Technology
Revolut discloses customer data after receiving fraudulent government requests
TechCrunch reports that customer information was exposed through bogus requests sent from a legitimate government domain.
The short version
- Revolut confirmed it shared customer data with an unauthorized party following fraudulent requests sent via a legitimate government email domain.[TechCrunch]
- Compromised information includes names, contact details, birth dates, and copies of official identification documents like passports and driver's licenses.[TechCrunch]
- A company spokesperson stated that a limited group of users was affected, while researcher ZachXBT claimed high-net-worth accounts were targeted.[TechCrunch]
- Revolut declined to specify the total number of impacted customers or identify the government agency involved.[TechCrunch]
Key facts
- Revolut disclosed sensitive customer records to an unauthorized party after receiving fraudulent requests originating from an authentic government email domain.[TechCrunch]
- Exposed customer data encompassed phone numbers, birth dates, postal addresses, and identity document copies such as driver's licenses and passports.[TechCrunch]
- Revolut confirmed a limited number of clients were impacted and contacted directly, but it declined to provide an exact count.[TechCrunch]
- Crypto security researcher ZachXBT claimed the breach appeared to target high-net-worth accounts.[TechCrunch]
What remains uncertain
- The exact number of affected users and the identity of the compromised government agency remain undisclosed.[TechCrunch]
Sources
Outlet counts describe coverage, not independent confirmation. Reports may share a wire service or original source.