The perpetrators behind the Revolut data breach have shifted tactics from simple data theft to active extortion. Via a Telegram channel, the hackers announced a daily schedule for leaking customer data as direct leverage. The new data releases will only stop once the fintech platform pays the demanded ransom.
The daily threats have already commenced with the exposure of personal documents belonging to two public figures. The attackers distributed a selfie and identity document copies of tennis player Alexander Shevchenko. Alongside this, data belonging to Felix Römer, CEO of online crypto casino Gamdom, was also published as an initial warning to the company.
Bitcoin Transaction Histories Also Compromised
The information obtained by the hackers extends beyond basic identity data. Leaked data slated for release includes full names, dates of birth, employment information, and customer contact details. Furthermore, the attackers now hold bank account statements along with complete financial transaction histories of the victims, which include records of Bitcoin asset movements.
In their post, the hacker group wrote an open message: ‘We will keep releasing more data every day until revolut pays for their customer data leak.’ The Telegram quote shifts the nature of the incident from a static theft to an ongoing extortion campaign targeting customer privacy.
Breached via Government Email
The breach stemmed from a vulnerability in communication channels. Revolut acknowledged that the attack originated from a sophisticated external impersonation fraud scheme. The attackers used email addresses with legitimate government domains to send fraudulent information requests to internal company staff.
The social engineering tactic bypassed scrutiny, leading to the transfer of sensitive data. In response, a Revolut representative stated that the breach affected only a limited number of the platform’s users. The company also emphasized that core systems were not breached and all customer funds remain safe.
At the time of writing, Cointelegraph had reached out to Revolut management and Felix Römer for official comments regarding the developments. For digital financial service providers, the escalation of this attack highlights a new reality - government email manipulation can now lead to daily data hostage situations.
Reported via Cointelegraph.
Previously: Revolut Handed Over Customer Passports and Selfies to Scammers - Started from a Single ‘Government’ Email
Disclaimer: This article is for informational and educational purposes only, not financial advice. Cryptocurrency assets are highly volatile and carry significant risk. Always do your own research (DYOR) and never invest more than you can afford to lose.




