Malwarebytes Phishing Campaign Targets Revolut Customers Following Data Breach
Article Content
- •Revolut experienced a data breach affecting sensitive customer records.
- •Phishing texts targeting customers appeared shortly after the breach announcement.
- •The connection between the breach and phishing campaign remains uncertain.
Revolut disclosed a data breach affecting sensitive customer records, including identity information and account details. Shortly after the breach announcement, affected customers began receiving phishing texts that mimic legitimate communications from Revolut. The phishing messages, which appeared in the same conversation as official texts, prompted users to enter sensitive information on a fraudulent site. It remains unclear if the phishing campaign is directly linked to the breach or if it is an opportunistic attack exploiting the situation. Revolut has stated that only a 'limited' number of customers were affected and has contacted them directly. Security experts advise customers to be cautious and avoid clicking on links in unsolicited messages. The phishing domain was first scanned on September 14, just two days after the breach was made public. This incident highlights the risks associated with data breaches and the potential for subsequent phishing attacks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Revolut in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…