Could You Be Affected by the NHS London Data Breach?

The Synnovis cyber attack caused widespread disruption across London NHS services, with more than 10,000 appointments and procedures reportedly cancelled or delayed. The incident has also been linked to at least one patient death. 

Join the Claim isn’t a law firm. We connect you with regulated UK firms that run group action claims. If one of our partner firms takes this case forward, we’ll share more details, including how to check your eligibility.
Join the Claim Limited is a claims management company. This claim is not regulated by the Financial Conduct Authority. Join the Claim Limited is authorised and regulated by the FCA (FRN: 1053404) for regulated claims management activities only.

Quick & Simple

Register your interest

Stay Informed

Get justice

Overview

A cyber attack on NHS pathology provider Synnovis caused major disruption across London healthcare services, with more than 10,000 appointments and procedures reportedly cancelled or delayed following the incident. Affected services included cancer care, blood testing and urgent medical treatment across multiple NHS trusts and GP practices.

The attack has since been linked to at least one patient death, with delays to blood test results identified as a contributing factor. Reports also suggest hundreds of patient safety incidents were connected to the disruption caused by the breach.

Hackers linked to the Qilin ransomware group allegedly published around 400GB of stolen data online, including sensitive patient information such as names, NHS numbers and test results. Patients affected by the breach may also face an increased risk of scams, fraud and identity theft.

We are monitoring the situation closely. Register your interest and we’ll keep you updated if one of our regulated UK partner law firms is able to take this claim forward.

NHS breach – At a glance

Status

Stay Informed

Stolen data published

400GB 

What do we know about the NHS London data breach?  

  • Synnovis, an NHS pathology services provider, was hit by a ransomware cyber attack on 3 June 2024, causing widespread disruption to pathology and blood testing services across London.
  • Guy’s and St Thomas’ NHS Foundation Trust, King’s College Hospital NHS Foundation Trust and a number of GP services were affected by the breach.
  • More than 10,000 outpatient appointments and over 1,700 elective procedures were reportedly postponed because of the disruption caused by the attack.
  • Russian-linked ransomware group Qilin claimed responsibility for the cyber attack.
  • Around 400GB of stolen data was allegedly published online, including sensitive patient and staff information such as names, dates of birth, NHS numbers, test results and details relating to blood tests and other medical procedures.
  • The attack has since been linked to at least one patient death, with delays to blood test results identified as a contributing factor.
  • In late 2025, Synnovis confirmed it had completed its investigation into the breach and began notifying affected NHS organisations whose patient data may have been compromised.

How Join the Claim works

Quick survey

Take a moment to answer a few simple questions so we can understand your connection and keep you updated.

Register interest

Share your details so we can keep you informed if any updates become available.

Join a claim

If a partner law firm takes this claim forward, we’ll let you know the next steps and how to join.

Frequently asked questions

On 3 June 2024, Synnovis, an NHS pathology services provider, experienced a ransomware cyber attack that disrupted pathology and blood testing services across parts of London. The attack affected organisations including Guy’s and St Thomas’ NHS Foundation Trust, King’s College Hospital NHS Foundation Trust and a number of GP services.

Russian-linked ransomware group Qilin claimed responsibility for the attack and allegedly published around 400GB of stolen data online after a reported ransom demand went unpaid. The compromised information is understood to include sensitive patient and staff data, such as names, NHS numbers, test results and details relating to blood tests and medical procedures.

The disruption caused by the attack reportedly led to more than 10,000 cancelled or postponed appointments and procedures. The incident has also since been linked to at least one patient death, with delays to blood test results identified as a contributing factor.

Data published following the Synnovis cyber attack reportedly included highly sensitive patient and staff information. According to updates released by Synnovis and NHS organisations, the compromised data may have included names, dates of birth, NHS numbers, test results and test codes indicating the type of medical tests requested.

Some of the stolen information also reportedly related to blood tests and other pathology services. Synnovis later confirmed that administrative and business support data was also affected by the breach.

In late 2025, affected NHS organisations began reviewing the stolen files to determine exactly whose data had been impacted and whether individual patients or staff needed to be contacted directly.

You may be affected if you received treatment, blood tests or pathology services through organisations linked to Synnovis around the time of the June 2024 cyber attack. This includes patients connected to Guy’s and St Thomas’ NHS Foundation Trust, King’s College Hospital NHS Foundation Trust and a number of GP practices and healthcare services in London.

Synnovis has confirmed that stolen data may include patient names, NHS numbers, test results and other sensitive medical information. However, affected NHS organisations are still reviewing the compromised files to determine exactly whose data was impacted.

Some NHS trusts and healthcare providers may contact affected individuals directly if they believe personal information has been compromised. Even if you have not yet been contacted, your data may still have been involved in the breach.

If you are concerned, it is sensible to remain alert to suspicious emails, phone calls or messages asking for personal or financial information.

A group action claim allows people affected by the same issue to take action together. This strength in numbers helps stand up to big organisations. Join the Claim helps connect people with law firms so these actions have a real impact. 

No. Registering simply means you’ll receive updates. If a law firm later takes on the case, you’ll be given the option to learn more about the process and any potential costs before deciding whether to take part. 

We are not a law firm. Our role is to keep people informed about potential group actions if one of our regulated UK partner law firms is able to take this claim forward.  

Latest updates on the NHS (Synnovis) data breach

  • January 2026

    The NHS announced plans to begin assessing the cybersecurity and risk management practices of suppliers following a series of major cyber incidents affecting healthcare services and patient data.

     

  • November 2025

    NHS England confirmed that Synnovis had completed its investigation into the stolen data and had started notifying affected NHS organisations.

    Synnovis said the compromised information included personal data such as names, NHS numbers, test results and test codes indicating the nature of medical tests requested.

    Synnovis confirmed it was contacting NHS partners whose data had been compromised and said the notification process would be completed by 21 November 2025.

    Synnovis also confirmed it had not paid a ransom to the Qilin ransomware group following the attack.

     

  • June 2025

    King’s College Hospital NHS Foundation Trust confirmed that a patient’s death had been linked to the disruption caused by the cyber attack. A review found that delays to blood test results during the incident were among the contributing factors.

    Reports suggested there had been nearly 600 incidents linked to the attack, including cases involving moderate and severe patient harm.

     

  • 10 – 16 June 2024

    More than 320 operations and almost 1,300 outpatient appointments were postponed due to the hack.

     

  • 3 June 2024

    Synnovis experienced a ransomware cyber-attack which resulted in interruptions to many of its pathology services.

  • December 2024

    Synnovis pathology staff announced plans to strike for five days in December 2024. Trade union Unite said the cyber-attack had an 'alarming impact' on staff who had to work additional hours without access to essential computer systems.

We’ll provide more updates on this case as they happen.

Join the claim
Join the claim
Join the claim

Who could be affected by the NHS London Data Breach?

Patients were left at risk of fraud, scams and ID theft. 

Register to stay updated and we’ll let you know if a partner law firm takes this claim forward.

Rated Excellent


on REVIEWS.io

Rated Excellent on REVIEWS.io

Join the claim
Clifford
Very easy to sign up, hope its sorted soon
Susan
Very easy and quick to complete the claim Everything was explained well and fees payable in etc were made very clear
Peter
So easy to sign up for the claim

Latest news