{"id":78317,"date":"2026-09-17T22:51:15","date_gmt":"2026-09-17T22:51:15","guid":{"rendered":"https:\/\/crowdfundjunction.com\/blog\/revolut-denies-hacker-contact-over-reported-3m-ransom-claim\/"},"modified":"2026-09-17T22:51:15","modified_gmt":"2026-09-17T22:51:15","slug":"revolut-denies-hacker-contact-over-reported-3m-ransom-claim","status":"publish","type":"post","link":"https:\/\/crowdfundjunction.com\/blog\/revolut-denies-hacker-contact-over-reported-3m-ransom-claim\/","title":{"rendered":"Revolut Denies Hacker Contact Over Reported $3M Ransom Claim"},"content":{"rendered":"<p><b>(Originally posted on : Bitcoin News )<\/b><br \/>\n<\/p>\n<div>\n<div class=\"@container mb-[25px] rounded-sm overflow-clip py-0.5 pr-0.5 pl-2.5 bg-success-100\">\n<div class=\"flex flex-col gap-m overflow-clip rounded-[6px] !bg-success-10 p-3 @[420px]:p-m\">\n<h2 class=\"m-0 flex items-center gap-s text-[19px] !text-[#1c1c1c] md:text-[20px]\"><svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"16\" height=\"10\" viewbox=\"0 0 16 10\" fill=\"none\" class=\"shrink-0 text-success-100\" aria-hidden=\"true\"><path d=\"M1 1.5h14\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\"\/><path d=\"M1 8.5h10\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\"\/><\/svg><span>Key Takeaways<\/span><\/h2>\n<ul class=\"m-0 flex list-none flex-col gap-m pl-0\">\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Revolut said it received no direct ransom demands after hackers stole data from 680 European clients.<\/span><\/li>\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Certik analyst Jonathan Riss warned that strict KYC mandates create high-value targets for cybercriminals.<\/span><\/li>\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Regulators and fintech platforms like Revolut may need to reduce identity data retention to curb security risks.<\/span><\/li>\n<\/ul>\n<\/div>\n<\/div>\n<h2>No Direct Demands Received, Revolut Says<\/h2>\n<p>Revolut said it has not received direct contact from or demands by any group claiming responsibility for a recent data breach. The fintech company\u2019s denial came less than 24 hours after reports <a href=\"https:\/\/news.bitcoin.com\/crypto-news\/the-attackers-who-deceived-revolut-now-demand-6000-xmr\/\">that hackers demanded 6,000 XMR<\/a>, valued at $3 million, to keep the illegally accessed customer files off the market.<\/p>\n<p>The London-based fintech firm confirmed earlier this month that an unauthorized third party obtained sensitive information belonging to a limited number of customers by using a legitimate government agency\u2019s email domain to submit fraudulent data requests. Public statements posted online this week by a hacker operating under the name \u201cIAmNotAVillain\u201d <a href=\"https:\/\/news.bitcoin.com\/security\/as-revolut-attackers-make-threats-heres-how-you-can-lower-kyc-risks\/\">threatened to release<\/a> or sell customer data unless Revolut paid.<\/p>\n<p>\u201cRevolut has not received any direct contact from or demand by the individuals or group making these claims,\u201d a <a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2026-09-17\/revolut-says-no-group-has-made-direct-contact-after-data-breach?taid=6aabb31d17b8de0001362add&amp;utm_campaign=trueanthem&amp;utm_content=business&amp;utm_medium=social&amp;utm_source=twitter\" target=\"_blank\" rel=\"noopener noreferrer\">company spokesperson is quoted as saying<\/a>. The breach, which reportedly targeted about 680 high-net-worth customers across Europe, did not involve a direct technical intrusion into Revolut\u2019s core systems.<\/p>\n<p>Instead, the attackers used social engineering to impersonate government authorities over several months, obtaining customer verification files, identity documents and transaction records. Revolut emphasized that customer funds and internal systems remain secure and unaffected. The company said it blocked the fraudulent email address upon discovering the breach and reported the incident to law enforcement, data protection authorities and financial regulators.<\/p>\n<h2>Analyst warns of KYC vulnerabilities<\/h2>\n<p>The incident highlights broader systemic vulnerabilities in how financial institutions handle mandatory identity data. Jonathan Riss, an open-source and blockchain intelligence analyst at security firm Certik, argued that the root cause extends beyond individual companies\u2019 defenses to <a href=\"https:\/\/www.bitcoin.com\/get-started\/what-is-know-your-customer\/?_gl=1*1tp9vus*_gcl_au*OTk5NTQzMjAuMTc4OTMyOTIwMQ..*_ga*MTU3OTQwMTMwLjE3NzM3NjQ2MDc.*_ga_ERLPF60ZDD*czE3ODk2NzMxNTUkbzc3MiRnMCR0MTc4OTY3MzE1NSRqNjAkbDAkaDA.\" target=\"_blank\" rel=\"noopener noreferrer\">regulatory requirements<\/a> themselves.<\/p>\n<p>\u201cThe real issue is that KYC has created an extremely sensitive identity layer that financial platforms are required to maintain, often because governments and regulators demand increasingly detailed customer information,\u201d Riss said. \u201cResponsibility, therefore, does not sit only with banks, fintechs or cryptocurrency exchanges.\u201d<\/p>\n<p>According to Riss, public authorities also need to consider whether every piece of information they require is genuinely necessary and how long it should be retained. They should inquire whether existing procedures for requesting customer data are sufficiently secure.<\/p>\n<p>Riss, meanwhile, noted that the exposure of detailed identity files can carry heightened real-world risks in the digital asset sector. \u201cPlatforms should still minimize retention, restrict access and strengthen the authentication of government and law enforcement requests through independent verification channels,\u201d Riss added.<\/p>\n<p>While the debate over the hackers\u2019 tactics will continue, Riss believes the incident should prompt the industry and regulators to rethink the current model. The objective should no longer be limited to protecting wallets and funds; it should also include protecting users\u2019 financial identities.<\/p>\n<\/p><\/div>\n<p><a href=\"https:\/\/news.bitcoin.com\/featured\/revolut-denies-hacker-contact-over-reported-3m-ransom-claim\/\">Source link <\/a><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>(Originally posted on : Bitcoin News ) Key Takeaways Revolut said it received no direct ransom demands after hackers stole data from 680 European clients. Certik analyst Jonathan Riss warned that strict KYC mandates create high-value targets for cybercriminals. Regulators and fintech platforms like Revolut may need to reduce identity data retention to curb security [&hellip;]<\/p>\n","protected":false},"author":10,"featured_media":78318,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0},"categories":[32],"tags":[],"_links":{"self":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts\/78317"}],"collection":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/users\/10"}],"replies":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/comments?post=78317"}],"version-history":[{"count":0,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts\/78317\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/media\/78318"}],"wp:attachment":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/media?parent=78317"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/categories?post=78317"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/tags?post=78317"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}