On September 25, BeInCrypto reported that the U.S. brokerage DriveWealth confirmed unauthorized access to its network due to a social engineering attack from September 4 to 5. This breach only involved historical customer records of Revolut prior to a change in trading model, with individual customer information no longer shared in the European Economic Area (including Ireland) after December 2023. Recent users were not affected. The leaked data may include names, email addresses, phone numbers, mailing addresses, employment and identity information, as well as some account numbers; however, passwords, payment card information, bank details, and identification documents were not compromised. DriveWealth has directly contacted the affected customers, and Revolut followed up with an email. Additionally, another incident in September involving a spoofed government email affected approximately 680 customers.
All Comments