Revolut Confirms Data Breach After Fraudsters Fake Government Data Requests

TechNadu · x · 2026-09-14

Revolut has confirmed a data breach in which fraudsters allegedly used a legitimate government agency email domain to submit fake customer-data requests, bypassing verification.

Reportedly exposed data includes passports, verification selfies, account statements and transaction histories. The incident highlights how identity-impersonation social engineering (a BEC-style variant) can defeat request-verification processes at fintech companies.

Related event: Revolut Confirms Data Breach as Hackers Publish Customer KYC Data Daily in Extortion Bid(5 posts)→

Original post →

More from Safety

Safety channel →