Another week, another data breach for Revolut customers
Article excerpt
Highlighted: the sentence this signal was extracted from
cyber-crime DriveWealth coughs up historic customer info after attackers socially engineer their way inside Revolut customers have been caught up in a second data breach this month after attackers socially engineered their way into US brokerage DriveWealth and stole historic personal information. DriveWealth provides execution and clearing services for investment firms and previously held brokerage accounts directly for Revolut customers trading US stocks. It said the unauthorized access occurred on September 4 and 5. In an email sent to affected customers and seen by The Register, the broker blamed a "sophisticated social engineering campaign" carried out by unknown third parties. The intruders exfiltrated data retained from the period when those customers held accounts directly with DriveWealth. The broker said regulatory requirements obliged it to keep the records. The potentially exposed haul includes names, email addresses, phone numbers, postal addresses, employment information, country of citizenship, age, gender, and partial DriveWealth account numbers. DriveWealth said it had no reason to believe any other personal information was affected. Passwords and payment information, including credit card and bank account details, were not compromised. Even so, the exposed details would provide ample material for a convincing phishing message. DriveWealth warned customers...
Keep reading with a free account
The rest of this article, and every signal for DriveWealth, is in your free account.
