Revolut Faces $20 Million Loss in Cyberattack

London-based payments giant, Revolut, has reportedly fallen victim to a significant cyberattack resulting in a loss of approximately $20 million. Multiple anonymous sources familiar with the incident disclosed the breach to the Financial Times. However, Revolut has chosen not to comment on the attack, and the breach has not been publicly disclosed.

According to the sources, the stolen funds belonged to the company itself and not its customers. It appears that Revolut’s operations in the United States differ from those in Europe, leading to a vulnerability that cybercriminals exploited. The bug in question allowed users to experience a declined payment, after which Revolut would automatically refund the money, even though it was never sent in the first place. The flaw was initially detected in late 2021, but before Revolut could address it, hackers discovered and exploited it. Notably, no malware appears to have been involved in the cyberattack.

The modus operandi of the cybercriminals involved encouraging individuals to make expensive purchases intentionally destined for decline. They would then withdraw the refunded money from ATM machines, facilitating the transfer of approximately $23 million from Revolut. However, the company managed to recover around $3 million of the stolen funds.

Reports indicate that Revolut may not have been initially aware of the ongoing theft. It was only when a partner bank in the United States reported a shortfall in funds that Revolut became aware of the situation. Subsequently, the company’s U.S. subsidiary requested a cash injection from its parent company amounting to “millions of dollars” to address the issue. The flaw was eventually patched during the spring of the previous year.

The cyberattack and subsequent loss represent a significant blow to Revolut, one of the world’s leading fintech companies. As the investigation unfolds, questions arise regarding the security measures in place at Revolut and the potential impact on its reputation and customer trust. With Revolut’s decision to remain silent on the incident, concerned customers and industry observers eagerly await further details regarding the nature of the attack and steps taken to prevent similar incidents in the future.

 

 

Source: Techradar

Related Posts

Leave a Reply

Newsletter

Subscribe To Newsletter

For updates and exclusive offers, enter your e-mail below.

Popular Posts

OpenAI Introduces New AI Model “o1” with Advanced Reasoning Capabilities
September 13, 2024By
EFCC Secures Court Order to Freeze Over N548 Million ( $342500 ) from Crypto Users on ByBit, KuCoin Amid Naira Devaluation Concerns
September 11, 2024By
Cyberchain Africa’s Leading Web 3 and Digital Economy Aggregator, in partnership with Baze University brings to you, Tokenized Economy Conference & Exhibition #TE24
September 9, 2024By

Advertisement

Video Posts

Crypto Stats


CryptoCurrencyUSDChange 1hChange 24hChange 7d
Bitcoin60,388 0.23 % 4.03 % 12.26 %
Ethereum2,431.1 0.04 % 3.09 % 9.24 %
Tether1.001 0.01 % 0.08 % 0.06 %
? --- 0.00 % 0.00 %
? --- 0.00 % 0.00 %
? --- 0.00 % 0.00 %
? --- 0.00 % 0.00 %
? --- 0.00 % 0.00 %
? --- 0.00 % 0.00 %
? --- 0.00 % 0.00 %

Please enter CoinGecko Free Api Key to get this plugin works.