KEMETIC MINDS
Cybersecurity & Scam Daily Briefing — September 14, 2026
Photo: Gustavo Fring via Pexels (source)
- FBI: fake delivery texts now run through 10,000+ look-alike web addresses — delete them (Bing News, 2026a, 2026b).
- Revolut leaked customer ID records after a fake request from a real government domain (Yahoo Finance, 2026).
- Attackers now post that data daily until Revolut pays (CoinCentral, 2026).
- Exposed files include passports, selfies, statements and Bitcoin history (Yahoo Finance, 2026).
- Revolut says systems and funds were untouched; the exact customer count is undisclosed (Yahoo Finance, 2026).
1. Fake Package-Delivery Texts
Watch how a real fake package delivery text unfolds — and the red flags that give it away.
Federal investigators have flagged a wave of fraudulent text messages that pose as package delivery alerts — the FBI warning on look-alike delivery domains, as reported by MSN (Bing News, 2026a, 2026b).
The scheme runs through a network of more than 10,000 fake web addresses, described as “look-alike” domains built to pass for the real thing (Bing News, 2026a, 2026b).
The FBI’s guidance to anyone who receives one is blunt: delete the message (Bing News, 2026a, 2026b).
Why 10,000 domains changes the mathBlocking one bad link doesn’t help when a campaign can rotate through thousands of addresses. That scale is what separates this wave from the one-off fake text most people have learned to spot.
The same report surfaced on a second syndicated MSN page carrying the identical warning, with no additional details attached (Bing News, 2026b).
So the reader’s job shifts. You can no longer win by reading carefully — the message has to be treated as unverified no matter how normal it looks.
How to Avoid This Scam
- Never tap a link in an unexpected delivery text. Track a parcel by typing the carrier’s or retailer’s own web address yourself.
- Delete the message once you’ve confirmed you aren’t expecting that delivery — that is the FBI’s stated advice for this campaign (Bing News, 2026a, 2026b).
- Watch the web address, not the message wording. The trick here is a fake address that looks close to a real one (Bing News, 2026a, 2026b).
Video: The Cheap Security Device Burglars Avoid & StubHub’s Customer Service Nightmare. Source: Clark Howard: Save More, Spend Less.
2. “Innocent-Looking” Texts Draw a Broadband Warning
Watch how a real fake parcel redelivery text unfolds — and the red flags that give it away.
A broadband provider is warning households that fake delivery texts, banking alerts and account warnings are getting harder to tell apart from genuine ones — Community Fibre’s warning about innocent-looking scam messages (Bing News, 2026c).
Community Fibre’s response was to urge households to strengthen their online security (Bing News, 2026c).
That advice points somewhere different from “spot the fake.” If the message itself is no longer a reliable clue, the protection has to sit on the account — not in the inbox (Bing News, 2026c).
What that means for a familyDelivery texts, bank alerts and account warnings are now the same style of attack wearing three different costumes (Bing News, 2026c).
The takeaway is not “read more carefully.” It’s that a convincing message should trigger a check somewhere other than your phone screen.
How to Avoid This Scam
- Assume the message is fake until you confirm it inside the company’s own app or on a web address you type yourself (Bing News, 2026c).
- Do the account-side work now — strengthen your online security settings before a convincing text arrives, which is what Community Fibre asked households to do (Bing News, 2026c).
- Apply the same rule to banking alerts and account warnings that you’d apply to a delivery text: verify, don’t reply (Bing News, 2026c).

3. Revolut: A Fraudulent Request From a Real Government Domain
Watch how a real fake package delivery text unfolds — and the red flags that give it away.
Revolut disclosed sensitive customer records to an unauthorized party after fraudulent data requests arrived from an email address on a legitimate government agency’s domain — Revolut’s customer notification, reported by Yahoo Finance (Yahoo Finance, 2026).
The company confirmed the disclosure on Saturday, September 12 (Yahoo Finance, 2026).
Someone impersonated the agency using an address on that agency’s own domain, and the request cleared Revolut’s checks before it was identified as fraudulent (Yahoo Finance, 2026).
What was in the recordsThe notification Revolut emailed to affected customers listed birth dates, postal and email addresses, phone numbers, and copies of identity documents such as passports and driving licences (Yahoo Finance, 2026).
Verification selfies, account statements and transaction histories may also have been disclosed, the company said (Yahoo Finance, 2026).
Crypto investigator ZachXBT publicized the notice in a Telegram post and added items Revolut’s own notification did not list: IBANs, withdrawal records, occupations, and transaction history covering Bitcoin (Yahoo Finance, 2026).
What Revolut says so farRevolut told TechCrunch that a limited number of customers were affected, and that its systems and customer funds remained unaffected (Yahoo Finance, 2026).
The company blocked the sender’s address after detecting the scheme, and alerted the government agency concerned, law enforcement, data protection authorities and financial regulators (Yahoo Finance, 2026).
A spokesperson called the episode an external impersonation scam, and Revolut has not disclosed an exact number of affected customers (Yahoo Finance, 2026).
How to Avoid This Scam
- If you hold a Revolut account, expect phishing that quotes details only a real bank should know — leaked names, birth dates and phone numbers make a fake far more convincing (Yahoo Finance, 2026).
- Ask Revolut directly whether your records were in the disclosed set; the company says affected customers were notified individually (Yahoo Finance, 2026).
