Skip to main content
Back to news
SafetyMajor story — Significance is rated automatically and is not a price signal.

Revolut Says Customer KYC and Bitcoin Data Exposed via Fraudulent Government Request

(20 days ago) · 1 source · Summarized by CryptoBipto

Revolut disclosed that customer identity verification (KYC) data and Bitcoin transaction records were exposed after the company complied with what turned out to be a fraudulent data request sent from a compromised government domain. The incident highlights the risk of social engineering attacks targeting financial service providers through spoofed official channels.

WHY IT MATTERS

When you sign up for a financial app like Revolut, you typically have to verify your identity by submitting documents like a passport or driver's license — this process is called KYC, or "Know Your Customer." In this case, someone pretending to be a government authority tricked Revolut into handing over that personal identity data along with records of customers' Bitcoin transactions. Think of it like a scammer calling a bank while pretending to be a police officer and convincing the bank to share account details. This matters because exposed KYC data can be used for identity theft, and leaked Bitcoin transaction records could allow bad actors to link real identities to crypto wallets, undermining the privacy that many crypto users value.

According to Revolut, the company received what appeared to be a legitimate data request from a government domain and complied by sharing customer know-your-customer (KYC) information and Bitcoin transaction data.

Read the full analysis with a CryptoBipto membership

Members can read the full analysis of every story, not just the headline.

Get started

SOURCES

  • theblock.co

RELATED

BTCData BreachKYCSocial EngineeringPrivacyCustomer Data Protection