Italian authorities are investigating a cyberattack that exposed sensitive Revolut customer information after hackers allegedly abused a compromised government email account. The incident highlights growing risks around trusted communication channels used by financial institutions.
The breach came to light after Revolut received what appeared to be legitimate requests from an Italian government email address. The attackers allegedly used the compromised account to impersonate law enforcement and request customer information.
Revolut later determined that the requests were fraudulent and notified Italian authorities. The company said its internal systems and customer funds remained secure.
Italian Cybercrime Probe
Italy’s postal and communications police are investigating the incident for suspected unauthorized access to computer systems and computer fraud. Reports indicate that the compromised account belonged to a government institution using Italy’s certified email system, known as PEC.
Authorities are still working to establish how attackers gained control of the account and how they used it to obtain customer data.
The case has also raised questions about the security of PEC, which carries legal significance for official communications. However, Italy’s cybersecurity agency has warned that certification confirms delivery rather than the safety of message content.
Broader Security Concerns
Italy’s CERT-AGID reported that it had handled more than 650 cases involving abused or illicit PEC accounts since the start of 2026. The agency has urged users to treat unexpected messages, links and attachments with caution.
The Revolut incident appears particularly significant because attackers exploited trust in an official government channel rather than directly breaching the fintech’s infrastructure.
Reports have indicated that the stolen information may include personal and financial details belonging to hundreds of customers. However, Revolut has described the number of affected customers as limited and has contacted those it identified.
The investigation remains ongoing as authorities examine the compromised email account and the fraudulent requests sent to Revolut.