Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Revolut

Revolut Vendor Cyber Rating & Cyber Score

revolut.com

People deserve more from their money. More visibility, more control, and more freedom. Since 2015, Revolut has been on a mission to deliver just that. Our powerhouse of products help our 65+ million customers get more from their money every day. As we continue our lightning-fast growth,‌ 2 things are essential to our success: our people and our culture. In recognition of our outstanding employee experience, we've been certified as a Great Place to Work™. So far, we have 10,000+ people working around the world, from our offices and remotely, to help us achieve our mission. And we're looking for more brilliant people. People who love building great products, redefining success, and turning the complexity of a chaotic world into the


Revolut A.I CyberSecurity Scoring

Revolut
Company Information
Website:https://www.revolut.com
Employees number:15,697
Number of followers:1,698,237
NAICS:52
Industry Type:Financial Services
Homepage:revolut.com
Revolut Risk Score (AI oriented)
Between 750 and 799
logo
RevolutFinancial Services
Updated:
22/04/2026
769/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Revolut Global Score (TPRM)
xxxx
logo
RevolutFinancial Services
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Revolut
RevolutFair
Current Score
769Baa (FAIR)
01000
3 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
771Before Incident
JUNE 2026
770Before Incident
MAY 2026
769Before Incident
APRIL 2026
769Before Incident
MARCH 2026
768Before Incident
FEBRUARY 2026
767Before Incident
JANUARY 2026
766Before Incident
DECEMBER 2025
764Before Incident
NOVEMBER 2025
763Before Incident
OCTOBER 2025
762Before Incident
SEPTEMBER 2025
761Before Incident
AUGUST 2025
760Before Incident
JANUARY 2024
764Before Incident
Cyber Attack
01 Jan 2024Revolut
N26 and Revolut: French Fintech Accounts Used to Launder Stolen Funds Before Detection

French Freelancer Fintech Accounts Exploited for Large-Scale Money Laundering

725After Incident
CRITICAL-39
N26REV1776860884
French Freelancer Fintech Accounts Exploited for Large-Scale Money Laundering Cybercriminals are increasingly hijacking French freelancer fintech accounts to launder stolen funds at high speed, often moving money within minutes before banks or victims detect the fraud. Platforms like Revolut, Wise, and N26 designed for fast onboarding, light-touch KYC, and instant SEPA transfers have become prime targets due to their business-level payment capabilities, despite being tied to individual users. In 2024, credit transfer fraud in the European Economic Area (EEA) reached €2.5 billion, with victims absorbing roughly 85% of losses. These accounts are more attractive to criminal networks than standard consumer accounts, as they enable cross-border transfers and payment processing under the guise of legitimate business activity. ### Industrial-Scale Mule Account Operations Fraudsters acquire verified freelancer accounts through a sophisticated, multi-stage process: - Identity Harvesting: Phishing sites and fake financial services (e.g., bogus mortgage portals) collect real French personal data. - SIM Farm Infrastructure: Criminals use SIM modem farms to generate French IP addresses and phone numbers, rotating connections to evade detection. - Social Engineering KYC: Victims are tricked into completing verification, making the process appear compliant to fintech platforms. - Account Handoff: Once verified, accounts are transferred to fraud rings via mobile apps, creating distinct device profiles in telemetry. Dark web markets, including the ASGARD network and actor @astarta_seller1, specialize in selling these accounts, with premium French freelancer profiles fetching $450–$700. France is the primary target, followed by Germany, Spain, Italy, Poland, and the UK. ### Detection Challenges & Broader Impact The fraud ecosystem exploits gaps in point-in-time checks, as each stage of the process sign-up, KYC, and login appears legitimate in isolation. Effective defense now requires linking signals across the full account lifecycle, including infrastructure, subnet continuity, and cross-account connections. The 2025 EBA/ECB Payment Fraud Report highlights the rapid growth of credit transfer fraud, driven by the abuse of instant payment rails. For risk and compliance teams, freelancer fintech accounts must be monitored as part of broader fraud networks, not just individual users.
INCIDENT DETAILS -
TYPE
Money Laundering, Fraud, Account Takeover
MOTIVATION
Financial gain, Money laundering
IMPACT
Financial Loss: €2.5 billion (2024 EEA credit transfer fraud)Data Compromised: French personal data, Freelancer account credentialsSystems Affected: Fintech platforms (Revolut, Wise, N26), Payment rails (SEPA)Operational Impact: Exploitation of instant payment rails, Fraudulent cross-border transfersBrand Reputation Impact: Potential erosion of trust in fintech platformsIdentity Theft Risk: High (PII harvested and exploited)Payment Information Risk: High (fraudulent transactions)
DATA BREACH
Type Of Data Compromised: Personal Identifiable Information (PII), Account credentialsSensitivity Of Data: High (used for fraud and money laundering)Personally Identifiable Information: Yes (French personal data)
JANUARY 2023
787Before Incident
Cyber Attack
01 Jan 2023Revolut
N26, Revolut and Wise: Cybercriminals Exploit French Fintech Accounts to Move Stolen Money Before Detection

