CYBERSECURITY ALERT: Revolut Hit by Extortion Threat After Government Impersonation Breach 🚨
Threat actors who obtained sensitive Revolut user records have begun publishing identity documents online and are threatening daily data dumps unless the fintech pays an extortion fee.
The incident stems from a sophisticated social engineering breach where attackers leveraged an email address under a legitimate government agency domain to submit fraudulent information requests. Revolut disclosed that internal systems and customer funds remain secure, but records belonging to a select group of high-profile and high-net-worth users were handed over.
Key Details of the Incident:
• Attack Vector: Spoofed/compromised legitimate government domain submitting official-looking data requests.
• Leaked Full names, DoB, phone numbers, passport/driver's license copies, KYC verification selfies, and full transaction logs (including Bitcoin transaction history).
• Extortion Demand: Attackers announced on Telegram that they will release batches daily until "Revolut pays."
• High-Profile Targets: Exposed documents reportedly include records from professional athletes, crypto gaming founders, and former Mt. Gox CEO Mark Karpelès.
Market & Security Takeaway for Crypto Users:
1. Heightened Phishing & SIM-Swap Risk: When KYC selfies, phone numbers, and passport scans leak together with crypto transaction histories, targeted social engineering and SIM-swap attempts spike dramatically.
2. The Problem with Centralized KYC Honey Pots: This breach highlights the systemic vulnerability of centralized KYC storage—even when internal core systems aren't directly hacked, compliance verification pathways can be exploited.
Safety Protocol:
#revolut #CyberSecurity #DataLeak #OpSec
Threat actors who obtained sensitive Revolut user records have begun publishing identity documents online and are threatening daily data dumps unless the fintech pays an extortion fee.
The incident stems from a sophisticated social engineering breach where attackers leveraged an email address under a legitimate government agency domain to submit fraudulent information requests. Revolut disclosed that internal systems and customer funds remain secure, but records belonging to a select group of high-profile and high-net-worth users were handed over.
Key Details of the Incident:
• Attack Vector: Spoofed/compromised legitimate government domain submitting official-looking data requests.
• Leaked Full names, DoB, phone numbers, passport/driver's license copies, KYC verification selfies, and full transaction logs (including Bitcoin transaction history).
• Extortion Demand: Attackers announced on Telegram that they will release batches daily until "Revolut pays."
• High-Profile Targets: Exposed documents reportedly include records from professional athletes, crypto gaming founders, and former Mt. Gox CEO Mark Karpelès.
Market & Security Takeaway for Crypto Users:
1. Heightened Phishing & SIM-Swap Risk: When KYC selfies, phone numbers, and passport scans leak together with crypto transaction histories, targeted social engineering and SIM-swap attempts spike dramatically.
2. The Problem with Centralized KYC Honey Pots: This breach highlights the systemic vulnerability of centralized KYC storage—even when internal core systems aren't directly hacked, compliance verification pathways can be exploited.
Safety Protocol:
#revolut #CyberSecurity #DataLeak #OpSec