TechCrunch·3 min read·medium

Revolut confirms customer data breach through fake government requests

J
Jagmeet Singh
Revolut confirms customer data breach through fake government requests
AI Summary

Fintech company Revolut confirmed a data breach where sensitive customer information was exposed to unauthorized parties via a sophisticated email impersonation scam. The company stated that customer funds remain unaffected and that they have alerted relevant authorities.

Why it matters

Highlights the ongoing risks of social engineering and phishing attacks targeting financial institutions and their customers.

Dive DeeperCreate a free account to unlock

British fintech Revolut confirmed that it disclosed sensitive customer information to an unauthorized third party after receiving fraudulent requests sent from a legitimate government agency email domain.

The exposed data included customers’ identity and contact details, including their birth date, postal and email addresses, and phone numbers, as well as copies of their identity documents including passports and driver’s licenses, according to a notification emailed to affected customers and reviewed by TechCrunch. The data may have also included verification selfies, account statements, and transaction histories, the firm said in its notification.

A Revolut spokesperson confirmed to TechCrunch that a “limited” number of customers were impacted and said the company had contacted those customers directly. Revolut, however, did not disclose the exact number of impacted individuals. It also did not answer whether the incident was limited to a specific market and declined to disclose the government agency involved.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologybusiness

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in