
American Pharmacists Association Breach
Oct 1, 2024
108,317 rows
Added on Jun 16, 2025
What happened in the American Pharmacists Association Breach?
DataBreach.com Team · June 15th 2025, 8:00 pm EDT
What Happened
In October 2024, American Associated Pharmacies (AAP)-a cooperative that supports more than 2,000 neighborhood drugstores-detected unusual network activity. A ransomware gang called Embargo had infiltrated its systems, copied roughly 1.5 TB of data, and locked AAP’s files.
The Criminal Playbook
Embargo used a double-extortion scheme:
- Demanded $1.3 million for the decryption keys.
- After AAP paid, demanded another $1.3 million to keep the stolen data private.
Why This Matters to You
- Personal data at risk: The haul may include names, addresses, prescription histories, and insurance details.
- Service hiccups: Some independent pharmacies briefly lost access to AAP’s ordering portal, delaying prescriptions.
- Potential price bumps: Supply-chain disruption can raise costs that eventually reach the consumer.
What You Can Do Now
- Review prescription and insurance statements for unfamiliar charges or medications.
- Set up fraud alerts or freeze your credit if you spot suspicious activity.
- Ask your pharmacist whether their store was affected and what safeguards are in place.
- Change online pharmacy passwords, especially if you reuse them elsewhere.
Bigger Takeaways
- Paying doesn’t guarantee safety. Hackers may keep raising the stakes after the first ransom is met.
- Small businesses share big-business risks. A single tech provider’s breach can ripple across thousands of pharmacies.
- Transparency builds trust. Pharmacies that communicate openly and outline protective steps regain customer confidence faster.
Looking Ahead
AAP hasn’t revealed whether it paid the second ransom, and regulators could still impose fines or mandate formal notifications. Experts expect similar attacks on other healthcare cooperatives, so stay vigilant-treat your prescription and insurance data like your credit-card information, and encourage your pharmacy to do the same.
Recent News











Ho-ly G*t: TeamPCP Claims Theft of Thousands of GitHub Internal Repositories
a month ago

17M Nissan cars impacted by large ransomware attack
2 months ago

Iranian hackers just used Stryker’s own security tools to delete itself
3 months ago

Massive Odido cyberattack leaks customer IBANs and government IDs
3 months ago

Figure breach proves blockchain cannot save us from human error
4 months ago

Substack notifies users of data breach affecting nearly 700,000 accounts
4 months ago

UPenn claims "Under 10" victims in 1.2M breach involving donors like Trump and Musk
5 months ago

How 0apt is Using Random Noise to Fake a Ransomware Empire
5 months ago

Hackers Are Now Using Global-e Data to Target Ledger Owners at Their Home Addresses
5 months ago

Meta Denies Instagram Breach After Password Reset Panic
5 months ago

Why the 2.3 Million Wired Record Breach Is a Nightmare for Condé Nast
6 months ago