Find notable cyber news and cases, enriched with sources, timelines, and signals.

Royal Borough of Kensington and Chelsea hit by cyberattack

Incident
First reported
Last updated
Happening score
H score 24
1 unique sources, 2 articles

Summary

Hide ▲

The Royal Borough of Kensington and Chelsea and Westminster City Council were responding to a cybersecurity incident that disrupted multiple shared systems, including phone-lines, and forced continuity measures. The councils notified the ICO and are working with the NCSC on response and recovery. They said they are diverting resources to monitor communications and keep critical services running for residents.

Related Happenings

NCSC-led NHS cyber resilience program

Public Sector Action
First: 20.04.2026 12:30 Last: 20.04.2026 12:30 Sources 1

About this happening: The **UK National Cyber Security Centre (NCSC)** has outlined an **ongoing cyber resilience plan** for the **National Health Service (NHS)**, with the effort aimed at reducing ris...

Pay2Key ransomware campaign accelerated by US-Iran tensions

Campaign
First: 26.03.2026 12:45 Last: 26.03.2026 12:45 Sources 1

About this happening: Pay2Key's ransomware operation appears to have accelerated amid **recent US-Iran tensions**, indicating an active campaign with broader victimization risk. The group has been acti...

INC ransomware healthcare targeting campaign across Oceania

Campaign
First: 12.03.2026 00:00 Last: 12.03.2026 00:00 Sources 1

About this happening: The **INC ransomware operation** has expanded its targeting of **healthcare organizations** across **Oceania**, increasing the risk of **service disruption** and **data theft**. T...

NCSC warning on Iranian cyberattack risk for UK organisations

Public Sector Action
First: 02.03.2026 17:54 Last: 02.03.2026 17:54 Sources 1

About this happening: The **UK National Cyber Security Centre (NCSC)** issued a warning about a **heightened risk of Iranian cyberattacks** amid the **Middle East conflict**, urging UK organisations to...

UK NCSC issues Middle East indirect-risk guidance on monitoring, MFA, backups, and contingency planning

Defensive Guidance
First: 02.03.2026 17:00 Last: 02.03.2026 17:00 Sources 1

About this happening: The **UK NCSC** issued guidance for organizations with **Middle East exposure**, urging immediate controls to reduce spillover risk from the regional escalation. The recommended r...

Timeline

  1. 01.12.2025 12:02 1 articles · 5mo ago

    RBKC confirms copied historical data and extended disruption

    Victim Impact Update

    RBKC told residents on Friday 28 November 2025 that its cyber-attack on an IT service provider may have exposed historical resident, customer, and service-user data, saying evidence showed some data had been copied and taken away. The council warned about possible social engineering, said restoring services could take at least two more weeks, and noted that Westminster City Council and Hammersmith and Fulham Council were assessing shared-service impact.

    Show sources
  2. 26.11.2025 11:20 2 articles · 6mo ago

    Royal Borough of Kensington and Chelsea hit by cyberattack

    Initial Disclosure

    Identified on **Monday morning**, the incident had already affected shared council systems by the time RBKC issued its **Tuesday** statement. The early response focused on keeping **phone-lines** and other critical services available while recovery began.

    Show sources