The U.K. National Health Service acknowledged a data breach after sensitive transplant patient information was routinely transmitted over an unencrypted pager network, according to a BBC investigation. The exposed data reportedly included patient names, dates of birth, and details about organs being offered or needed, creating a risk that highly sensitive medical information could be intercepted during transmission.
The disclosure highlights the NHS's continued reliance on obsolete pager technology despite prior direction to phase out the devices by 2021. Reporting attributed the persistence of pager use to underinvestment in healthcare IT infrastructure, and the incident appears to stem from insecure handling of patient data rather than malware, ransomware, or another external network intrusion.

See the actors and campaigns active against you right now.
4 events from the most recent confirmed update back to the earliest known activity.
The NHS had been directed to stop using pagers altogether by 2021. The later reporting indicates the organization did not fully meet that deadline.
DataBreaches previously reported that NHS pagers were leaking medical data in a post titled "UK: NHS pagers are leaking medical data." This establishes earlier public reporting on the insecure use of pagers for sensitive health information.
The U.K. National Health Service admitted a data breach involving patients' personal information being sent over pager devices. The affected individuals included transplant patients whose sensitive medical details were exposed through the pager system.
A BBC investigation found that sensitive transplant patient data was routinely transmitted over an unencrypted pager network, including names, dates of birth, and details about organs being offered or needed. The finding revealed insecure handling of sensitive NHS patient information.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.