Published: 26 September 2025, The English Chronicle Desk
Cybercriminals are reported to have stolen sensitive information, including names, addresses, and photographs of approximately 8,000 children from the Kido nursery chain, prompting concerns about data security and child safety. According to reports, the hackers have demanded a ransom from the company and claim to hold additional information, including details of the children’s parents, carers, and safeguarding notes. Some parents and carers have reportedly been contacted directly by the perpetrators as part of the extortion attempt.
Kido, which operates 18 sites in London and additional facilities in the United States, India, and China, has yet to confirm the scope of the breach or release an official public statement. However, an employee at one of the nurseries told the BBC that staff had been notified of a data breach affecting the company’s internal systems.
The Metropolitan Police confirmed they had received a referral on Thursday following reports of a ransomware attack on a London-based organisation. “Enquiries are ongoing and remain in the early stages within the Met’s cyber crime unit. No arrests have been made,” a spokesperson said. The Information Commissioner’s Office (ICO) also confirmed that Kido International had reported the incident and that the office was assessing the information provided.
This incident is part of a growing trend of cyber-attacks targeting organisations with sensitive information. In recent months, a number of high-profile companies have suffered significant breaches. The Co-op reported an £80 million loss to profits after a cyber-attack in April, while Jaguar Land Rover has been unable to assemble vehicles since the start of the month following a cyber intrusion into its systems. The carmaker was forced to shut down the majority of its computer systems, which are essential for tracking parts, vehicles, tooling, and sales operations for its Range Rover, Discovery, and Defender SUVs. Although some systems have now resumed limited operations, the disruption has had widespread financial and operational implications.
Cybersecurity experts warn that attacks targeting organisations handling sensitive personal data, particularly involving children, pose serious risks. Beyond financial losses, such breaches can threaten the privacy and safety of individuals, with long-lasting consequences. The potential exposure of safeguarding information in this case has raised particular concern among parents and advocacy groups.
While authorities continue to investigate, the incident underscores the increasing vulnerability of institutions to ransomware and other cyber threats. It also highlights the urgent need for organisations to strengthen digital security measures, implement robust backup protocols, and ensure rapid response mechanisms to mitigate potential damage.
Kido International has not yet publicly addressed how the breach occurred or whether law enforcement and cybersecurity specialists are actively assisting in the investigation. Meanwhile, the affected parents and carers are anxiously awaiting confirmation and guidance on the steps being taken to protect the children and mitigate the risks posed by the compromised data.
As ransomware attacks become more frequent and sophisticated, experts stress the importance of proactive cybersecurity measures across sectors, particularly for organisations handling sensitive data such as nurseries, schools, and healthcare providers. The incident serves as a stark reminder of the growing intersection between technology, security, and personal safety in an increasingly digital world.

























































































