Manchester-based HIV charity George House Trust warned service users that attackers may have accessed and downloaded sensitive personal and health-related records from its systems. Exposed information may include contact details, home addresses, and case notes documenting individuals’ engagement with the charity; the organization said it had found no evidence that the data had been published or misused.
The incident was traced to a breach of Beacon, a technology and CRM provider serving more than 1,000 UK charities and non-profits. Beacon said the intrusion occurred at the end of July and notified George House Trust on August 3; the charity subsequently reviewed the breach and alerted affected individuals after identifying sensitive records. The attacker, intrusion method, and number of affected people have not been disclosed, while the wider Beacon incident could affect up to 1,500 charities.

See attribution, scope, and your downstream exposure.
4 events from the most recent confirmed update back to the earliest known activity.
After reviewing Beacon-held records, George House Trust notified affected users that sensitive personal and health-related information may have been downloaded. Potentially exposed records included contact details, home addresses, and notes about individuals' engagement with the charity; the charity said it had no evidence of publication or misuse at the time.
Beacon notified Manchester HIV charity George House Trust that its database data may have been accessed and downloaded by attackers.
Beacon engaged external cybersecurity experts to contain the incident and investigate its scope, while supporting affected organizations.
Beacon reported that attackers breached its database system at the end of July. The system is used by more than 1,000 UK charities, and the wider incident could affect up to 1,500 organizations.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
3 references tracked. Mallory keeps watching after this page renders.
malware.news
Open sourcedatabreaches.net
Open sourceteiss.co.uk
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.