Revolut confirms sensitive customer data breach, falling for fake government requests
Revolut said the exposed records included ID documents, selfies and transaction histories, and it blocked the request after alerting regulators.
- Revolut disclosed customer identities and financial records, including Bitcoin transaction histories, after acting on a fraudulent request that appeared to come from a government agency.
- The request arrived from an unauthorized email account using an official government agency's domain; it passed authentication checks, leading staff to believe the communication was genuine.
- Disclosed records included full names, dates of birth, occupations, identity documents, and Bitcoin transaction histories, though the company confirmed biometric facial telemetry data was not involved.
- On Friday, on-chain investigator ZachXBT shared a customer notice on Telegram, though the company has not confirmed the total number of affected users.
215 Articles
215 Articles
In a data leak at the online bank Revolut on Saturday, data belonging to Dutch customers was likely shared with cybercriminals. That is reported by BNR…
The neobank responded to what it believed to be a legal request from a government administration, including copies of identity documents. The scammers had actually used a real e-mail address of the usurped agency.
Revolut Attackers Leak Customer Data, Demand Daily Payments
Threat actors who targeted Revolut are publicly posting sensitive customer data and threatening daily further releases unless paid. The group accuses the fintech of privacy negligence and improper data sharing outside its jurisdiction.
Coverage Details
Bias Distribution
- 52% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium




































