Revolut says customer data exposed through fake government email

摘要:Government domain email used to trick Revolut into revealing some customers data

Financial tech and banking company Revolut released sensitive customer data, including copies of passports, verification selfies and full transaction histories after receiving a fraudulent request that seemed to be from a government agency.

Requests for customer information sent from a legitimate government agency email domain passed Revoluts authentication checks, according to International Cyber Digest posting on X. Revolut later concluded they were not authentic, and customers whose information was compromised were notified on Friday.

A company spokesperson told Cointelegraph on Saturday that “Revolut recently identified a sophisticated external impersonation scam where an unauthorised third party utilised a legitimate government agency domain email to submit fraudulent requests for information.”

The spokesperson added that upon detection, Revolut blocked the address and alerted the relevant government agency. It also notified enforcement agencies and financial regulators.

Related: Fears of AI-driven DeFi hack epidemic overstated for now — but not for long

“Revolut systems and customer funds are unaffected. We have contacted the limited number of impacted individuals directly to inform them and provide support,” the spokesperson said.

Crypto sleuth ZachXBT reportedly said he thought the incident was limited in size and aimed at high-net-worth users.

The incident caused a stir on X that saw some users criticizing the prevailing system of mandatory information sharing. Marc Zeller wrote that he woke up to all his data being leaked by Revolut, adding: “Sharp reminder that KYC hasn‘t produced meaningful upside and has put many in harm’s way.”

Magazine: Is Bitcoin too volatile to risk your retirement on?

免责声明

本文观点仅代表作者个人观点,不构成本平台的投资建议,本平台不对文章信息准确性、完整性和及时性作出任何保证,亦不对因使用或信赖文章信息引发的任何损失承担责任
上一篇

七月惨败的“ AI 股神”,已经杀回来了

下一篇

前 RippleX 高管称 XRP 具有重要应用场景