CoreRecon Threat Intelligence  •  Texas Independent Pharmacies  •  June 2026

TX Independent Pharmacies:
Triple-Jeopardy Target

PharMerica lost 5.8 million patient records in 2023. Change Healthcare disabled pharmacy claim processing at Lone Star Pharmacy (Santa Fe, TX) and thousands more. A TX independent pharmacy faces three simultaneous enforcement agencies — HIPAA/OCR, TSBP, and DEA — and a cyber insurance market where more than 40% of claims are denied. CoreRecon documents the full attack surface, compliance stack, and controls that matter.

Download the Full Threat Brief — Free
June 2026 CoreRecon Intelligence Report V32 60 Verified Sources HIPAA + TSBP + DEA CSOS + TDPSA
5.8M
Patient records stolen
PharMerica 2023
Money Message ransomware
3
Enforcement agencies:
OCR · TSBP · DEA
simultaneous jeopardy
40%+
Cyber insurance
claim denial rate
late notification & controls gap
30min
CoreRecon IR SLA
TX-based SOC
SDVOSB certified
What This Brief Covers

TX Independent Pharmacy
Cyber Threat Brief

Full intelligence report on the attack surface facing Texas independent pharmacies — from the Change Healthcare national infrastructure collapse to DEA CSOS credential theft and PA-DSS deprecation. 60 verified sources. No marketing fluff. Documented incidents, applicable regulations, and actionable controls built for pharmacy owners, Pharmacists-in-Charge, and operations managers.

60 Verified Sources Including:

  • PharMerica breach — 5.8M records, Money Message RaaS, $5.275M class action settlement (Lurry v. PharMerica)
  • Sav-Rx / A&A Services — 2.8M records, 8-month notification delay, class action filed June 2024
  • Change Healthcare — ALPHV/BlackCat, Lone Star Pharmacy TX confirmed, TSBP emergency notice March 4, 2024
  • American Associated Pharmacies (AAP) — Embargo double-extortion, 1.5TB stolen, 2,000+ pharmacies impacted
  • HIPAA OCR enforcement: 152 cases, $144.9M+ total | Cornell Prescription $125K (only independent pharmacy enforcement)
  • DEA CSOS: $275K settlement for credential misuse | personal criminal liability for Pharmacist-in-Charge
  • RedSail Technologies PMS consolidation risk: PioneerRx, BestRx, QS/1, Axys — 11,500+ pharmacies one CVE away
  • PA-DSS deprecated April 30, 2025 — PCI DSS 4.0 compliance gap at legacy POS terminals
  • Cyber insurance: 40%+ claim denial rate | state-actor exclusions (Lloyd's mandate March 2023) | ransomware sub-limits
  • 8 pharmacy-specific controls with 30/60/90 implementation roadmap

Access the Full Brief

We email it once. No newsletter. No spam. PDF delivered to your inbox.

Submission failed — please try again or email john@corerecon.com

Brief Sent.

Check your inbox — the PDF is on its way. If it lands in spam, drag it to your inbox so you find it later.

Questions before then? Call (800) 955-2596 — live TX SOC, not a call center.

Book Free Posture Assessment →
SDVOSB Certified • TX-Based SOC • No offshore data routing
Questions? (800) 955-2596
✅ 60 verified sources
✅ HIPAA + TSBP + DEA CSOS + TDPSA covered
✅ 8 pharmacy-specific controls
✅ PMS attack surface mapped (RedSail, QS/1, PioneerRx, BestRx)
✅ No spam — one email delivery