Ransom! American Associated Pharmacies

Victim: American Associated Pharmacies
Country : US
Actor: embargo
Source: http://embargobe3n5okxyzqphpmk3moinoap2snz5k6765mvtkk7hhi544jid.onion/#/post/40
Discovered: 2024-11-13 00:34:43.166271
Published: 2024-11-12 23:51:25.377608
Description : American Associated Pharmacies (AAP) is a member-owned cooperative of over 2,000 independent pharmacies working together as a cohesive network. AAP in partnership with its subsidiaries, Associated Pharmacies, Inc. (API), Arete Pharmacy Network, and AllyScripts, provides the tools and resources needed for members to improve their bottom line and differentiate themselves from competitors. AAP members not only receive savings on brand prescriptions, generic prescriptions and OTC products through the API warehouse and their negotiated prime vendor agreement, but they also receive negotiated competitive managed-care contracts through the Arete Pharmacy Network. In addition to offering solutions such as API and Arete Pharmacy Network, AAP provides members access to a full-service specialty pharmacy, AllyScripts, that allows pharmacies to retain their patients and compete in the growing specialty segment without the costly investment. AAP is able to provide its members with the support and customized solutions they need to succeed in the marketplace. – It seems AAP does not care about their data. AAP has paid 1.3 million for decrypt and owe another 1.3 million for 1.469 TB of their data.



Ransomware Victims – ALL
Other Victims by embargo


  • Victim: American Associated Pharmacies (AAP) is a cooperative of over 2,000 independent pharmacies, providing essential tools and resources to enhance their members’ competitiveness in the pharmaceutical market.
  • Actor: The ransomware group known as “Embargo” has targeted AAP, leading to a significant data breach and financial loss.
  • Cybersecurity Incident: AAP has reportedly paid $1.3 million for decryption services and faces an additional $1.3 million demand for 1.469 TB of compromised data, highlighting vulnerabilities in their data protection strategies.
  • Country: The incident occurred in the United States, where cybersecurity agencies are actively monitoring and responding to ransomware threats.
  • Cybersecurity Agency: The Cybersecurity and Infrastructure Security Agency (CISA) plays a crucial role in addressing such incidents and providing guidance to organizations on improving their cybersecurity posture.