6,000 Monero: Revolut Hackers Set 24-Hour Deadline Over Crypto Data Breach
Key Takeaways: The hackers are asking for 6,000 XMR (around $3 million) from Revolut. Data allegedly connected to approximately 680 customer accounts was reportedly stolen in the breach. Aggressors state they identified...
High signal
Published in the last two hours. The story has cross-source confirmation.
Key Takeaways:
- The hackers are asking for 6,000 XMR (around $3 million) from Revolut.
- Data allegedly connected to approximately 680 customer accounts was reportedly stolen in the breach.
- Aggressors state they identified the customers with significant crypto stashes by analyzing the blockchain.
User Score
8.7
Follow us on Google NewsThe hackers behind the Revolut breach have threatened to sell data to other criminal groups if they don’t receive the 200 Bitcoins they call for within 24 hours.
Read More: Revolut Exposes Bitcoin Records, Passports After Fraudulent Government Email Attack
Hackers Demand 6,000 XMRThe group, calling itself iamnotavillain, published its demand online alongside a countdown clock, according to the Financial Times. It requested 6,000 XMR, which was valued at roughly $3 million at the time of the report.
They opted for Monero, which is notable in an extortion case on the cryptocurrency front. Unlike the Bitcoin network, where transactions can be viewed openly on-chain, Monero is built to offer more privacy during transactions.
According to the Financial Times, the hackers stated that there was no communication with Revolut up to the time of the demand’s publication. They also posted a brief video clip which appeared to be a screen shot of the customers data that was allegedly gathered during the incident.
Read More: Revolut Crypto Data Leak Exposes Bitcoin Records, Attackers Demand Payment to Stop More
Around 680 Customer Accounts AffectedRevolut has stated that the incident didn’t involve a direct breach into their core system, databases or customers accounts. In lieu, attackers allegedly made fake requests by utilizing an email application connected to a real government entity.
The requests included information requests as official business requests. Revolut then handed over records prior to determining that they were fraudulent.
The exposed material reportedly included passports, driving licences, identity-verification images and transaction histories. Additional information in some records were linked to customers’ cryptic transactions.
Revolut blocked the address, and informed the appropriate government body, law enforcement, and the regulator.
Crypto Holdings Helped Attackers Pick TargetsThe alleged use of blockchain study introduces a strange crypto element into the breach. The hackers reportedly analyzed blockchain transactions to uncover the users of Revolut who were suspected of having large crypto holdings.
While a public blockchain might show wallet activity and transaction flows, much more information from an exchange or financial service may be necessary to link a blockchain address to a person.
Closed for this one, the mix of blockchain transactionings and customer records may offer an attacker with crystal-clear data of the user’s identity and crypto assets. The source has not been verified by others for the details regarding target selection.
Revolut Rejects Direct Ransom ContactThere was a disconnect between what the attackers announced and what Revolut reported, with the company saying it did not receive direct contact nor intended to pay any ransom from the group claiming responsibility.
The company said affected customers were being supported, and issued the description as a result of an external impersonation scheme.
The leaked data led to a specific concern that faces any crypto’realm user: personal identity data can, when merged with blockchain-related financial details, be particularly useful. This information can be leveraged for targeted phishing, impersonation or further attempts to access digital assets.
The post 6,000 Monero: Revolut Hackers Set 24-Hour Deadline Over Crypto Data Breach appeared first on CryptoNinjas.
Why this matters
Monero is showing up inside the Security Incidents theme, so this story is worth tracking for follow-through rather than treating it as a one-off headline.
Original source
Read on CryptoNinjasSame story, other sources
Cross-source coverage
2 sources
Group Claiming Revolut Breach Demands 6,000 Monero, Says It Hunted Big Crypto Holders
A group claiming responsibility for the Revolut customer data breach has asked for 6,000 XMR, w...
Related market context
MEXC Releases July–August Security Report: Over 38 Million USDT in Risk-Related Funds Intercepted, Futures Insurance Fund Reaches 792 Million USDT
Mutsamudu, Comoros, September 16, 2026 – MEXC, a pioneer in 0-fee digital asset trading, has released its July–August 2026 securit...
Anchorage Adds Etherlink Custody, Opening Institutional Access to $9M Tokenized Uranium
Key Takeaways: Anchorage Digital now has institutional custody support for Etherlink and seven assets. Included in this offering i...
Circle opens Arc mainnet as it seeks an edge for USDC utility
Circle has scheduled the public launch of Arc for Sept. 16, giving USDC a network where the same dollar balance can fund both paym...
Robinhood Crypto Engineers Face Charges After $100K+ Hyperliquid Trading Scheme
Key Takeaways: Robinhood’s two engineers face fraud charges for alleged trading in cryptocurrencies about to be listed. Both were...
Strategic Bitcoin Reserve bill heads to House Financial Services Committee markup
The bill's passage could enhance federal oversight of digital assets, impacting financial security and regulatory transparency in...
Arc launches as full-stack financial platform with USDC as native gas token
Arc's launch as a financial platform with USDC as its native token could revolutionize digital payments and asset management globa...