Beacon cyber security incident – potential impact on Kidney Care UK

** News update ** 14 August 2026

We have received a further update from Beacon and their external cyber security experts on the progress of their investigation into the cyber security incident. They have now confirmed that a copy of the Beacon database was made and likely downloaded in a readable format.

Beacon have confirmed that continuous monitoring has revealed no evidence of the stolen database being sold, published, or held for ransom. We appreciate that this uncertainty may cause concern, but we wanted to be transparent and let you know what we know at this time. Beacon have assured us that they took immediate action to secure their systems and we are following all guidance provided to ensure our data remains secure going forward, and we are reviewing our own processes as an extra precaution. Our internal systems remain secure.

Alongside the criminal investigation we are also conducting our own investigation. If there is further information that anyone who might be affected should be made aware of, we will be in touch as soon as we can.

5 August 2026

We are sorry to inform you that Beacon CRM, the third party database organisation that Kidney Care UK uses, have experienced a cyber security incident. Beacon have informed us that they are investigating this incident and some Kidney Care UK data may be impacted. This means that some of our supporters’ and beneficiaries’ personal information may have been included in the affected data.

Right now, we do not have the full picture of what has happened, but we are in close contact with Beacon. If there is further information which those who might be affected should know about, we will be in touch as soon as we can.

We are following all guidance provided to ensure our data remains secure going forward, and we are reviewing our own processes as an extra precaution. Our internal systems remain secure.

It is always good practice to remain vigilant for any unexpected phone calls, messages, and emails, and take extra care clicking links or opening attachments in any emails that are unusual. There is useful advice on the National Cyber Security Centre website.

We use Beacon because they take privacy and data very seriously and they hold the UK's highest level of cyber security qualification. This is a criminal incident, and it has impacted more than 1,000 other charities who are also Beacon customers.

We understand that this news may be concerning and we apologise for any worry and stress this incident may cause. If you have any questions or wish to raise any concerns with us you can email us at [email protected].