WristPay
Fintech

Revolut Users Hit by Data Breach at U.S. Broker DriveWealth

Abdelaziz Fathi 25.09.2026

How the Social Engineering Attack Unfolded

U. S. brokerage firm DriveWealth has confirmed a security breach affecting its network. This incident exposes historical personal data linked to Revolut’s U. S. share-trading service. The unauthorized access impacts customers who used this specific feature. DriveWealth identified the threat as a targeted social engineering campaign. The company is currently investigating the full scope of the compromise.

The breach stems from a sophisticated social engineering attack. Attackers manipulated employees to gain entry into the system. This method bypasses traditional technical defenses like firewalls. DriveWealth stated that the intrusion allowed access to historical records. These records contain personal information for select users. The data involved relates specifically to the U. S. trading platform. Revolut partners with DriveWealth to offer stock trading capabilities. Consequently, Revolut customers using this service are now affected. The firm emphasized that only historical data was accessed. Current active credentials were not part of the initial exposure.

Social engineering relies on human error rather than code flaws. Attackers often pose as trusted entities to trick staff. In this case, the campaign targeted DriveWealth personnel directly. Once inside, the attackers moved through the network. They accessed databases holding user profiles and transaction histories. The firm detected the anomaly during routine monitoring. Immediate containment measures were deployed to stop further spread. DriveWealth notified affected parties about the potential exposure. The company highlighted that the attack vector was purely human-based. No major software vulnerabilities were cited as the primary cause.

Will Revolut Customers Face Financial Losses?

DriveWealth clarified that financial assets remained secure during the breach. The compromised data included names, addresses, and email addresses. It also covered details related to past trading activities. There is no immediate evidence of fund theft or account manipulation. However, historical data can be used for future phishing attempts. Users should monitor their accounts closely for unusual activity. Revolut has communicated preliminary updates to its client base. The partnership between the two firms remains intact for now. Both companies are working to enhance security protocols post-breach.

The incident underscores the persistent risk of human-centric cyber threats. Even established financial institutions face vulnerabilities in employee training. DriveWealth is reviewing its internal communication channels. Additional multi-factor authentication steps may be introduced. Customers will receive detailed reports on exactly which fields were exposed. The firm aims to restore full confidence in its systems. Future audits will focus on social engineering resistance strategies. This event serves as a reminder for all digital finance users. Vigilance remains key to protecting personal identity online.

Frequently Asked Questions

Did the breach affect all Revolut users? No, only those using the U. S. share-trading service via DriveWealth are impacted. General banking features of Revolut were not part of this specific incident.

What types of data were exposed? Historical personal information such as names, contact details, and past trading records were accessed. Financial balances and current passwords were not reported as compromised.

What should customers do next? Users should watch for suspicious emails or calls referencing their account. Enabling two-factor authentication adds an extra layer of protection against follow-up attacks.

Share:

More stories: