Pittsburgh Gastro Associates Hit by Ransomware Attack

Published
September 3, 2025
Updated
September 3, 2025
Pittsburgh Gastro Associates Hit by Ransomware Attack
Pittsburgh Gastroenterology Associates
Types of INFORMATION affected
  • Names
    Names
  • Social security numbers
    Social Security Numbers
  • Dates of birth
    Dates of Birth
  • Addresses
    Addresses
  • Government IDs
    Government IDs
  • Medical Information
    Medical Info
  • Financial Info
    Financial Info

Affected by the

Pittsburgh Gastroenterology Associates

data breach?

Join the Lawsuit

It's free to join. 

Banner advertisement for ExpressVPN to take control of your online security

Claim Depot may receieve a commission from links on this page

Pittsburgh Gastroenterology Associates, a medical group specializing in digestive health, experienced a major data breach. On Aug. 20, 2025, the practice was listed as a victim of a ransomware attack by the Sinobi group on a Tor-based dark web leak site.

According to the posting, Sinobi claims to have gained unauthorized access to the organization’s systems and exfiltrated sensitive data. Ransomware actors like Sinobi typically threaten to publish or sell stolen data if their demands are not met. This increases the risk of identity theft, fraud, and potential misuse of medical information.

Cybersecurity incidents involving ransomware attacks often involve patient data, including both personal and protected health information. Compromised information may include names, addresses, phone numbers, dates of birth, driver's license or state ID copies, Social security numbers, health insurance details, medical records and payment information including card numbers with CVV codes.

The total number of affected current and former patients and employees has not been released, but is believed to be in the thousands.

Pittsburgh Gastroenterology Associates’ response

Pittsburgh Gastroenterology Associates will be required to issue certain state and federal disclosures. The medical group will also work to identify and notify affected individuals by mail.

If you believe your personal information may have been compromised in this breach:

  • Carefully review any notice or communication you receive from Pittsburgh Gastroenterology Associates .
  • Monitor financial accounts and credit reports for signs of identity theft.
  • Consider placing fraud alerts or credit freezes with the major credit bureaus.
  • Be cautious of unsolicited emails or phone calls requesting personal information.

For more information about the medical group, visit the Pittsburgh Gastroenterology Associates website.

Protect Your Data

A breach notice means your personal details could be circulating far beyond the organization involved. One practical step is continuous monitoring: services such as Identity Defender (included with an ExpressVPN subscription) can automatically check dark-web markets, flag new credit-file activity, and request removal of your information from data-broker sites.

This kind of “early-warning system” can’t undo a breach, but it can help you spot misuse quickly and limit further exposure. ExpressVPN is offering 61% off, risk-free for 30 days, with ID Theft Insurance included and no extra cost for those who sign up for one or two years.

Notice Letter

This browser does not support inline PDFs. Please download the PDF to view it: Download PDF

CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image