationwide, including 551 Texas residents. The Washington filing initially reported notices to 1,261 state residents, while the attached initial federal form showed a preliminary estimate of approximately 501 people. Those narrower figures were not added to the nationwide total.\u003C\u002Fp>\u003Ch2>What risks can this information create?\u003C\u002Fh2>\u003Cp>Identity and financial information can support fraudulent account applications, identity theft, or payment fraud. Health information can also make targeted messages appear to refer to a genuine appointment, bill, or treatment relationship.\u003C\u002Fp>\u003Cp>For an unexpected message claiming to come from WAGI, a clinic, an insurer, or a bank, use the organization's official contact channel instead of following a supplied link. Accurate personal or health details do not prove the sender is authorized.\u003C\u002Fp>\u003Ch2>How did Washington Gastroenterology respond?\u003C\u002Fh2>\u003Cp>WAGI said it secured its systems, investigated, and notified affected people. It offered eligible individuals 12 months of credit and identity monitoring through IDX.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>Notice recipients can enroll in the monitoring service within the period stated in their letter and review credit reports, bank accounts, and health-insurance explanations for unfamiliar activity.\u003C\u002Fp>\u003Cp>If an unfamiliar transaction, new account, or healthcare service appears, contact the relevant organization directly. Do not share a password, verification code, or payment information in response to an unexpected call or message.\u003C\u002Fp>","","Washington Gastroenterology Data Breach (583.5 Thousand People Affected)","The Washington Gastroenterology data breach affected 583,471 people and may have exposed identity, financial, and medical information.","\u002Fuploads\u002Flogo\u002Fwashington-gastroenterology.png",false,{"name":36,"sector":37,"country":38,"website":39,"websiteArchiveUrl":30,"websiteStatus":30,"websiteCheckedAt":19},"Washington Gastroenterology","Healthcare","United States","https:\u002F\u002Fwashgi.com\u002F"]