
Sep 16, 2026 · 12 min
Criminals exploit government email to breach Revolut data
Revolut hands customer data to criminals, Microsoft patches break Remote Desktop, Conti developer gets four years
The episode connects a fintech data disclosure to broader failures in emergency verification, software stability, identity governance, and ransomware accountability.
- 1Fraudulent emergency requests from a legitimate government email account led Revolut to disclose customer data to criminals.
- 2Microsoft issued emergency fixes after patches caused Remote Desktop and Windows stability problems.
- 3The roundup links rapidly expanding non-human identities with weak governance, ransomware sentencing, and alleged government hardware theft.
Don't miss
The central disclosure: criminals used fraudulent emergency requests from a legitimate government email account to obtain Revolut customer data.
The brief
David Shipley opens with a rapid cybersecurity roundup, then focuses on how criminals used fraudulent emergency requests from a legitimate government email account to obtain Revolut customer data.
The Revolut disclosure shows the danger of treating urgent requests as inherently trustworthy: a real government account helped criminals bypass the safeguards protecting sensitive customer information.
Microsoft’s emergency fixes address Remote Desktop and Windows stability problems, underscoring how security patches can create operational risk when they fail in production.
The episode also tracks the growth of non-human and AI identities, where weak governance expands the number of digital actors organizations must control and monitor.
A four-year sentence for a Conti ransomware developer and an alleged CPU-theft scheme involving a U.S. Customs supervisor round out the news briefing.