Revolut Hackers Demand Ransom After Accessing Customer Data
SecurityExchanges
Bearish

Revolut Hackers Demand Ransom After Accessing Customer Data

Attackers who breached Revolut by exploiting a fake government request have published client data and demanded payment in cryptocurrency. The group gave Revolut a 24-hour window to comply, claiming to have targeted customers with significant crypto holdings.

Sep 17, 2026, 12:02 AM1 min read

Written by CoinArticle’s AI Newsroom · from 2 cited sources. How we work

The Breach and Ransom Demand

Hackers who accessed Revolut customer records by submitting fraudulent government requests have published some of that data and issued a ransom demand. According to reporting, the attackers specified 10,000 Bitcoin as the payment amount in one communication, while also demanding $3 million in Monero in another, suggesting either conflicting demands or a shift in strategy. The group gave Revolut a 24-hour deadline to pay.

Targeting High-Net-Worth Crypto Users

The attackers claimed they specifically targeted Revolut customers with significant cryptocurrency holdings, narrowing their focus within the broader user base. The threat to sell customer data to third parties creates exposure risk not only for Revolut but for the identified customers themselves, who could face follow-on social engineering or targeted attacks.

Attack Vector

The breach exploited Revolut's customer data access systems by leveraging forged government requests, bypassing standard identity verification checks. This method circumvented conventional security layers that might have caught a direct technical intrusion, highlighting how social engineering can defeat even well-resourced fintech platforms.

Why It Matters

For Traders

Crypto traders with Revolut accounts should assume their account details and holdings may be compromised; consider moving funds and changing credentials immediately.

For Investors

This breach exposes operational and compliance risks at fintech platforms holding regulated customer data, signaling potential pressure on custody and user protection standards.

For Builders

DeFi and self-custody protocols may see inbound user migration from centralized platforms if this breach erodes trust in fintech infrastructure security.

This article is for information only and is not financial advice. Read the full disclaimer.

Live prices:MoneroBitcoin

Related Articles

Latest News