TLDR
- Revolut was tricked into handing over sensitive customer data to hackers posing as government officials
- Around 680 customers had personal data exposed including passports, bank details, and Bitcoin activity
- Attackers are demanding 10,000 Bitcoin (roughly $780 million) or they will release the data publicly
- The UK’s Information Commissioner’s Office has launched an investigation
- The breach could threaten Revolut’s planned $200 billion IPO
Revolut has confirmed it was deceived into handing over private customer data to cybercriminals who posed as government officials. The breach affected around 680 customers.
🚨BREAKING: Revolut attackers demand 10,000 BTC ransom, threatening to leak stolen customer data.
The threat actors who allegedly tricked Revolut into handing over sensitive customer data by posing as a government are now publishing information belonging to high-profile clients.… https://t.co/kJi58fAHaa pic.twitter.com/5IIaCHHOYT
— Coin Bureau (@coinbureau) September 14, 2026
The attackers sent a fraudulent request using a real government email address. Revolut complied and shared sensitive information including passport details, bank account numbers, home addresses, verification photos, identity cards, and Bitcoin activity records.
Once they had the data, the hackers began threatening to release it publicly unless the company paid a ransom. That demand has since been revealed as 10,000 Bitcoin, worth around $780 million at the time of reporting, based on a Bitcoin price of approximately $77,974.
What Data Was Taken
The stolen data reportedly includes transaction histories, account statements, verification selfies, and images of identity documents. Phone numbers and home addresses were also compromised.
Blockchain investigator ZachXBT said on Telegram that the attack appeared to target high-net-worth individuals. Screenshots shared online showed the attackers had already published data belonging to Felix Römer, CEO of online crypto casino Gamdom.
Mark Karpelès, former CEO of collapsed crypto exchange Mt Gox, was also among those affected. He received an alert from Revolut at 5:25 a.m. on September 12 warning that his data may be at risk. Karpelès said he does not believe Revolut should have shared the information regardless of whether the email appeared legitimate.
The attackers have accused Revolut of being negligent and of sharing customer data with countries outside its jurisdiction.
Revolut Responds and Regulators Step In
Revolut described the attack as a “sophisticated external impersonation scam.” The company said it blocked the offending email address as soon as it detected the issue.
The company also said it notified the relevant authorities and contacted all affected customers directly. Revolut reported itself to the UK’s Information Commissioner’s Office, which confirmed Monday it had opened an investigation.
The neobank has been working over the weekend to manage the fallout. It described the number of affected customers as “limited.”
The timing is difficult for Revolut. The company has been working toward a public offering valued at around $200 billion, far above its most recent private valuation of $75 billion.
A data breach of this scale, combined with a ransom demand and an ongoing regulatory investigation, adds pressure to those plans.
The attackers have reportedly said they will continue releasing customer data every day until the ransom is paid. No payment has been confirmed.
Stop guessing and start investing with confidence. KnockoutStocks gives you the AI insights, market intelligence, and stock research you need to spot opportunities, cut through the noise, and make smarter investment decisions — all in one powerful platform.
Sign up today and get 50% OFF full access to our premium stock picks.
Simply use coupon code SPECIAL50 at checkout to claim your exclusive discount.







