
Revolut Hackers Demand Ransom After Accessing Customer Data
Attackers who breached Revolut by exploiting a fake government request have published client data and demanded payment in cryptocurrency. The group gave Revolut a 24-hour window to comply, claiming to have targeted customers with significant crypto holdings.
Written by CoinArticle’s AI Newsroom · from 2 cited sources. How we work
The Breach and Ransom Demand
Hackers who accessed Revolut customer records by submitting fraudulent government requests have published some of that data and issued a ransom demand. According to reporting, the attackers specified 10,000 Bitcoin as the payment amount in one communication, while also demanding $3 million in Monero in another, suggesting either conflicting demands or a shift in strategy. The group gave Revolut a 24-hour deadline to pay.
Targeting High-Net-Worth Crypto Users
The attackers claimed they specifically targeted Revolut customers with significant cryptocurrency holdings, narrowing their focus within the broader user base. The threat to sell customer data to third parties creates exposure risk not only for Revolut but for the identified customers themselves, who could face follow-on social engineering or targeted attacks.
Attack Vector
The breach exploited Revolut's customer data access systems by leveraging forged government requests, bypassing standard identity verification checks. This method circumvented conventional security layers that might have caught a direct technical intrusion, highlighting how social engineering can defeat even well-resourced fintech platforms.
Why It Matters
For Traders
Crypto traders with Revolut accounts should assume their account details and holdings may be compromised; consider moving funds and changing credentials immediately.
For Investors
This breach exposes operational and compliance risks at fintech platforms holding regulated customer data, signaling potential pressure on custody and user protection standards.
For Builders
DeFi and self-custody protocols may see inbound user migration from centralized platforms if this breach erodes trust in fintech infrastructure security.
This article is for information only and is not financial advice. Read the full disclaimer.




