Revolut Customers Targeted by Hackers Impersonating Italian Law Enforcement
Hackers impersonating Italian law enforcement tricked Revolut into releasing sensitive customer data. The attackers posed as police for months, sending emails from an Italian government domain and requesting files on nearly 700 high-net-worth customers. They received passports, selfies, addresses, account details, and full transaction histories for these individuals.
The hackers then used blockchain analysis to pinpoint Revolut accounts with substantial cryptocurrency holdings, allowing them to identify the targets before sending any emails. The attackers switched from demanding Bitcoin to Monero for their $3 million ransom because Monero hides sender, receiver, and amounts from law enforcement chain analysis.
Affected customers are advised to enable hardware-key two-factor authentication, avoid SMS codes vulnerable to SIM swaps, and whitelist withdrawal addresses on every crypto account. Revolut has confirmed that its core systems, databases, and customer funds remain untouched, but the company's protocols for handling police requests functioned as designed.