NewsCrypto Casinos3 min read
Revolut Data Breach Exposes Gamdom Founder Felix Römer
Gamdom founder and CEO Felix Römer says he was blackmailed with compromised information two months before Revolut publicly disclosed the incident.
Written by Editorial Desk15 September 2026

Gamdom founder and CEO Felix Römer is among the high-profile Revolut customers whose sensitive information was obtained after the fintech handed customer records to an unauthorized third party.
The attackers have reportedly begun publishing identity documents and verification images belonging to affected customers. Material connected to Römer and professional tennis player Alexander Shevchenko was included in the initial public release, according to International Cyber Digest.
Römer has confirmed that he was contacted by Revolut and said the information held by the attackers appeared to have come from his account. He is not accused of any wrongdoing and is one of the customers affected by the incident.
Römer Says Blackmail Began Two Months Earlier
In a public statement, Römer said Revolut announced the incident three days earlier, but that he and other victims had already been targeted with blackmail using the compromised information for approximately two months.
“Already 2 months ago me and others started to get blackmailed with the compromised data,” Römer Wrote
His account raises questions over when the customer information was originally disclosed, when Revolut became aware of the incident and how long affected users remained exposed before they were notified.
Römer also clarified that he was speaking publicly to show what had happened, rather than to promote Gamdom or defend the wider gambling industry.
Römer separately confirmed that Revolut contacted him on Friday. Based on the details possessed by the attackers, he said the leaked material appeared to be authentic and sourced from Revolut.
Revolut Handed Data to an Unauthorized Third Party
Revolut confirmed that sensitive customer information was disclosed after fraudulent information requests were sent from an email address using a legitimate government agency domain.
The company described the incident as a sophisticated external impersonation scam. Rather than directly breaching Revolut’s internal systems, the attackers allegedly posed as government officials and convinced the fintech to provide customer records.
The exposed information may include:
- Full names and dates of birth
- Home and email addresses
- Telephone numbers and occupations
- Passports and driver’s licenses
- Identity-verification selfies
- Account statements and IBANs
Revolut said it blocked the address after detecting the fraudulent requests and notified the relevant government agency, law enforcement, data-protection authorities and financial regulators.
The company maintains that its systems were not compromised and that customer funds remain unaffected. Revolut initially described the number of affected customers as limited, while later reporting indicated that approximately 680 people had been contacted.
Attackers Threaten Further Customer Leaks
The incident has since developed into an extortion campaign. The attackers are reportedly threatening to release additional customer records unless Revolut pays them.
“We’re going to start releasing more and more data everyday until Revolut pays for leaking their customers,” the group reportedly wrote on Telegram.
The decision to publish information connected to recognizable figures such as Römer suggests the attackers may have targeted customers believed to hold significant wealth or cryptocurrency. On-chain investigator ZachXBT has also said the incident appears to have focused on high-net-worth Revolut users.
The UK Information Commissioner’s Office is investigating after Revolut reported the incident. Revolut has not publicly identified the government agency whose domain was used or provided a complete timeline showing when the fraudulent requests were received.
Although there is currently no evidence that money was taken directly from affected Revolut accounts, the combination of identity documents, verification selfies, addresses and transaction records creates a wider security risk. The exposed material could be used for identity theft, targeted scams or attempts to gain access to accounts held with other financial platforms.
For Römer and the other affected customers, that risk may have begun months before Revolut publicly acknowledged the leak.





