Classaction Gastro Health and Ermi Data Breaches Expose Sensitive Personal Information
Article Content
- •Gastro Health reported a phishing-related data breach affecting sensitive personal information.
- •Ermi's data breach involved unauthorized access to employee email accounts, exposing personal data.
- •Both companies are investigating potential class action lawsuits for affected individuals.
Gastro Health and Ermi have reported significant data breaches affecting sensitive personal information. Gastro Health experienced two phishing incidents on February 25 and March 2, 2026, leading to unauthorized access to files containing Social Security numbers, medical data, and other personal details. The breach impacts individuals across multiple states where Gastro Health operates. Meanwhile, Ermi's breach involved unauthorized access to employee email accounts, with the exposure of data occurring between February 15 and August 14, 2025. Affected information includes Social Security numbers, driver's license numbers, and health insurance details. Both companies are currently reaching out to affected individuals and exploring potential class action lawsuits. Attorneys are seeking individuals to come forward to assist in these investigations.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Ermi in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…