Cybercriminals managed to deceive Revolut by impersonating a government agency, and tricked the company into revealing data of a limited number of clients. The attackers used this social engineering technique to gain access to sensitive information.
The diverted information includes personal and financial data of the affected clients. Revolut quickly identified the incident and blocked the address used in the fraudulent scheme, thus interrupting the unauthorized access.
The company assures that its systems were not compromised and that client funds remain safe. The incident was contained before causing broader damage to the platform's infrastructure.
This case highlights the growing sophistication of social engineering attacks, where criminals exploit the trust that companies place in seemingly legitimate requests from government entities.