Fraud Networks Exploit Fintech Platforms in France to Launder Stolen Funds

748After Incident
CRITICAL-39
N26REVWIS1776889641
Fraud Networks Exploit Fintech Platforms in France to Launder Stolen Funds Organized fraud networks in France are deploying a sophisticated scheme to launder stolen money through fake business accounts on freelancer fintech platforms like Revolut, Wise, and N26. These platforms, designed for fast account openings and seamless transactions, have become prime targets due to their business-grade payment infrastructure, including SEPA transfers and invoicing. The operation, tracked as "Bastardaseller" part of the larger ASGARD fraud network specializes in creating and selling verified European business accounts on dark web marketplaces for $200 to $1,000 each. These accounts, known as mule accounts, enable fraudsters to move funds rapidly via instant payment rails, often before detection. In France, nearly 1 in 5 sign-up users was identified as a mule account, with the true scale likely higher. The scheme operates in three phases: 1. Phishing for PII – Fraudsters run phishing campaigns, such as fake mortgage consultation services, to collect victims' personal data. 2. Account Registration – Stolen PII is used to open accounts, with operators masking their location using SIM modem farms to generate French IP addresses and phone numbers. 3. Operational Handover – Once KYC is completed, control shifts to the fraud network via mobile apps, with subnet continuity linking the new login to the original sign-up infrastructure. According to the EBA-ECB Joint Report on Payment Fraud, credit transfer fraud losses in the European Economic Area reached $2.5 billion in 2023, a 25% increase from the previous year, with mule accounts as the primary driver. Detection remains challenging, as the fraud only becomes visible when analyzing the full account lifecycle rather than isolated transactions. Fintech platforms are urged to monitor MVNO IP addresses, sign-up velocity patterns, and device downgrades between KYC and operational phases to disrupt these networks. The attack underscores the growing threat of structured fraud operations exploiting digital financial services.
INCIDENT DETAILS -
TYPE
Fraud, Money Laundering
MOTIVATION
Financial gain, Money laundering
IMPACT
Financial Loss: $2.5 billion (credit transfer fraud losses in EEA, 2023)Data Compromised: Personally Identifiable Information (PII)Systems Affected: Fintech platforms (Revolut, Wise, N26)Operational Impact: Increased fraud detection challenges, exploitation of payment railsBrand Reputation Impact: Potential reputational damage to fintech platformsIdentity Theft Risk: High (stolen PII used for account creation)Payment Information Risk: High (SEPA transfers, instant payments)
DATA BREACH
Type Of Data Compromised: Personally Identifiable Information (PII)Sensitivity Of Data: High (used for account creation and fraud)Personally Identifiable Information: Yes (stolen via phishing)
SEPTEMBER 2022
800Before Incident
Cyber Attack
01 Sep 2022Revolut
Revolut

Revolut Data Breach

781After Incident
CRITICAL-19
REV101719922
Revolut suffered from a cyber attack incident that compromised the personal details of more than 50,000 people. An unauthorized third party had access to some of their information as a result, including contact and transactional details, card information, pin numbers, and passwords were not collected. Revolut advised affected customers to be extra cautious as there may be an increased risk of impersonation or fraud.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
contact detailstransactional detailscard informationIdentity Theft Risk: HighPayment Information Risk: High
DATA BREACH
contact detailstransactional detailscard informationSensitivity Of Data: HighPersonally Identifiable Information: Yes

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Revolut ?
?
What was Revolut's A.I Rankiteo Cyber Score in June 2026 ?
?
What was Revolut's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Revolut's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Revolut's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Revolut's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Revolut's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Revolut's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Revolut's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Revolut's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Revolut's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Revolut's A.I Rankiteo Cyber Score in August 2025 ?
?
What is the average per-incident point impact on Revolut's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Revolut ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Revolut's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?