Revolut A.I CyberSecurity Scoring
Revolut
Company Information
Website:https://www.revolut.com
Employees number:15,697
Number of followers:1,698,237
NAICS:52
Industry Type:Financial Services
Homepage:revolut.com
Revolut Risk Score (AI oriented)
Between 750 and 799
RevolutFinancial Services
Updated:
22/04/2026
22/04/2026
769/1000
Fair
Baa
Revolut Global Score (TPRM)
xxxx
RevolutFinancial Services
Score locked

RevolutFair
Current Score
769Baa (FAIR)
01000
3 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
771
JUNE 2026
770
MAY 2026
769
APRIL 2026
769
MARCH 2026
768
FEBRUARY 2026
767
JANUARY 2026
766
DECEMBER 2025
764
NOVEMBER 2025
763
OCTOBER 2025
762
SEPTEMBER 2025
761
AUGUST 2025
760
JANUARY 2024
764
Cyber Attack
01 Jan 2024 • Revolut
N26 and Revolut: French Fintech Accounts Used to Launder Stolen Funds Before Detection
French Freelancer Fintech Accounts Exploited for Large-Scale Money Laundering
725
CRITICAL-39
N26REV1776860884
French Freelancer Fintech Accounts Exploited for Large-Scale Money Laundering
Cybercriminals are increasingly hijacking French freelancer fintech accounts to launder stolen funds at high speed, often moving money within minutes before banks or victims detect the fraud. Platforms like Revolut, Wise, and N26 designed for fast onboarding, light-touch KYC, and instant SEPA transfers have become prime targets due to their business-level payment capabilities, despite being tied to individual users.
In 2024, credit transfer fraud in the European Economic Area (EEA) reached €2.5 billion, with victims absorbing roughly 85% of losses. These accounts are more attractive to criminal networks than standard consumer accounts, as they enable cross-border transfers and payment processing under the guise of legitimate business activity.
### Industrial-Scale Mule Account Operations
Fraudsters acquire verified freelancer accounts through a sophisticated, multi-stage process:
- Identity Harvesting: Phishing sites and fake financial services (e.g., bogus mortgage portals) collect real French personal data.
- SIM Farm Infrastructure: Criminals use SIM modem farms to generate French IP addresses and phone numbers, rotating connections to evade detection.
- Social Engineering KYC: Victims are tricked into completing verification, making the process appear compliant to fintech platforms.
- Account Handoff: Once verified, accounts are transferred to fraud rings via mobile apps, creating distinct device profiles in telemetry.
Dark web markets, including the ASGARD network and actor @astarta_seller1, specialize in selling these accounts, with premium French freelancer profiles fetching $450–$700. France is the primary target, followed by Germany, Spain, Italy, Poland, and the UK.
### Detection Challenges & Broader Impact
The fraud ecosystem exploits gaps in point-in-time checks, as each stage of the process sign-up, KYC, and login appears legitimate in isolation. Effective defense now requires linking signals across the full account lifecycle, including infrastructure, subnet continuity, and cross-account connections.
The 2025 EBA/ECB Payment Fraud Report highlights the rapid growth of credit transfer fraud, driven by the abuse of instant payment rails. For risk and compliance teams, freelancer fintech accounts must be monitored as part of broader fraud networks, not just individual users.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
JANUARY 2023
787
Cyber Attack
01 Jan 2023 • Revolut
N26, Revolut and Wise: Cybercriminals Exploit French Fintech Accounts to Move Stolen Money Before Detection
Fraud Networks Exploit Fintech Platforms in France to Launder Stolen Funds
748
CRITICAL-39
N26REVWIS1776889641
Fraud Networks Exploit Fintech Platforms in France to Launder Stolen Funds
Organized fraud networks in France are deploying a sophisticated scheme to launder stolen money through fake business accounts on freelancer fintech platforms like Revolut, Wise, and N26. These platforms, designed for fast account openings and seamless transactions, have become prime targets due to their business-grade payment infrastructure, including SEPA transfers and invoicing.
The operation, tracked as "Bastardaseller" part of the larger ASGARD fraud network specializes in creating and selling verified European business accounts on dark web marketplaces for $200 to $1,000 each. These accounts, known as mule accounts, enable fraudsters to move funds rapidly via instant payment rails, often before detection. In France, nearly 1 in 5 sign-up users was identified as a mule account, with the true scale likely higher.
The scheme operates in three phases:
1. Phishing for PII – Fraudsters run phishing campaigns, such as fake mortgage consultation services, to collect victims' personal data.
2. Account Registration – Stolen PII is used to open accounts, with operators masking their location using SIM modem farms to generate French IP addresses and phone numbers.
3. Operational Handover – Once KYC is completed, control shifts to the fraud network via mobile apps, with subnet continuity linking the new login to the original sign-up infrastructure.
According to the EBA-ECB Joint Report on Payment Fraud, credit transfer fraud losses in the European Economic Area reached $2.5 billion in 2023, a 25% increase from the previous year, with mule accounts as the primary driver. Detection remains challenging, as the fraud only becomes visible when analyzing the full account lifecycle rather than isolated transactions.
Fintech platforms are urged to monitor MVNO IP addresses, sign-up velocity patterns, and device downgrades between KYC and operational phases to disrupt these networks. The attack underscores the growing threat of structured fraud operations exploiting digital financial services.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
SEPTEMBER 2022
800
Cyber Attack
01 Sep 2022 • Revolut
Revolut
Revolut Data Breach
781
CRITICAL-19
REV101719922
Revolut suffered from a cyber attack incident that compromised the personal details of more than 50,000 people.
An unauthorized third party had access to some of their information as a result, including contact and transactional details, card information, pin numbers, and passwords were not collected.
Revolut advised affected customers to be extra cautious as there may be an increased risk of impersonation or fraud.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Revolut ??
What was Revolut's A.I Rankiteo Cyber Score in June 2026 ??
What was Revolut's A.I Rankiteo Cyber Score in May 2026 ??
What was Revolut's A.I Rankiteo Cyber Score in April 2026 ??
What was Revolut's A.I Rankiteo Cyber Score in March 2026 ??
What was Revolut's A.I Rankiteo Cyber Score in February 2026 ??
What was Revolut's A.I Rankiteo Cyber Score in January 2026 ??
What was Revolut's A.I Rankiteo Cyber Score in December 2025 ??
What was Revolut's A.I Rankiteo Cyber Score in November 2025 ??
What was Revolut's A.I Rankiteo Cyber Score in October 2025 ??
What was Revolut's A.I Rankiteo Cyber Score in September 2025 ??
What was Revolut's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on Revolut's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Revolut ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Revolut's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?