The perpetrators of a recent data breach at Revolut are demanding a $3 million ransom in monero (XMR) within a 24-hour window. The hackers have threatened to sell the compromised customer information to other criminal syndicates if the financial institution fails to comply, as reported by the Financial Times.
Operating under the moniker “iamnotavillain,” the threat actors published their ransom demand on Wednesday, accompanied by a countdown timer. The group specified a payment of 6,000 XMR, a privacy-centric cryptocurrency specifically designed to conceal transaction details.
According to the report, the security incident impacted a minimum of 680 Revolut customer accounts.
The attackers informed the Financial Times that they identified their victims through blockchain analysis, specifically targeting Revolut accounts associated with substantial cryptocurrency balances.
To substantiate their claims, the group provided the Financial Times with a 60-second screen recording purportedly displaying the exfiltrated data. The newspaper noted that the footage contained sensitive documents, including passports, driver’s licenses, identity verification photographs, and detailed transaction histories.
The breach initially occurred when threat actors impersonated government officials and submitted information requests that successfully bypassed Revolut’s internal security protocols. The company subsequently disclosed that it had released customer records before identifying the fraudulent nature of the requests, according to previous communications sent to affected clients.
Also Read
- SHIB Forms a Distinctive Falling Wedge: Analyst Highlights Unusual Breakout Potential
- Legislative Impasse Compels SEC and CFTC to Accelerate Digital Asset Oversight
- Robinhood Employees Charged with Insider Trading via Hyperliquid Derivatives
- Senate CLARITY Act Procedural Vote Stalls Amid Ethics Standoff

