The Royal Borough of Kensington and Chelsea has reported that part of data was copied in a recent cyber attack. The council indicated that it had noticed some suspicious activity on early Monday, and it took instant action to isolate compromised systems and protect its network. The authority indicated that it was of the opinion that the breach was predominantly to historical records and that employees were collaborating with experts to comprehend the extent.

The Met Police received a referral via Action Fraud, and officers have begun inquiries. The council also reported the incident to the Information Commissioner’s Office and is working with the National Cyber Security Centre to investigate and contain the breach. Council services have continued to operate, but some phone lines and online services saw disruption while systems were brought under control.
Joint Council Impact
The incident has not been limited to one authority. Westminster City Council and Hammersmith and Fulham Council have been named as linked by shared IT arrangements. Kensington and Chelsea said joint systems meant disruption could cross borough boundaries. Hammersmith and Fulham said it had shut down and secured its network and that it had not detected any indication that systems at the locations were hacked. Westminster reported that it was still working towards the restoration of services and safeguarding residents until the response effort is complete.
Council employees were requested to do their work at home where feasible. Emergency preparations were also put into action, and unnecessary systems were switched off in preparation. The councils in question are verifying that there is no personal or financial information of residents and service users in compromised records. The review is still underway, and the councils cautioned that it will be a long process to establish the full impact.
What Residents Should Do
The councils are advising residents to be especially vigilant of unsolicited calls, emails, or texts that ask them to give personal information. These are encouraged to be wary of the messages that sound odd to them or those that are demanding of their accounts, or where they need to seek an instant response. Anyone who feels that he or she has been a victim should keep the original message and forward it to the council or to Action Fraud.

The incident made the local mayor demand greater investment in resilience, saying that the posts of the population institutions constantly confront threats and need to increase their protective attitude. Independent cyber experts reminded organisations to keep incident plans current and to use the advice of national cyber teams when responding to complex intrusions.
This remains a live investigation. The involved councils have claimed that they will review residents as more information comes out and forensic checks are made. The short-term objective is containment, response, and assistance of anyone who might have been compromised in the attack.