Skip to content

Revolut

Disclosed Sep 12, 202613 days agoUnverified

Revolut hands customer ID data to scammer posing as government agency

Revolut said an impersonator used a legitimate government agency email domain to send fraudulent data requests, obtaining a limited number of customers' contact details, ID documents, selfies, statements and transaction histories. Systems and funds were not affected.

What is known

People affectedNot stated in the sources we have
DisclosedSep 12, 2026
AttackPhishing
Data exposedNames, Dates of birth, Addresses, Emails, Phone numbers, Government IDs, Biometrics, Financial
SectorFinance · GB
StatusUnverified: not yet confirmed by an official notice, a filing or the organization

Sources

Notices filed

WhereFiledPeople
ResearchtotalSep 12
Security newspressSep 12

Other breaches at Revolut

BreachAffected
Targeted cyberattack exposes personal data of about 50,000 Revolut customersSep 19, 20224 years agoHackingUnverified50K
History of this record
  • 2026-09-25 · added · seed source

First seen 2026-09-25 (Research). Record counts are as reported. Not legal advice.

Everything about Revolut

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.