25% off all training courses Offer ends August 28, 2026
View HIPAA Courses
25% off all training courses
View HIPAA Courses
Offer ends August 28, 2026

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

Steve Alder

Steve Alder is the editor-in-chief of The HIPAA Journal. Steve is responsible for editorial policy regarding the topics covered in The HIPAA Journal. He is a specialist on healthcare industry legal and regulatory affairs, and has 10 years of experience writing about HIPAA and other related legal topics. Steve has developed a deep understanding of regulatory issues surrounding the use of information technology in the healthcare industry and has written hundreds of articles on HIPAA-related topics. Steve shapes the editorial policy of The HIPAA Journal, ensuring its comprehensive coverage of critical topics. Steve Alder is considered an authority in the healthcare industry on HIPAA. The HIPAA Journal has evolved into the leading independent authority on HIPAA under Steve’s editorial leadership. Steve manages a team of writers and is responsible for the factual and legal accuracy of all content published on The HIPAA Journal. Steve holds a Bachelor’s of Science degree from the University of Liverpool. You can connect with Steve via LinkedIn or email via stevealder(at)hipaajournal.com

Embargo Ransomware Group Claims Attack on American Associated Pharmacies
Nov14

Embargo Ransomware Group Claims Attack on American Associated Pharmacies

The Embargo ransomware group has claimed another healthcare victim, the Scottsboro, AL-based pharmacy chain American Associated Pharmacies. The attack follows ransomware attacks on Memorial Hospital and Manor, an 80-bed community hospital and 107 long-term care facility in Georgia, and Weiser Memorial Hospital, a critical access hospital in Idaho. The Embargo ransomware group is a relatively new ransomware group that emerged in June 2024. According to an analysis by the cybersecurity firm ESET, Embargo is a well-resourced ransomware-as-a-service (RaaS) group that engages in double extortion, stealing data before encrypting files and demanding a ransom payment for decryption and preventing the release of the stolen data. Embargo provides its affiliates with an encryptor and an endpoint detection and response (EDR) filler which is tailored for each victim’s environment to kill specific security solutions. ESET says the group’s tools are under active development and believes Embargo is building its brand and establishing itself as a prominent ransomware operator. Embargo...

Read More
Boston Children’s Hospital Ordered to Pay $1.9 Million in Discrimination Lawsuit
Nov14

Boston Children’s Hospital Ordered to Pay $1.9 Million in Discrimination Lawsuit

Boston Children’s Hospital has been ordered to pay a former employee almost $1.9 million for retaliating against her for filing a gender and age discrimination lawsuit, although the court did not find sufficient evidence of discrimination. Amy Tishelman, 68, was employed as a psychologist and was a former research director at Boston Children’s Gender Multispecialty Service clinic and a leader in youth gender medicine. Tishelman, who the hospital had employed in various roles for almost 30 years, made a complaint to the HR department that she was being discriminated against due to her sex and age and was being underpaid compared to her male colleagues. In 2020, after no action was taken in response to her complaint, Tishelman filed a discrimination lawsuit in Suffolk Superior Court. She alleged that in addition to the discrimination, she had to endure demeaning treatment from her supervisors which allegedly stemmed from filing late patient evaluation reports. Tishelman maintained that the reports were filed late because there was not sufficient time in the working day to file the...

Read More
New Interlock Ransomware Group Targets US Healthcare Organizations
Nov13

New Interlock Ransomware Group Targets US Healthcare Organizations

An emerging ransomware group has its sights set on the healthcare industry and has been conducting attacks since at least September 2024, according to Cisco Talos Incident Response. Interlock ransomware is a financially motivated threat group that claims that in addition to conducting attacks for monetary gain, does so to teach organizations a lesson for their poor security practices. Based on the attacks in the first couple of months, Interlock engages in big game hunting, targeting large organizations with the financial means to pay large ransoms. “We are Interlock, a relentless collective that exposes the recklessness of companies failing to protect their most critical assets: customer data and intellectual property. We exploit the vulnerabilities they leave wide open, delivering a harsh but necessary wake-up call to those who think they can cut corners on security… We don’t just want payment; we want accountability,” explained Interlock on its data leaks blog site. “Your data is only as safe as the effort you put into protecting it… we are here to enforce the standards...

Read More
HC3: Stealthy Godzilla Web Shell Used by Chinese APT Groups in Attack Chain
Nov13

HC3: Stealthy Godzilla Web Shell Used by Chinese APT Groups in Attack Chain

The Health Sector Cybersecurity Coordination Center (HC3) has issued an Analyst Note to raise awareness of a stealthy backdoor – the Godzilla web shell – that is being used by Chinese state-sponsored threat groups to gain persistent remote access to victims’ networks. Web shells are tools used by threat actors to remotely interact with compromised web servers via a web browser. A web shell can be written in any language supported by the web server and consists of a web script that is dropped on a compromised system that allows the threat actor to interact with the underlying system. Provided the web shell is not detected; the threat actor gains persistent backdoor access to that system. Web shells can be used to run commands on the compromised system, execute code, move laterally, and deliver malicious payloads. The problem for threat actors is that their web shells are increasingly being detected by security solutions. In response to these detections, a threat actor with the handle BeichenDream claims to have created a stealthy web shell called Godzilla that encrypts...

Read More
US Calls for Russia and Other States to Take Action Over Healthcare Ransomware Attacks
Nov13

US Calls for Russia and Other States to Take Action Over Healthcare Ransomware Attacks

Anne Neuberger, the Deputy Assistant to the President and Deputy National Security Advisor for Cyber and Emerging Technology on the National Security Council, has publicly criticized Russia for allowing cybercriminal groups to conduct ransomware attacks on US healthcare organizations and for taking no action to hold those groups accountable for the crimes. Ransomware groups have been increasingly conducting attacks on healthcare organizations for financial gain. They steal patient data, encrypt files, and threaten to publish the stolen data if the ransom is not paid. The attacks often result in ambulances being placed on divert, appointments and surgeries being canceled, and the disruption can last for several weeks not only at the attacked entity but also at neighboring hospitals. Studies show these attacks lead to an increase in medical complications and mortality rates, longer patient stays, and poorer patient outcomes following a ransomware attack. According to the HHS’ Office for Civil Rights, large data breaches related to healthcare ransomware attacks have increased by 264%...

Read More
x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist