Westside GI Data Breach Exposes Patient Health Records and Personal Information

Published: 25 September 2026
Healthcare data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: 28th May 2021

A ransomware group calling itself pear claims it breached Westside GI, an ambulatory endoscopy center, potentially exposing patient health records and personal data. Westside GI has not publicly confirmed the incident. The number of affected people is unknown. Anyone who received care there should monitor credit reports and insurance statements closely for signs of misuse.

CompanyWestside GI
IndustryHealthcare
Data Types ExposedPatient Names and Contact Information, Medical Records and Treatment History, Health Insurance Information, Dates of Birth, Social Security Numbers, Appointment and Scheduling Records
People AffectedNot Publicly Disclosed
Attack MethodRansomware
Regulators NotifiedDelaware Attorney General

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the Westside GI Data Breach?

Westside GI, an ambulatory endoscopy center, is reportedly the target of a ransomware attack. A threat actor group known as pear has claimed responsibility for breaching the organization’s network. As a result, patients and staff connected to the practice now face uncertainty about their personal data.

According to the claim, the attackers gained unauthorized access to systems belonging to the healthcare provider. The exact timeline of the intrusion has not been publicly disclosed. Because this information comes from a ransomware group’s own leak-site listing, Westside GI has not publicly confirmed the incident as of this writing.

It remains unclear what forensic steps, if any, have been taken in response. In addition, no independent investigation details have been released. For this reason, this article treats the incident as an unconfirmed claim rather than a verified breach until Westside GI issues its own statement.

Who was affected?

The individuals affected likely include patients who received care at the endoscopy center. Employees of the practice could also be involved, though this has not been confirmed. Because Westside GI operates as a medical facility, any exposed data would likely include sensitive health information tied to real patients.

The exact number of affected individuals has not been publicly disclosed. Similarly, the geographic scope of the alleged breach remains unknown. However, given that ambulatory endoscopy centers typically serve local and regional patient populations, the impact is likely concentrated among patients in the practice’s service area.

It is also unclear whether minors were among those affected. Medical practices often treat patients across a wide age range. As a result, families should stay alert until more specific details become available.

What Information Was Potentially Exposed?

Because Westside GI has not confirmed this incident, the specific categories of exposed data have not been officially verified. However, based on the nature of the organization and the type of attack claimed, certain categories of information are commonly targeted in healthcare ransomware incidents like this one.

  • Patient names and contact information
  • Medical records and treatment history
  • Health insurance information
  • Dates of birth
  • Social Security numbers
  • Appointment and scheduling records

If this data was indeed accessed, the risk of medical identity theft would be significant. Criminals can use stolen health information to file fraudulent insurance claims. This could lead to incorrect medical records for the actual patient, complicating future care.

In addition, exposed Social Security numbers and personal details create a strong risk of traditional identity theft. Fraudsters could use this information to open new credit accounts. Consequently, affected individuals should treat any notification from Westside GI seriously and act quickly if confirmed.

What is the company doing?

Because this incident stems from a ransomware group’s claim rather than a confirmed statement from Westside GI, there is no publicly available information describing the organization’s response. Westside GI has not confirmed the breach, and therefore no specific remediation, notification, or credit monitoring offer can be reported at this time.

Westside GI has, however, filed a formal data breach notification with the Delaware Attorney General. This filing indicates that some level of regulatory disclosure has occurred. Still, further public statements from the organization itself have not been identified as of this writing.

Until an official statement is issued, affected patients should watch for any direct mail or email notifications from the practice. This is often how healthcare organizations formally alert patients following an incident like this one.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Affected individuals should check their credit reports regularly. This helps catch any unauthorized accounts or inquiries early. You can request a free copy from each of the three major credit bureaus once a year.

Because identity thieves often act quickly after obtaining personal data, frequent monitoring matters. In addition, look closely for accounts you don’t recognize or unexpected changes in your credit score. Early detection makes resolving fraud much easier.

Consider a Fraud Alert or Credit Freeze

If Social Security numbers or financial details were exposed, placing a fraud alert on your credit file is a smart step. This warns lenders to verify your identity before opening new credit. It’s free and lasts for one year, with renewal options.

Alternatively, a credit freeze offers stronger protection by blocking new accounts entirely. This means no one can open credit in your name until you lift the freeze. Because this incident involves potential exposure of sensitive identifiers, either step could be worthwhile.

Watch for Medical Identity Theft

Because this breach involves a healthcare provider, patients should review any insurance statements closely. Look for unfamiliar charges or services you didn’t receive. This could indicate someone else used your medical identity.

In addition, request a copy of your medical records periodically. This helps you spot inaccurate information that could result from fraudulent claims. If you notice anything unusual, contact your insurance provider and Westside GI immediately.

Stay Alert for Phishing Attempts

Following any data breach, scammers often send phishing emails pretending to be the affected organization. Be cautious of unexpected messages asking for personal information. Never click links or download attachments from unfamiliar senders.

Instead, verify communications by contacting Westside GI directly through official channels. This helps you avoid falling victim to a secondary scam. Because phishing attempts often spike after a breach becomes public, staying cautious is essential.

Consult a Data Breach Attorney

If you believe you were affected by this incident, speaking with a data breach attorney can help clarify your options. Many offer free consultations to review your situation. This is especially useful if financial harm or identity theft occurs later.

Because breach investigations often reveal more details over time, staying informed is important. An attorney can help you understand whether you qualify for compensation. This is particularly relevant if a class action lawsuit develops from this incident.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



More Information

Official data breach notification report (PDF) from Delaware Attorney General

Related Data Breaches

Check other recent data breach notifications →