logo

Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charities

ID: 8b27b769-ab0f-52f2-ba34-9abdc65d4035

STIX ID: report--8b27b769-ab0f-52f2-ba34-9abdc65d4035

Feed Name: Infosecurity Magazine (News)

Threat Score
65/100

Date Published: 2026-08-13

Date Updated: 2026-08-13

...
...

Beacon suffered a data breach after an AWS access key was likely exposed in public JavaScript build artifacts, allowing an attacker to use valid credentials to access and download CRM data for ~1,500 UK charities. The exfiltrated information included personal supporter details (names, emails, phone numbers, donation records) and activity took place on July 27–28 over roughly 1 hour 27 minutes; Beacon has reset credentials and found no evidence of persistence or publication of the data to date.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.