Data Leak Affects Approximately 680 Revolut Customers Due to Fraudulent Requests
- About 680 customers may have been affected by a data leak involving fraudulent requests sent from compromised Italian government email accounts.
- Attackers allegedly used public cryptocurrency transactions and wallet addresses to target high-asset customers for KYC data.
- Revolut has not confirmed all figures or details, including claims of ransom demands and the posting of customer documents online.
- Researchers reported that attackers submitted hundreds of transaction IDs in a “spray and pray” strategy, posing as legitimate government requests.
- Documents revealed that Revolut invoked jurisdictional limitations when responding to official requests for account information.
The incident highlights systemic vulnerabilities in verifying official requests, raising concerns about the security protocols of financial institutions like Revolut amidst evolving cyber threats.
As a result of this breach, approximately cryptocurrency transaction data linked to wealthy clients was reportedly misused, emphasizing the importance of robust security measures in protecting customer information.