Update 14 August 2026
On Monday 3 August 2026, Behçet’s UK was informed about a cyber security incident affecting Beacon CRM, the third-party database system we use to hold information about our current and former members, supporters, volunteers, service users, and beneficiaries.
Beacon has now confirmed that an unauthorised third party bypassed their security systems and exported a copy of their central database backups. This was part of a broad attack affecting over 1,000 UK charities and organisations that use Beacon’s platform. Unfortunately, our assessment is that the data relating to Behçet’s UK was included in this export.
The most important reassurance we can give you is that there is no evidence that any data has been published, shared, or misused online. Furthermore, Beacon has permanently closed the security flaw and put advanced, 24/7 monitoring systems in place to secure their environment moving forward.
We know that many of our members, supporters, and beneficiaries have entrusted us with highly personal information. We take that responsibility extremely seriously and are sincerely sorry for any concern and distress this situation may cause.
Our detailed Frequently Asked Questions section answers key questions about the incident and contains practical advice on staying vigilant against potential scams, along with guidance on safely checking your records.
In the meantime, if you are concerned or have any questions, please get in touch with us by email at: dpo@behcetsuk.org or by phone on 0345 130 7328
