Revolut hit by data breach after fake government email scam
Revolut has confirmed that it disclosed sensitive customer information, including passports, after receiving fraudulent requests sent from a legitimate government agency email domain.
Revolut, a British fintech company, has confirmed that it disclosed sensitive customer information to fraudsters. The company received fraudulent requests for customer data from a legitimate government agency email domain, which it initially treated as genuine.
The exposed information includes passports, driving licences, dates of birth, home addresses, email addresses, and phone numbers. According to The Register, the breach also included know-your-customer (KYC) data, verification selfies, account statements, IBANs, withdrawal records, and full transaction histories.
Revolut has contacted the affected individuals directly to inform them and provide support. The company stated that its systems and customer funds were unaffected by the breach. The number of impacted customers and their locations have not been disclosed, although Revolut has around 3.4 million customers in Ireland.
Brief written by urgent.news from Finextra, The Record, RTE News, The Register — 4 reports on this story. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.