Heise.De 75 Million Revolut Customer Records Allegedly Listed for Sale on Dark Web
Article Content
- •A database of 75 million Revolut records is allegedly for sale on the dark web.
- •Revolut denies any breach, stating the sample data does not match their records.
- •The dataset may be a compilation from various older breaches rather than a new leak.
A threat actor has claimed to sell a database containing 75 million records of Revolut customers on a cybercrime forum. The dataset reportedly includes sensitive information such as payment card details, email addresses, names, and phone numbers. Revolut has stated that they see no indications of a data breach and have verified that the identifiers in the sample data do not match any valid records in their systems. Researchers believe the dataset may be a compilation of data from various older breaches rather than a new incident. The low price of $500 for such a large dataset raises skepticism about its authenticity. If legitimate, the exposed information poses risks of social engineering attacks and identity theft. Revolut previously experienced a targeted cyberattack in 2022 affecting over 50,000 customers.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Microsoft in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…