Published Updated

Revolut Hackers Demand $3 Million Monero, Threaten To Sell Customer Data Within 24 Hours
Image: TradingView

Crime · updated 1h ago · 2 min read

Revolut Hackers Demand $3 Million Monero, Threaten To Sell Customer Data Within 24 Hours

Happened

Hackers demanded 6,000 XMR (~$3 million) ransom within 24 hours. About 680 Revolut customer accounts affected; attackers threaten to sell data.

Compared

17 outlets, one story, no spin found.

17outlets compared

@coindeskbitcoin.esCoinGapeCoinpediaCointelegraphCriptoNoticiasCriptoTendenciaCrypto Economy

Ransom Demand Goes Public

Hackers behind a Revolut customer data breach demanded $3 million in Monero (XMR) within 24 hours and threatened to sell stolen customer data to other criminal groups if the fintech did not pay.

Revolut has had no direct contact or demand from the individuals or group claiming responsibility

ReutersReuters

Reuters reported that the group, calling itself "iamnotavillain," published the ultimatum online on Wednesday afternoon next to a digital countdown clock.

Image from @coindesk
@coindesk@coindesk

The Financial Times reported that the attackers demanded 6,000 XMR and threatened to sell confidential records of hundreds of customers unless Revolut paid within 24 hours.

Revolut told Reuters that its core infrastructure, databases and customer accounts were not hacked, and that sensitive customer information was disclosed after it received fraudulent requests from a legitimate government agency email domain.

SourcesReutersReuters

What Data Was Taken

Euronews said prosecutors in Reggio Calabria opened an inquiry after hackers stole data via an Italian PEC and demanded a 3 million dollar ransom, with Revolut confirming that data belonging to around 680 European customers had been affected.

Euronews reported that the Financial Times received a message demanding that Revolut transfer "6,000 XMR / 3,000,000 $… otherwise all the data will be sold and you will have blood on your hands".

Image from bitcoin.es
bitcoin.esbitcoin.es

CoinDesk said at least 680 customer accounts were affected, with exposed data reportedly including identity documents and transaction histories.

CoinDesk also reported that the hackers told the FT they used blockchain analysis to identify Revolut accounts with significant crypto holdings, and that the group sent the FT a 60-second screen recording showing data it obtained.

SourcesEuronewsEuronews

Investigation and Revolut Response

Reuters said Revolut told the news agency it had received no direct contact or demand from the individuals or group claiming responsibility, even as the Financial Times reported the attackers threatened to sell confidential records unless paid.

Revolut has not received any direct contact or demand from the individuals or group making these claims

TradingViewTradingView

TradingView reported that a Revolut spokesperson told Cointelegraph, "Revolut has not received any direct contact or demand from the individuals or group making these claims," while the public ultimatum demanded 6,000 Monero (XMR) within 24 hours.

Euronews said the National Anti-Mafia and Counter-Terrorism Directorate was working on the case because it concerns a government body, and that prosecutors in Reggio Calabria were considering the offence of intrusion into an IT system of public interest.

Reuters added that the breach is understood to have affected about 680 customers, and that the group published the ultimatum online next to a digital countdown clock while saying there had been no negotiations with Revolut.