Capita's Civil Service Pension Portal Data Breach Exposes Member Information

Capita's Civil Service Pension Portal Data Breach Exposes Member Information

First seen 9 Apr 2026, 11:01 UTC ComputerweeklyTheregisterDatabreaches 86% similarity 36.9

Article Content

Browse articles
ThreatCluster

On March 30, 2026, Capita reported a data breach affecting its Civil Service Pension Scheme (CSPS) member portal, which exposed the personal data of 138 public sector workers for approximately 35 minutes. The breach allowed some members to access Annual Benefit Statements (ABS) that did not belong to them. Capita immediately suspended the ABS functionality and initiated an investigation into the incident. All affected members were notified by April 3, 2026. The Cabinet Office is closely monitoring the situation and may take further action. This incident marks Capita's second data breach in three years, raising concerns about its capability to manage the pension scheme effectively. The Public and Commercial Services Union (PCS) criticized Capita's handling of the situation, emphasizing the need for the government to consider insourcing the service. The breach comes amid ongoing issues with the pension portal's functionality and a significant backlog of cases inherited by Capita.

Key Points: • Capita's data breach affected 138 members of the Civil Service Pension Scheme. • The breach exposed personal data for about 35 minutes on March 30, 2026. • The Cabinet Office is assessing the situation and may take further action.

ThreatCluster AI How this analysis works

Timeline

2026-03-30
Data breach occurred on CSPS member portal for 35 minutes.
2026-04-03
Affected members were notified of the breach.
2026-04-09
Capita confirms the breach and ongoing investigation.

Community

Browse all →