Revolut Confirms Data Breach After Phishing Attack Ahead of Israel Launch
British fintech Revolut confirmed a data breach exposing sensitive customer information after falling victim to a phishing scheme using a fake government email domain. The company is preparing for its upcoming entry into the Israeli banking market.

British fintech giant Revolut confirmed that sensitive customer data was exposed to an unauthorized third party after the company fell victim to a sophisticated phishing scheme using a domain mimicking a legitimate government agency, a company spokesperson told Reuters on Saturday. Revolut is preparing to enter the Israeli market as a "lean bank" following last year's decision by the Israel Securities Authority to grant payment licenses to four international fintech firms, alongside Rapyd, Mesh Payments, and Airwallex. "Upon discovering the incident, we immediately blocked the address and alerted the relevant government authority as well as law enforcement, data protection, and financial regulators," the spokesperson said, emphasizing that Revolut's core systems and customer funds remained unaffected, though declining to disclose the exact number of impacted individuals. According to a TechCrunch report, the exposed data included customer dates of birth, postal and email addresses, phone numbers, and copies of identification documents such as passports and driver's licenses. Revolut is currently planning a potential initial public offering and aims for a valuation of up to $200 billion, cementing its status as one of Europe's most successful digital-only financial institutions.





