Revolut Users' Data Potentially Compromised in Fake Government Request
Cryptocurrency users of Revolut may have had their personal data compromised after the fintech company inadvertently shared user information with hackers.
A report by blockchain researcher ZachXBT suggests that a fake government agency request was mistakenly accepted as genuine, allowing some user data to be accessed or shared in response.
The incident potentially affected users' first and last names, dates of birth, occupations, addresses, email addresses, phone numbers, copies of passports or driver's licenses, selfies taken during identity verification, account statements, IBAN information, withdrawal records, and extensive transaction histories, including Bitcoin transactions.
Revolut's security notice to users stated that biometric facial telemetry data was not affected by the incident. Multiple Revolut users recently received security alerts related to the incident, which may have specifically targeted high-asset users.