Revolut data exposure linked to fraudulent government requests

This week’s Orpheus Weekly Intelligence Summary examines the Revolut data exposure, which affected 680 customers after fraudulent requests were submitted from a legitimate government email domain. Personal and financial information was disclosed, while customer funds and credentials remained unaffected.The requests passed domain-authentication checks without attackers directly compromising Revolut’s systems. Our assessment examines the weaknesses in the verification process and what the incident means for organisations handling sensitive data requests.

Download the full Weekly Intelligence Summary

Orpheus Weekly Intelligence Summary, 21 September 2026: Revolut customer data exposed through fraudulent government requests.
Scroll to Top

Become a Partner

"*" indicates required fields

This field is for validation purposes and should be left unchanged.
Please complete the form below and we’ll be in touch shortly.