Letting you know about a third party cyber-security incident
Letting you know about a third party cyber-security incident
06 August 2026
On Monday 3rd August we were informed by Beacon, the company that provides our database, that they had experienced a cyber security incident. Beacon has told us they believe compromised credentials were used to access their systems, and that copies of their database backups have been made. This incident has affected more than 1,500 organisations that work with Beacon, of which Imperial Health Charity is one.
Beacon is working with cyber security experts to investigate, and we are in close contact with them so that we can continue to learn more about what has happened. Beacon’s investigation is ongoing and while we do not know for certain Imperial Health Charity’s data has been affected, we believe it is likely.
This incident does not affect the data we hold on our community of volunteers, which is held in a separate system, and no data held in our systems relates to any individuals’ NHS record.
Where we have been able, we have contacted those likely to be affected directly, to make them aware of the incident and to offer advice on what they may wish to do in response.
In line with our own responsibilities as a charity and a data controller, we have made a report to the Information Commissioner’s Office, and to the Charity Commission.
We are very sorry that this has happened, and for any concern it may cause to our much-valued supporters. We will continue working with Beacon and other partners to understand more, and offering support to those affected as appropriate.
We thank our supporters for their understanding while we work through this issue.
Any questions regarding this incident can be directed to the team at info@imperialcharity.org.uk
