Revolut Data Leak Exposes Customer Information Including Selfies and ID Documents
Quick Look
- Threat actors leaked sensitive Revolut customer data, including selfies and identity documents of tennis player Alexander Shevchenko and Gamdom CEO Felix Römer, and threaten to release more daily unless Revolut pays.
- Revolut attributes the breach to a sophisticated external impersonation scam using a fake government email domain and states only a limited number of customers were affected, with systems and funds unaffected.
AI-generated summary
Why It Matters
Revolut previously informed customers that leaked data included full name, date of birth, occupation, contact information, account statements, full transaction history, and Bitcoin transaction records. The company attributed the breach to a sophisticated external impersonation scam using a legitimate government agency domain email to submit fraudulent requests.
Threat actors who obtained sensitive Revolut customer information appear to have begun posting the information online and are threatening to release more data every day until “revolut pays.”
The newly leaked information reportedly includes selfies and copies of identity documents belonging to tennis player Alexander Shevchenko and Gamdom CEO Felix Römer, CEO of online crypto casino Gamdom, according to an X post from International Cyber Digest on Sunday.
“We’re going to start releasing more and more data everyday until revolut pays for leaking their customers,” the attackers reportedly said on Telegram. Cointelegraph reached out to Revolut and Römer for comment.
The exposed identity documents and facial-verification images could increase the risk of identity theft. Revolut on Friday told customers the leaked data also includes customers’ full name, date of birth, occupation, contact information, account statements and full transaction history, including records of Bitcoin transactions.
Related: Revolut says customer data exposed through fake government email
Revolut told Cointelegraph on Saturday that the customer data was leaked due to a “sophisticated external impersonation scam” in which the attacker used an email address from a legitimate government agency domain email to submit fraudulent requests for information.
Revolut later told Cointelegraph the breach affected a “limited number” of customers, and its systems and customer funds are unaffected.
What to Watch
AI outlook — possibilities, not facts
Revolut will implement stronger email verification protocols to prevent impersonation scams
Likely · Within weeks
Threat actors will continue to release leaked data in increments unless their demands are met
Very likely · Within days
Open Questions
- How many customers were affected by the breach?
- What specific data has been released online so far?
- Are the threat actors affiliated with any known cybercriminal groups?
- Has Revolut notified all affected customers individually?







