Revolut suffered a data breach affecting 680 customers after complying with a fraudulent request from a hacker using a spoofed government email address. Sensitive personal information including passport details, bank accounts, and identity documents were exposed, and cybercriminals are demanding ransom. Britain's Information Commissioner's Office is investigating the incident.
Revolut inadvertently sent complete customer account files including photos, passports, addresses, IBANs, and Bitcoin histories to unknown individuals impersonating Italian authorities. The leaked data, now circulating on Telegram with daily threats for payment, has exposed customers including Mt. Gox's former CEO Mark Karpelès and crypto entrepreneur Felix Römer.
Revolut customers' personal data was compromised in a breach where attackers obtained and began publishing KYC documents including photos, identity papers, and financial records through Telegram. The attackers, claiming to represent a law enforcement agency, used Italian certified email (PEC) to make the breach appear official, demanding payment from Revolut while threatening to release more victims' information daily.
Revolut disclosed that it inadvertently shared customer personal and financial data, including Bitcoin transaction histories, with an unauthorized third party after mistaking a fraudulent government request for a legitimate one. The request originated from a spoofed email account within official government domain infrastructure with valid authentication credentials. The breach was discovered after Revolut contacted the actual government agency to verify the request, which revealed the compromised account.