Revolut hackers demand $3 million in Monero, threaten data sale within 24 hours
Regulation & Gov ·
A group calling itself "iamnotavillain" claims responsibility for a breach affecting at least 680 Revolut accounts and is threatening to sell stolen customer data unless a ransom is paid.
The attackers are demanding 6,000 XMR, worth about $3 million, from Revolut, according to a report from WuBlockchain. They have set a 24-hour deadline, after which they say they will sell the stolen data to other criminal groups if the payment is not made.
The hackers claim they used blockchain analysis to identify Revolut customers holding large amounts of crypto, then targeted those accounts specifically. According to the report, the attackers say they impersonated government officials to obtain passports, driver's licenses, KYC photos and transaction records tied to the affected accounts.
The choice of Monero for the ransom demand is notable given the currency's design, which obscures transaction details more than most blockchain assets, making payments harder to trace than a request in bitcoin or a stablecoin would be.
It remains unclear whether Revolut has acknowledged the breach publicly, whether any ransom has been paid, or what specific data the attackers currently hold versus what they claim to have obtained. The accuracy of the hackers' description of their methods — including the claim that they impersonated officials — has not been independently verified. Whether the 24-hour deadline passes without payment, and what the group does with the data if it does, remains to be seen.