Skip to main content
DriveWealthSecurity incident

Another week, another data breach for Revolut customers

What happened

Suffered a data breach after attackers used a social engineering campaign to gain unauthorized access and steal historic personal information of customers, including those from Revolut.

Source

Article excerpt

Highlighted: the sentence this signal was extracted from

cyber-crime DriveWealth coughs up historic customer info after attackers socially engineer their way inside Revolut customers have been caught up in a second data breach this month after attackers socially engineered their way into US brokerage DriveWealth and stole historic personal information. DriveWealth provides execution and clearing services for investment firms and previously held brokerage accounts directly for Revolut customers trading US stocks. It said the unauthorized access occurred on September 4 and 5. In an email sent to affected customers and seen by The Register, the broker blamed a "sophisticated social engineering campaign" carried out by unknown third parties. The intruders exfiltrated data retained from the period when those customers held accounts directly with DriveWealth. The broker said regulatory requirements obliged it to keep the records. The potentially exposed haul includes names, email addresses, phone numbers, postal addresses, employment information, country of citizenship, age, gender, and partial DriveWealth account numbers. DriveWealth said it had no reason to believe any other personal information was affected. Passwords and payment information, including credit card and bank account details, were not compromised. Even so, the exposed details would provide ample material for a convincing phishing message. DriveWealth warned customers...

Keep reading with a free account

The rest of this article, and every signal for DriveWealth, is in your free account.

Extracted by Autobound

From the Signal API record
Event
Security incident

What this signalsA breach often leads to new security spend.

Takes effect
Sep 4, 2026
Location
United States

More security incident signals at other companies

The full record

From the Signal API record

Details

Issue named
Unauthorized access via a sophisticated social engineering campaign by unknown third parties, exposing names, email addresses, phone numbers, postal addresses, employment information, country of citizenship, age, gender, and partial...

Extraction

Confidence
90%
Detected
Sep 25, 2026
signal_type
news
signal_subtype
security_incident

Use this data

Get every security incident signal for DriveWealth and the companies you sell to, in the tools you already use.

  1. Ask Claude about it

    Connect Autobound to Claude, Claude Code or Cursor with MCP. Then ask: “What changed at DriveWealth this week?”

  2. Send it to your own tools

    The Signal API returns security incident signals for any list of companies as JSON, for your CRM, warehouse or app.

  3. Try it free

    Sign up and spend your free credits on the companies you sell to.

    Start Free1,000 free credits

The API returns more than this page shows

This page shows a preview. The full news record in the Signal API and MCP can also have these 8 fields. Some fields are empty for some signals.

Company

  • linkedin_urlValue in the API
  • industriesValue in the API
  • employee_count_lowValue in the API
  • employee_count_highValue in the API
  • revenueValue in the API
  • descriptionValue in the API

Signal

  • signal_nameValue in the API
  • associationValue in the API
Show the full JSONThe record on this page and the API request

GET /v1/signals/6fcd4a54-9104-a7f9-3963-b10191b6b5b6 returns this record as JSON. POST /v1/companies/enrich returns every signal for drivewealth.com.

{
  "signal_id": "6fcd4a54-9104-a7f9-3963-b10191b6b5b6",
  "signal_type": "news",
  "signal_subtype": "security_incident",
  "detected_at": "2026-09-25T10:04:35+00:00",
  "company": {
    "name": "DriveWealth",
    "domain": "drivewealth.com"
  },
  "data": {
    "url": "https://www.theregister.com/cyber-crime/2026/09/25/another-week-another-data-breach-for-revolut-customers/5299092",
    "title": "Another week, another data breach for Revolut customers",
    "excerpt": "cyber-crime DriveWealth coughs up historic customer info after attackers socially engineer their way inside Revolut customers have been caught up in a second data breach this month after attackers socially engineered their way into US brokerage DriveWealth and stole historic personal information. DriveWealth provides execution and clearing services for investment firms and previously held brokerage accounts directly for Revolut customers trading US stocks. It said the unauthorized access occurred on September 4 and 5. In an email sent to affected customers and seen by The Register , the broker blamed a \"sophisticated social engineering campaign\" carried out by unknown third parties. The intruders exfiltrated data retained from the period when those customers held accounts directly with DriveWealth. The broker said regulatory requirements obliged it to keep the records. The potentially exposed haul includes names, email addresses, phone numbers, postal addresses, employment information, country of citizenship, age, gender, and partial DriveWealth account numbers. DriveWealth said it had no reason to believe any other personal information was affected. Passwords and payment information, including credit card and bank account details, were not compromised. Even so, the exposed details would provide ample material for a convincing phishing message. DriveWealth warned customers...",
    "summary": "Suffered a data breach after attackers used a social engineering campaign to gain unauthorized access and steal historic personal information of customers, including those from Revolut.",
    "location": "United States",
    "planning": false,
    "image_url": "https://image.theregister.com/241596.jpg?imageId=241596&x=0&y=0&cropw=100&croph=100&panox=0&panoy=0&panow=100&panoh=100&width=1200&height=683",
    "confidence": 0.9,
    "published_at": "2026-09-25T10:04:35Z",
    "location_data": [
      {
        "region": "Northern America",
        "country": "United States",
        "continent": "Americas",
        "fuzzy_match": false
      }
    ],
    "vulnerability": "Unauthorized access via a sophisticated social engineering campaign by unknown third parties, exposing names, email addresses, phone numbers, postal addresses, employment information, country of citizenship, age, gender, and partial DriveWealth account numbers.",
    "effective_date": "2026-09-04",
    "article_sentence": "Revolut customers have been caught up in a second data breach this month after attackers socially engineered their way into US brokerage DriveWealth and stole historic personal information."
  }
}

Long text fields are shortened on this page.

Looking up one signal by its id is free. Enrich costs 2 credits per signal returned; a call with no results is free.