London-based financial technology firm Revolut Ltd. has confirmed that no individual or criminal group has made direct contact or issued direct demands nearly a week after the company disclosed a security breach involving an unauthorized third party. The incident exposed sensitive details belonging to a limited group of account holders, prompting immediate response measures from the digital banking provider.
A corporate spokesperson for Revolut addressed inquiries following a Financial Times report. That media coverage highlighted a public ultimatum posted on a website by hackers who claimed responsibility for the security event. According to reports, the unauthorized actors demanded a $3 million ransom within a 24-hour window, threatening to sell the confidential information if the payment conditions were not met.
Revolut, which secured a valuation of $115 billion earlier in July, announced the security incident on September 12. The enterprise stated that a very restricted number of customer accounts—understood to total approximately 680—were impacted by the breach. The firm operates globally with more than 80 million customers and maintains an ambitious target of reaching 100 million users.
Immediate Containment and Law Enforcement Notification
Upon discovering the unauthorized activity, Revolut representatives noted that the company moved swiftly to contain the threat. The organization blocked the attacking address, which was identified as a legitimate government email domain. Furthermore, the fintech alerted relevant legal authorities and law enforcement agencies to investigate the origin and scope of the intrusion.
The company emphasized that its core operational systems and total customer funds remained entirely secure and unaffected by what it characterized as a sophisticated external impersonation scam. Revolut also confirmed that dedicated support channels were activated immediately to assist the specific clients whose account details were exposed during the incident.
Regulatory Milestones and Market Expansion
The cybersecurity event arrives at a critical juncture for the rapidly expanding digital institution. Earlier in September, Revolut received conditional regulatory approval to operate as a national bank inside the United States, a territory the company has identified as a vital market for its continued international growth strategy.
As digital banking platforms continue to scale their operations worldwide, security analysts and regulatory bodies closely monitor how fintech innovators handle sophisticated social engineering schemes and external impersonation attacks. Revolut has reiterated its commitment to transparency and robust data protection as investigations by law enforcement agencies continue.
Source: Insurance Journal