Home / Aug 16, 2026 / Story
0
#4 SecurityWeek general August 14, 2026 at 09:20 UTC

Over 1,000 Charities Hit by Beacon CRM Data Breach

By Eduard Kovacs

AI Summary

A compromised AWS access key — exposed in publicly available JavaScript build artifacts — led to a data breach at Beacon CRM that impacted over 1,000 charities. This incident illustrates a common secrets-management failure where credentials are inadvertently embedded in client-side build outputs and indexed by public repositories or CDNs. Security teams should audit JavaScript bundles and CI/CD artifacts for exposed cloud credentials.

Relevance score: 83.0/100

# More from August 16