Skip to content

Evergreen Treatment Services

Disclosed Feb 10, 20233 years ago21,325 affectedConfirmed

Official notice

Evergreen Treatment Services, the covered entity (CE), reported that its computer system was breached by ransomware that compromised the protected health information (PHI) of 21,325 individuals. The PHI involved included names, addresses, dates of birth, Social Security numbers, diagnoses, medications, and other treatment information. The CE notified HHS, affected individuals, the media, and provided substitute notice. In its mitigation efforts, the CE provided complimentary credit monitoring and identity theft protection services and strengthened its administrative and technical safeguards. Staff were retrained.

What is known

People affected21,325 (as reported to HHS)
DisclosedFeb 10, 2023
DiscoveredDec 12, 2022
HappenedDec 12, 2022
AttackRansomware
Data exposedNames, Health
SectorNonprofit · US
StatusConfirmed

Sources

Notices filed

WhereFiledPeople
HHS archivetotalFeb 10, 202321,325
Washington AGresidents of WAFeb 13, 202311,247
Indiana AGresidents of INFeb 13, 20233
History of this record
  • 2026-09-25 · data_types: [] to ["names","health"] · backfill source
  • 2026-09-25 · records_basis: organization to hhs · backfill source
  • 2026-09-25 · records: 20194 to 21325 · backfill source
  • 2026-09-25 · disclosed: 2023-02-13 to 2023-02-10 · backfill source
  • 2026-09-25 · summary: empty to Evergreen Treatment Services, the covered entity (CE), reported that its computer system was breached by ransomware that compromised the protected health information (PHI) of 21,325 individuals. The PHI involved included names, addresses, d · backfill source
  • 2026-09-25 · records_basis: empty to organization · backfill source
  • 2026-09-25 · records: empty to 20194 · backfill source
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (Washington AG), confirmed by Washington AG. Record counts are as reported. Not legal advice.

Everything about Evergreen Treatment Services

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.