Revolut Accidentally Shares Customer Data After Impersonated Government Request
Revolut has confirmed that a mistake in its data handling process led to the exposure of personal and financial details of its users to a third party that was posing as a government agency.
The breach occurred when the fintech firm inadvertently transmitted customer information to an entity that claimed to represent official authorities. Security analysts suggest the impostor likely used a fraudulent request that appeared legitimate, prompting Revolut to comply with the data transfer before the error was detected.
According to the company's brief statement, the compromised data set includes names, residential addresses, email contacts, bank account numbers and transaction histories. While no evidence has emerged that the information has been misused, the scope of the leak raises concerns about identity theft and unauthorized financial activity.
Revolut said it has launched an internal investigation, notified affected users and is working with data‑protection regulators to assess the incident. The firm also announced that it is tightening verification procedures for any external data requests and reviewing its internal controls to prevent similar occurrences in the future.
The incident adds to a growing list of high‑profile data breaches that highlight the challenges fintech companies face in safeguarding user information. Experts note that as digital banking expands, both regulators and consumers will likely demand stronger authentication measures and clearer transparency about how personal data is shared. Users are advised to monitor their accounts for unusual activity and consider updating security settings in response to the breach.
Comments (0)
Be the first to comment.
Join the discussion