Revolut confirmed a data security incident in which attackers impersonated a government body using a legitimate government-domain email address to trick the company into sharing sensitive customer information. The leaked data may include passports, driving licenses, selfies, account statements, IBANs, and transaction histories, creating long-term risks of identity theft, phishing, and potential physical extortion against high-net-worth clients. #Revolut
Keypoints
- Attackers impersonated a government body to request information from Revolut.
- Revolut says its systems and customer funds were not directly breached.
- Only a limited number of customers were affected by the incident.
- Leaked data may include passports, driving licenses, selfies, and financial records.
- The stolen information could enable phishing, identity fraud, and wrench attacks.
Read More: https://securityonline.info/revolut-breach-wrench-attack-risk/