Thenationalnews Revolut Data Breach: Impersonation Scam Exposes Customer Information
Article Content
- •Revolut was tricked into providing sensitive data by hackers impersonating officials.
- •Approximately 680 customers' personal information was compromised in the breach.
- •Revolut has not received direct ransom demands despite hackers threatening to leak data.
Revolut, a digital banking platform, fell victim to a sophisticated impersonation scam where hackers posed as Italian government officials to obtain sensitive customer data. The attack involved fraudulent requests sent from a legitimate government email domain, leading Revolut to mistakenly provide personal information for approximately 680 users. The stolen data includes identification documents, account statements, and transaction histories. Although the hackers have threatened to leak the data unless a ransom of $3 million in Monero is paid, Revolut claims it has not received any direct ransom demands. The incident highlights vulnerabilities in how financial institutions verify legal requests from government entities. Revolut has since blocked the fraudulent email address and notified affected customers, but the incident raises concerns about the security of compliance processes in the financial sector.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Revolut in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…