Revolut Leaks Customer Data to Hackers Posing as State Agency

1 hour ago
  1. News
  2. Security
  3. Revolut Leaks Customer Data to Hackers Posing arsenic State Agency

Published:Sep 12, 2026, 11:14 AM EDT

The instauration shared personally identifiable accusation from an chartless fig of users aft receiving a petition from an unauthorized authorities email account. The shared documents see individuality details, ID and verification information, and fiscal statements, putting affected users astatine risk.

Published: Sep 12, 2026, 11:14 AM EDT

Revolut Leaks Customer Data to Hackers Posing arsenic  State Agency

Key Takeaways

  • Revolut leaked idiosyncratic information to hackers posing arsenic a authorities agency, exposing clients to individuality theft risks.
  • The leaked information included names, addresses, and ID images, which ZachXBT warned targeted high-net-worth users.
  • This breach fuels planetary backlash against mandatory KYC rules arsenic carnal attacks connected holders escalate.

Revolut Leaks Customer Information To Unidentified Threat Actors

Revolut, a UK-based neobank, became the latest instauration to inadvertently disclose lawsuit accusation to menace actors.

According to an email sent to customers, Revolut, which has a idiosyncratic basal of implicit 70 cardinal customers globally, shared personally identifiable accusation (PII) with unidentified menace actors who posed arsenic a authorities agency. The institution reported that it delivered this information portion it was complying with a request-for-information email that originated from an unauthorized code hosted connected a domain.

“The connection carried genuine domain authentication credentials starring Revolut to fulfill the petition nether the tenable content that it was an authentic authorities bureau request,” it stressed.

Revolut did not disclose the sanction of the instauration allegedly involved. Nonetheless, it did constituent retired that the shared accusation included cardinal details: names, dates of birth, occupations, postal addresses, email addresses, and telephone numbers, perchance risking the idiosyncratic information of the customers progressive successful the leak.

In addition, Revolut besides shared documents and verification data, including passport and driver’s licence images with facial verification pictures, which tin exposure them to ID theft.

Marc Zeller, laminitis of the now-defunct Aave Chan Initiative, was 1 of the customers affected by the leak.

“Woke up to each my information leaked by Revolut. Sharp reminder that KYC hasn’t produced meaningful upside and has enactment galore successful harm’s way,” helium posted connected societal media channels.

Onchain sleuth ZachXBT pointed retired that portion the incidental was apt constricted successful size, it seems to person been aimed astatine high-net-worth users, expanding the chances of being targeted for affected customers.

The incidental comes amid a planetary know-your-customer (KYC) backlash aft respective institutions and crypto companies person besides leaked lawsuit accusation to menace actors, risking users’ idiosyncratic security, arsenic wrench attacks person risen successful frequence and ferocity.

View source