Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies

August 14, 2026

UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data

August 14, 2026

Researchers Link Suspected Chinese APT to Hack-for-Hire Operations

August 14, 2026
Facebook X (Twitter) Instagram
Friday, August 14
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charit
News

Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charit

Team-CWDBy Team-CWDAugust 13, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


A compromised AWS access key was the likely root cause of the cyber-attack on CRM provider Beacon, which has exposed personal information held by around 1500 UK charities.

The software provider said in an August 12 incident update that the access key was potentially exposed in public Javascript build artifacts. This suggests an error was made in the course of software development.

Beacon has assessed that the attacker used these valid credentials to access and download all data contained within the CRM platform, including attachment files, thereby impacting its entire 1500-strong customer base of charitable organizations.

This includes personal information held by charities operating in highly sensitive areas, such as healthcare and victim support.

While the data was encrypted at rest in AWS, the threat actor’s valid credentials meant its downloads would have been decrypted by AWS and available in readable form.

An analysis of Beacon’s AWS Cost & Usage reports has identified that malicious activity began on July 27, at 01:20:16 UTC and lasted for approximately one hour and 27 minutes.

This timing correlates with a significant increase in data downloads on July 27 to 28.

The CRM provider said it has not detected any attempts by the attacker to maintain persistence within its environment. It has also reset all credentials for services and accounts integrated with AWS to prevent repeat unauthorized access.

There has so far been no indication that the threat actor has published the stolen data online or otherwise misused it.

Charities Not Held Responsible for Breaches

Beacon’s charity customers have all been advised to report the breach to the UK’s Information Commissioner’s Office (ICO).

One of the confirmed victims, The Survivor’s Trust, revealed in a statement on August 13 that the ICO had already reviewed its case and concluded that the charity holds no responsibility for the breach.

The charity, which provides specialist rape and sexual abuse support services, urged its supporters to stay alert to potential scams in the coming weeks.

A number of charities have publicly declared that personal information of supporters has been compromised in recent days. These include Shrewsbury and Telford Hospital Charity, the British Deaf Association and Yorkshire’s Brain Tumour Charity.

Last week, Sheffield Hospital Charity, Priscilla Bacon Hospice Charity, homelessness charity the Clock Tower Sanctuary and Victim Support, made similar public announcements.

The type of data thought to have been affected includes supporters’ names, email addresses, telephone numbers and donation records, which could provide attackers with opportunities to launch social engineering attacks on individual victims.

The compromised CRM system did not hold sensitive patient information, payment card details or bank account information.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleNew NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables
Next Article 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers
Team-CWD
  • Website

Related Posts

News

New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies

August 14, 2026
News

UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data

August 14, 2026
News

Researchers Link Suspected Chinese APT to Hack-for-Hire Operations

August 14, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA

July 11, 20268 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

The WhatsApp screen-sharing scam you didn’t see coming

November 6, 2025

Beware of threats lurking in booby-trapped PDF files

October 7, 2025

Why children’s data is a long-term identity risk

June 3, 2026

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.