Cybersecurity

Lorenz Ransomware Group Attacks Allcare Pharmacy in Major Cyber Assault

The notorious Lorenz ransomware group has claimed Allcare Pharmacy cyber attack. The data breach was announced by the threat actor itself on their dark web forum, adding yet another victim to its growing roster. 

The Allcare Pharmacy cyber attack has casted a shadow over the security of confidential information entrusted to the pharmacy. Allcare Pharmacy, a stalwart in the pharmaceutical industry, has long prided itself on its dedication to customer welfare and data protection.

However, this Allcare Pharmacy data breach claim has shaken the foundations of its data security measures, adding yet another organization to its victim list. 

Allcare Pharmacy cyber attack claims

Allcare Pharmacy cyber attack
Source: Twitter

The Allcare Pharmacy data breach laid a large segment of Allcare Pharmacy’s database, laying sensitive customer information and confidential files bare.

Among the exposed data were critical information such as Social Security Numbers, posing a significant threat to the affected individuals.

To learn more about the Allcare Pharmacy cyber attack claims, The Cyber Express has reached out to the organizations. However, as of now, no formal response or statement has been issued by Allcare Pharmacy. 

The threat actors have shared 7 parts of the stolen data, along with samples to verify their claims.

The Allcare Pharmacy data breach seems to have targeted client’s databases and have not shared any other post for any other kind of data procured by the attack.

It is still left to see what the outcome of this Allcare Pharmacy cyber attack claims will be. However, the claims by the Lorenz ransomware group cannot be ignored either because the threat actors have been targeting high-profile organizations since 2021. 

Lorenz Ransomware Group and the Surge in Healthcare Cyberattacks

In recent years, the healthcare sector has emerged as a prime target for cybercriminals. The alarming increase in cyber attacks on healthcare organizations has raised concerns about data security and patient privacy.

Among the notorious groups in this landscape, the Lorenz ransomware group has gained notoriety for its sophisticated tactics and widespread targets.

According to CheckPoint Research (CPR), healthcare organizations faced a staggering 1,426 attacks per week in 2022, marking a 60% surge from the previous year.

These attacks have not only wreaked havoc on institutions but have also come with a hefty price tag.

The cost of a data breach in the healthcare industry surged by 42% in the past two years, averaging a staggering $10.10 million per incident.

Ransomware attacks have proven to be a major threat to healthcare organizations. In the third quarter of 2022 alone, one out of every 42 healthcare organizations fell victim to a ransomware attack. Among the prominent groups responsible for such attacks, the Lorenz ransomware group stands out.

The Lorenz ransomware group employs a sophisticated approach to exploit vulnerabilities, granting them unauthorized access to their targets. Once inside, they employ double extortion tactics, demanding ransoms ranging from $500,000 to $700,000 for the release of encrypted data.

Although the ransom demands might appear modest, the fallout from their attacks can be catastrophic, particularly for small to mid-sized businesses. The origins of the Lorenz ransomware group trace back to the .sZ40 ransomware discovered in October 2020.

With a penchant for targeting English-speaking countries, the group has left a trail of victims. The similarities identified between Lorenz and a prior operation known as ThunderCrypt highlight their persistence and adaptability.

Media Disclaimer: This report is based on internal and external research obtained through various means. The information provided is for reference purposes only, and users bear full responsibility for their reliance on it. The Cyber Express assumes no liability for the accuracy or consequences of using this information.