Skip to main content
See every side of every news story
Published loading...Updated

Revolut confirms sensitive customer data breach, falling for fake government requests

  • Revolut disclosed customer identities and financial records, including Bitcoin transaction histories, after acting on a fraudulent request that appeared to come from a government agency.
  • The request arrived from an unauthorized email account using an official government agency's domain; it passed authentication checks, leading staff to believe the communication was genuine.
  • Disclosed records included full names, dates of birth, occupations, identity documents, and Bitcoin transaction histories, though the company confirmed biometric facial telemetry data was not involved.
  • On Friday, on-chain investigator ZachXBT shared a customer notice on Telegram, though the company has not confirmed the total number of affected users.
Insights by Ground AI
Podcasts & Opinions

198 Articles

Lean Right

The neobank responded to what it believed to be a legal request from a government administration, including copies of identity documents. The scammers had actually used a real e-mail address of the usurped agency.

·Paris, France
Read Full Article
Reformatorisch DagbladReformatorisch Dagblad
+2 Reposted by 2 other sources
Right

A “limited number” of Revolut customers have been affected by a recent fraud attempt at the online bank. In this incident, an unauthorized party used the email address of “a legitimate government agency” to submit fraudulent requests for information. A spokesperson for the online bank confirmed this following an investigation by BNR Nieuwsradio.

·Apeldoorn, Netherlands (Kingdom of the)
Read Full Article

Revolut, a UK financial services group licensed to operate in Lithuania, has confirmed that a “limited” number of customers’ confidential information was exposed in a phishing attack in which a third party acting illegally used a legitimate government email domain, Bloomberg News reported.

·Vilnius, Lithuania
Read Full Article
Lean Left

The emails came from the real domain of a public agency. Among the information on identity documents, selfies, IBAN and transaction history. It is not known whether Italian customers are involved

·Turin, Italy
Read Full Article
Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 51% of the sources are Center
51% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

thecybersecguru.com broke the news on Saturday, September 12, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal