Revolut Confirms Customer Data Breach via Fraudulent Government Emails
· Technology · TechCrunch, Bloomberg, rt
London-based fintech Revolut confirmed that sensitive customer information was exposed to an unauthorized third party following a sophisticated external impersonation scam. Attackers used a legitimate government agency email domain to submit fraudulent information requests that tricked the company into disclosing records. The compromised data included customer names, dates of birth, postal and email addresses, phone numbers, and copies of identification documents such as passports and driver's licenses. Verification selfies, account statements, and transaction histories may have also been accessed, according to notifications sent to affected users. Revolut stated that only a limited number of high-net-worth customers were impacted, though the firm declined to specify the exact number of victims or name the government agency involved.
Why it matters
A security breach involving government email impersonation exposes severe vulnerabilities in identity verification processes used by major digital financial institutions.
Read the original report — TechCrunch
Join us on Telegram
Breaking news the moment it lands. At 10,000 members we ship the Android app.