Τελευταία Νέα
Διεθνή

Revolut: Hackers demand $3 million ransom to not sell data of 680 clients - 24-hour ultimatum

Revolut: Hackers demand $3 million ransom to not sell data of 680 clients - 24-hour ultimatum

Several Revolut clients who may be affected have expressed concern that their personal data has been breached

Shocking developments are unfolding at Revolut, as news broke like a bombshell that it voluntarily handed over the personal data of hundreds of clients to hackers. Indeed, according to information, the hackers are allegedly demanding a ransom of $3 million to avoid selling the details to other criminal groups. At least 680 accounts are reported to be targeted, with the data presented by the perpetrators including, among other things, passports, driver's licenses, identification photos used in the "Know Your Customer" (KYC) process, and transaction histories. This constitutes a particularly sensitive package of information, which could prove extremely valuable in the cybercrime black market.

24-hour ultimatum

The hackers, calling themselves "iamnotavillain", reportedly issued a 24-hour ultimatum demanding $3 million in Monero, the cryptocurrency preferred by criminal groups because its transactions are harder to trace. The hackers published their ultimatum on their website late Wednesday evening (16/9/2026), alongside a digital countdown timer. The public demand is unusual, as hackers typically prefer to request ransom privately and resort to public disclosure only when the target refuses to pay or cooperate. Usually, in these cases, they publish details of the attack on a data leak website on the dark web. In the online message, they urged Revolut to pay "6,000 XMR / $3,000,000... otherwise all data will be sold and the blood will be on your hands." XMR is the cryptocurrency Monero, which is popular among hackers because its transactions are difficult to track. The group told the Financial Times that it is using this website for the first time to state its demands and that so far there have been no negotiations with Revolut. It is noted that the Financial Times contacted the hackers via Telegram after they first set up the website late Monday (14/9/2026), publishing redacted screenshots of some of the information allegedly obtained from the bank. Shortly after publishing the ransom demand, the hackers sent the Financial Times a 60-second screen recording video showing an unknown user browsing a volume of documents allegedly belonging to Revolut. The documents appearing in the video seem to include Revolut clients' driver's licenses, passports, identification photos used in the "Know Your Customer" identity verification process, as well as transaction histories. The data breach is estimated to have impacted at least 680 client accounts.

How Revolut was exposed

The hackers obtained the files by breaching an Italian government email system, which they used to pose as law enforcement authorities and request information on specific Revolut client accounts over a period of several months. The group stated that it selected its targets using blockchain analysis in order to identify Revolut accounts holding significant cryptocurrency amounts. However, Revolut stated on Wednesday evening (16/9/2026): "Revolut has not received any direct communication or demand from the specific individuals or group making these claims."

Client concern

Several Revolut clients who may be affected have expressed concern that their personal data has been compromised. Revolut previously stated that it is providing affected clients with "direct support" and is "working closely with relevant law enforcement authorities and regulatory bodies."

www.bankingnews.gr

Ρoή Ειδήσεων

Σχόλια αναγνωστών

Δείτε επίσης