Beacon said its recent breach likely began with a compromised AWS access key, allowing an attacker to export customer database backups from its CRM platform for charities and nonprofits. The incident may affect more than 1,000 customers, with some UK charities warning that supporter contact details were exposed, while no financial account data has been reported stolen. #Beacon #AWS
Keypoints
- Beaconβs CRM platform serves charities and nonprofit organizations.
- The breach likely started on July 27 and involved data transfer on July 27-28.
- Attackers used a compromised AWS access key to access Beaconβs environment.
- Beacon believes all database data may have been exported.
- Exposed information may include names, phone numbers, email addresses, and postal addresses.
Read More: https://www.securityweek.com/over-1000-charities-hit-by-beacon-crm-data-breach/