Fintech

Revolut: Hackers threaten: ‘We’re selling customer data’. At least 15 Italians affected

Following Revolut’s failure to pay the ransom, the hackers who breached the data of around 680 high-net-worth clients are now threatening to sell the stolen information and to demand money directly from the victims in order to remove them from the database

2' min read

Translated by AI
Versione italiana

2' min read

Translated by AI
Versione italiana

The story of the cyberattack on Revolut is entering a new phase. Following the failure of the extortion attempt against the British fintech firm, the perpetrators of the attack are now directly threatening the affected users, announcing the sale of the stolen data and offering victims the chance to have their information removed from the database in exchange for a payment.

This was revealed by the hacker himself, who, in statements reported by *Corriere della Sera*, claims to have begun selling the stolen data. According to the attacker, over 680 high-net-worth clients are at risk of financial theft, phishing campaigns and other forms of cybercrime.

Loading...

The case is also of particular significance for Italia. The hacker claims that at least 15 Italian citizens are among those affected, a figure higher than the eight cases previously cited by the authorities. According to the same source, there are also other individuals residing abroad who hold Italian documents.

Among the materials published on the dark web as evidence of the breach are reportedly particularly sensitive documents. Some files are said to contain a complete history of transactions carried out via Revolut, with one case reportedly comprising over 700 pages of transactions. Other documents are said to contain photographs of customers and copies of the identity documents used to open accounts.

The hackers also claim to allow victims to pay to have their information deleted before it is sold. This is a promise which, as is often the case with cyber-extortion, offers no real guarantee that the data will actually be deleted once payment has been made.

Meanwhile, the dispute between the criminal group and Revolut over the handling of the incident remains unresolved. According to the attackers’ account, the company received a report regarding the compromised database but failed to take any action. The hackers also claim to be in possession of extensive customer data, including KYC (Know Your Customer) documents, addresses, telephone numbers, email addresses, bank details and transaction histories in both traditional currencies and cryptocurrencies.

The digital bank had initially stated that it had not received any ransom demands, whilst it subsequently refrained from making any further public comments on the matter. The perpetrators of the attack, however, claim that there had been contact with individuals who presented themselves as representatives of the company, although no agreement was reached.

This incident has reignited the debate on data security in the fintech sector, just as Revolut is stepping up its expansion into new financial services and digital payments. The threat of personal and financial information being sold off represents one of the most serious risks for the customers affected, who are exposed not only to potential financial fraud but also to identity theft and increasingly sophisticated social engineering campaigns.

Copyright reserved ©
Loading...

Brand connect

Loading...

Newsletter

Notizie e approfondimenti sugli avvenimenti politici, economici e finanziari.

Iscriviti