started · updated
Revolut cyberattack involves alleged theft of Italian government data
The hacker group ‘IAmNotAVillain’ has escalated its attack on the fintech company Revolut by launching a Data Leak Site (DLS) on the Tor network. The group is reportedly attempting to pressure victims by releasing samples of stolen data.
In addition to targeting Revolut customers, the hackers claim to have exfiltrated sensitive documents from the Italian Ministry of the Interior and the Ministry of Justice. Samples published on the dark web allegedly include information regarding police officer identification numbers, personal data of law enforcement, and official communications. One specific document cited involves the Turkish Embassy notifying Italian authorities about the cancellation of three diplomatic passports.
The attackers reportedly gained access by exploiting an Italian certified email (PEC) address, impersonating a government entity to solicit information from Revolut under the guise of a criminal investigation. While the hackers claim to possess approximately 147 GB of data from the Ministry of the Interior and are threatening to sell information related to 680 Revolut clients, official Italian verifications have not yet confirmed the full extent of the government data compromise. The stolen customer data reportedly includes identity document scans, biometric facial recognition photos, and transaction histories.
Entities
IAmNotAVillain · Italian Ministry of Justice · Italian Ministry of the Interior · Revolut