Overview
DriveWealth, a US financial technology company providing brokerage infrastructure to banks, broker-dealers and other financial institutions, disclosed a data breach involving personal information belonging to some Revolut customers.
The incident affected historical records held by DriveWealth for customers who previously used Revolut’s US stock trading service. DriveWealth and Revolut contacted affected customers on Thursday with details about the breach and the information involved.
DriveWealth said an unauthorised party accessed its network on Sept. 4 and Sept. 5 following a social engineering campaign conducted by unknown third parties. The company contained the compromise on Sept. 5 and completed its investigation and document review on Sept. 28.
The breach was disclosed to the California Attorney General on Sept. 30. DriveWealth said its investigation confirmed personal information had been taken from its network.
Irish customers were among those affected, according to the Irish Independent. Revolut said customers in Europe were exposed only where their historical data had previously been shared with DriveWealth under an older trading arrangement.
DriveWealth said the affected records included customer profile and biographical information. Exposed data included names, email addresses, phone numbers, postal addresses, employment information, country of citizenship, age, gender and partial DriveWealth account numbers.
Passwords and payment information were not involved, according to DriveWealth. The company said attackers did not obtain credit card details or bank account numbers.

Revolut also said its own systems and infrastructure were not accessed. Customer funds and investments remained safe, and no Revolut passwords, passcodes, card details or identification documents were exposed.
Your account can’t be accessed solely with the information involved in this incident, and we haven’t detected any unauthorised activity on your account.
Revolut told affected customers
Revolut customers using its trading service had previously entered into separate agreements with Revolut and DriveWealth. In the European Economic Area, Revolut changed that structure in December 2023, after which individual customer data in those markets was no longer shared with DriveWealth.
The same migration was completed in the UK and Australia by June 2025, according to Revolut. As a result, the breach concerns historical data from before those changes in affected European, UK and Australian markets.
In the US, the incident relates to customers who used Revolut’s US stock trading service. Revolut said DriveWealth retained older records because of legal and regulatory obligations.
DriveWealth reported the incident to the data protection authority in Lithuania. The company is also offering affected individuals 12 months of complimentary credit monitoring and credit report services.
Customers receiving a notification have 90 days to enrol using the code supplied by DriveWealth. The company also established a dedicated response line and cyber response page for affected individuals.
Revolut said it remains in direct contact with DriveWealth while the broker determines the exact scope of the incident. Customers who didn’t receive an email from either company were not affected, according to Revolut.
A separate disclosure also surfaced a previous claim involving DriveWealth. On Dec. 25, 2025, a threat actor using the name Yiqun data said on Telegram that it had obtained 72,000 DriveWealth customer records containing personal information.
The DriveWealth incident is the second data breach involving Revolut customer information reported during September. Revolut said on Sept. 14 that an unauthorised third party had used an email domain associated with a legitimate government agency to submit fraudulent information requests.
That earlier incident exposed copies of passports and driving licences alongside dates of birth, home addresses, email addresses and phone numbers for some customers. Revolut did not disclose the number affected, though reports at the time put the total at around 700 customers globally, including about 12 in Ireland.
Who is DriveWealth?
DriveWealth LLC is a licensed third-party US broker-dealer. They provide essential execution and clearing services specifically for Revolut’s US investment service, ensuring your trades are processed smoothly.
When customers originally signed up for US investments, they entered into two agreements: one with the relevant Revolut trading entity and another with DriveWealth in the US. The information we needed to provide our trading services was shared with both parties.
This remains the current arrangement in the US. In the UK, the EEA, and Australia, this existed only during specific periods in the past, with dates varying by market. DriveWealth continues to retain historical account records in accordance with US financial regulations.
What happened during the incident and who’s affected?
DriveWealth recently informed us that an unauthorised party accessed customer data held on its systems. Revolut’s own systems, app infrastructure, and core databases were not accessed or affected in any way. All Revolut customer funds and investments remain completely safe.
All affected Revolut customers have received two emails, one from DriveWealth and one from Revolut, confirming they were impacted and explaining the scope of the breach. If you haven’t received these emails, it means you aren’t affected (but check your spam folder).
DriveWealth sent an email to affected customers whose US stocks account is, or was, held with them. DriveWealth acts as an independent data controller in this context, and we can confirm this email was genuine.
How will I know if I’m affected?
DriveWealth is directly notifying affected customers by email. If you hold a US investment account and are impacted, you’ll receive a communication from DriveWealth, plus a confirmation email from Revolut.
If you receive these notifications, we strongly recommend reading the email carefully. Visit the DriveWealth website for more context, or email [email protected] with any questions about your specific data.
Under our current account setup in the UK, EEA, and Australia, individual customers’ personal details are never shared with DriveWealth. That’s why customers on this newer setup were not affected by this incident.
Why does DriveWealth have my information?
For accounts created under a direct Brokerage setup, customers entered into a direct relationship with DriveWealth and agreed to their T&Cs. This includes current US accounts and older UK, EEA, and Australian accounts.
US financial regulations require brokers holding these direct accounts to maintain accurate identity and trading records for compliance purposes. This is why DriveWealth retained your historical information on their systems.
As a partner, Revolut relies on DriveWealth’s Brokerage infrastructure to give customers seamless access to shares listed on major US markets, including the New York Stock Exchange (NYSE) and the Nasdaq Stock Market (NASDAQ).









