Post-quantum cryptography is here — SecureAge is prepared.

Industry Solution

HIPAA compliant data encryption software
for healthcare organisations

Healthcare runs on data that cannot leak. Patient records, lab results, imaging, prescriptions and clinical files now move between hospitals, clinics, labs, telehealth platforms and patient devices every day. Perimeter defences are not designed for that. SecureAge protects healthcare data at the file level, so every file stays encrypted everywhere it travels.

Healthcare data security today’s state of play

We’re trusted by the hospitals, clinics and pharmaceutical firms you don’t see in the news – and never will.

Patient data is more valuable than payment data

Healthcare has been the costliest data-breach industry in the world for 14 years running, with the average breach now costing $7.42 million (IBM Cost of a Data Breach Report 2025). Protected Health Information is more valuable on the black market than payment data because it can be used for blackmail, insurance fraud and data laundering.

Most files inside the hospital are over-exposed — and AI can now find them

Nine in ten healthcare organisations have sensitive data sitting where AI tools can surface it, and only one in five label their files (Varonis State of Data Security Report: Healthcare & Life Sciences, 2025). Shadow AI was a factor in 20% of 2025 breaches, and 97% of AI-related breaches hit organisations without proper access controls (IBM 2025).

Legacy clinical systems were not built for today’s data flows​

Nearly one in five connected medical devices runs on an unsupported operating system, and 32% of medication-dispensing systems still run on unsupported Windows (Armis). EHR platforms, lab instrumentation and imaging workstations often cannot accept the security updates a modern environment demands. Telehealth has settled at roughly 38× pre-pandemic levels (McKinsey), adding more endpoints every day.

Proactive data security for healthcare organisations

Healthcare organisations have been protecting patient data for decades, but today the volume of PHI, the speed it moves, and the number of devices that touch it have outgrown perimeter-based defences. SecureAge protects the data itself — at the file level — so a stolen laptop, a misrouted email or a compromised cloud folder yields ciphertext, not patient records.

The SecureAge Security Suite

The SecureAge Security Suite uses PKI-based File Level Encryption to protect every file, in every place, at every time — at rest, in transit, and in use. SecureData encrypts every file on every endpoint automatically. SecureFile lets staff share encrypted files with labs, specialists and insurers. SecureEmail keeps PHI safe end to end. CatchPulse blocks unknown executables with zero-trust application control. SecureAge Central manages it all from one console.

100% data security across every PHI workflow

With the SecureAge Security Suite, healthcare organisations can tick every box — HIPAA compliance, file-level encryption, endpoint protection and centralised management — without rebuilding the underlying clinical systems.

Built for HIPAA, SOX and PCI-DSS

HIPAA requires healthcare organisations to safeguard the confidentiality, integrity and availability of PHI, and the HHS Office for Civil Rights enforces it. Because SecureAge encrypts every file at the file level by default, HIPAA’s encryption-related Safeguards are met as a property of the system, not as a separate compliance project. The same deployment also supports SOX for corporate records and PCI-DSS for patient payments.

Protects every file — at rest, in transit, and in use

Most encryption tools protect data at rest on a powered-off disk. That is not where healthcare data lives. SecureAge protects files in all three states — at rest, in transit, in use — so PHI is never decrypted on the wire, in a shared folder, or on a clinician’s screen for the wrong person to glance at.

Deploys on legacy clinical systems without disruption

EHRs, PACS, lab systems and the long tail of departmental applications keep working exactly as they do today. Clinicians do not learn a new tool, change workflow or wait for IT to migrate a system. No data classification project is required — SecureAge treats every file as sensitive, removing the slowest and most error-prone part of the rollout.

[Resolved] Escalation of Privilege in SecureAge Security Suite

A privilege escalation vulnerability has been identified and resolved. Users on affected versions should update immediately.

Vulnerability Overview

A privilege escalation vulnerability was identified in SecureAge Security Suite for Windows. A locally logged-in user could exploit this flaw to create, modify, or delete files in privileged system locations — actins that should only be available to administrators. This vulnerability has been fully resolved in the versions listed below. 

Technical details
The vulnerability stems from how SecureAge Security Suite handles symbolic links during normal operation. A local attacker could create specific symbolic links n the system. When the SecureAge software ran, it would follow  those links and perform file operations in privileged Windows path locations . This could allow an unprivileged user to plant, alter, or remove files they would not ordinarily have access to.
Affected & Fixed Versions
Product Vulnerable Version Fixed Version Status

SecureAge Security Suite

7.0.37 and earlier

7.0.38

✓Resolved

SecureAge Security Suite

7.1.10 and earlier

7.1.11

✓Resolved

SecureAge Security Suite

8.0.17 and earlier

8.0.18

✓Resolved

SecureAge Security Suite

8.1.17 and earlier
8.1.18

✓Resolved

Recommended Action

Update to the fixed version or any later release immediately. No workaround is available—patching is the only resolution. If you are unsure which version you are running, open SecureAge Security Suite and check Help>About. Contact our support team if you need assistance with the update process. 

Acknowledgement

SecureAge thanks GovTech Cyber Security Group (CSG) and CSA Cyber Security Engineering Centre (CSEC) for responsibly disclosing this issue through coordinated vulnerability disclosure. 

Advisory Details
Status

✓ Resolved

Severity

High

Product

SecureAge Security Suite

Platform

Windows

Attack Type

Local

Download Brochure (PDF)

Download Our Brochures

Discover how to keep your data protected at all times. Download our brochure to see how SecureData delivers always-on encryption, simplifies compliance, and enable secure collaboration across your organisation.

Product Brochure(s) Needed *
By clicking “Submit” below, you agree to the Privacy policy