Evergreen Treatment Services
Disclosed Feb 10, 20233 years ago21,325 affectedConfirmed
Evergreen Treatment Services, the covered entity (CE), reported that its computer system was breached by ransomware that compromised the protected health information (PHI) of 21,325 individuals. The PHI involved included names, addresses, dates of birth, Social Security numbers, diagnoses, medications, and other treatment information. The CE notified HHS, affected individuals, the media, and provided substitute notice. In its mitigation efforts, the CE provided complimentary credit monitoring and identity theft protection services and strengthened its administrative and technical safeguards. Staff were retrained.
What is known
| People affected | 21,325 (as reported to HHS) |
|---|---|
| Disclosed | Feb 10, 2023 |
| Discovered | Dec 12, 2022 |
| Happened | Dec 12, 2022 |
| Attack | Ransomware |
| Data exposed | Names, Health |
| Sector | Nonprofit · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Washington Attorney General breach notice: Evergreen Treatment Servicesatg.wa.gov · Official notice | Official notice |
| Indiana Attorney General 2023 data breach report: Evergreen Treatment Servicesin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): Evergreen Treatment Services (Healthcare Provider, WA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Feb 10, 2023 | 21,325 |
| Washington AGresidents of WA | Feb 13, 2023 | 11,247 |
| Indiana AGresidents of IN | Feb 13, 2023 | 3 |
History of this record
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · records_basis: organization to hhs · backfill source
- 2026-09-25 · records: 20194 to 21325 · backfill source
- 2026-09-25 · disclosed: 2023-02-13 to 2023-02-10 · backfill source
- 2026-09-25 · summary: empty to Evergreen Treatment Services, the covered entity (CE), reported that its computer system was breached by ransomware that compromised the protected health information (PHI) of 21,325 individuals. The PHI involved included names, addresses, d · backfill source
- 2026-09-25 · records_basis: empty to organization · backfill source
- 2026-09-25 · records: empty to 20194 · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Washington AG), confirmed by Washington AG. Record counts are as reported. Not legal advice.