- Treat leaked ID documents as high-value: security experts quoted in today’s coverage say identity documents and facial-verification images raise the risk of identity theft for those affected (CoinCentral, 2026).

4. Revolut Data Posted in an Extortion Campaign
Watch how a real fake government records verification email unfolds — and the red flags that give it away.
By Sunday night the incident had turned into an extortion campaign: attackers began posting sensitive customer information online and threatened to release more every day unless the company paid — CoinCentral’s report on the extortion threats (CoinCentral, 2026).
“We’re going to start releasing more and more data everyday until revolut pays for leaking their customers,” the attackers reportedly announced on Telegram (CoinCentral, 2026).
Who was named firstAmong the first data published were identity documents and selfies linked to tennis player Alexander Shevchenko and Felix Römer, CEO of the online crypto casino Gamdom, according to a post on X from International Cyber Digest (CoinCentral, 2026).
The exposed information includes full names, dates of birth, occupations, contact details, account statements and full transaction histories, including Bitcoin transactions, plus passport copies and driver’s licences (CoinCentral, 2026).
The threat is still liveRevolut called the leak the result of a “sophisticated external impersonation scam,” said a “very limited” number of customers were affected, and said those customers were individually notified (CoinCentral, 2026).
Customers whose Bitcoin transaction histories were exposed could also face additional privacy concerns, the report notes (CoinCentral, 2026).
The daily-release threat means this story is unfinished — anyone named in the first drop becomes a target for follow-on fraud.
How to Avoid This Scam
- Ignore anyone offering to delete your leaked files for a fee; the attackers are demanding payment from Revolut, not from you (CoinCentral, 2026).
- Watch for second-wave phishing that quotes real details from the leak — your name, birth date or transaction history is exactly what makes a fake message land (CoinCentral, 2026; Yahoo Finance, 2026).
- If you were notified, treat your passport or licence copy and your verification selfie as permanently exposed, and check your accounts for unfamiliar activity (CoinCentral, 2026).
What the Research Actually Says
Today’s briefing came with no peer-reviewed studies attached, and that gap is worth naming plainly: the guidance above rests on official warnings and company statements, not on controlled research (Bing News, 2026a; CoinCentral, 2026).
That limits what we can tell you. We can describe what happened today. We can’t tell you how well any single defense performs over time.
What the sources do supportThe FBI’s instruction for this campaign is narrow and clear: delete the messages rather than engage with them (Bing News, 2026a, 2026b).
Community Fibre’s warning reaches the same conclusion from a different angle — because fake delivery texts, banking alerts and account warnings are getting harder to identify, households are being told to strengthen their online security rather than rely on spotting a fake by eye (Bing News, 2026c).
The Revolut case shows the ceiling on message-level defenses. The fraudulent requests arrived from an address on a legitimate government domain and cleared the company’s checks before anyone caught them (Yahoo Finance, 2026).
We’ll flag peer-reviewed findings here the moment they’re available — including any study measuring whether “delete and don’t click” actually reduces losses.
Today’s Family Safety Checklist
- Verify, then act: check delivery, banking and account messages inside the company’s own app or on a web address you type yourself (Bing News, 2026c).
- Delete instead of replying — the FBI’s stated guidance for this wave of fake delivery texts (Bing News, 2026a, 2026b).
- Protect the account, not just the inbox: a leaked passport copy or selfie can’t be reset the way a password can, so tighten logins and watch your statements (CoinCentral, 2026; Yahoo Finance, 2026).
- Treat a message that already knows your birth date or account details as a warning sign, not proof — the Revolut leak put exactly that kind of data into circulation (CoinCentral, 2026).
Figure 1
Who is covering this
Note. Built from the Scam Watch stories cited in this report.
Black Excellence This Week
The hard news is real, and so is this. Wins reported by the Black press in the last 14 days:
- Another North Carolina HBCU shatters enrollment record as Black colleges surge
miamiherald.com · 2026-09-11 - 5 Things You May Not Know About XCEL Award Honoree Dr. Bernard Harris
blackenterprise.com · 2026-09-10 - Houston appoints first Black woman as executive assistant chief, names new fire marshal
communityimpact.com · 2026-09-10 - HBCUs Are Building New Support Systems for Black Male Students
capitalbnews.org · 2026-09-08
What You Can Do This Week
Not just bad news — here is where to push.
- Delete the fake delivery texts without clicking any link, then file a report with the FTC’s fraud database. — Report fraud (FTC)
- Freeze your credit at Equifax, Experian, and TransUnion this week if you hold a Revolut account affected by the leak. — Freeze your credit (annualcreditreport.com)
- Report the Revolut data-theft extortion and any suspicious account activity to the federal cybersecurity agency immediately. — CISA: report a cyber incident
SUPPORT KEMETIC MINDS
Enjoying this coverage? Back the work and find every way to connect with us in one place.
Support the Page →Kemetic Minds Analysis
Today’s briefing pulled from 5 news sources and 0 peer-reviewed studies. No peer-reviewed source cleared today’s citation-count bar; treat today’s protection advice as news-grounded, not research-grounded. The pattern worth watching isn’t any single scam headline — it’s whether today’s news matches what the research already predicts about who gets targeted and what actually reduces risk, or whether it’s a genuinely new variant the literature hasn’t caught up to yet.
References
- Bing News. (2026, September 14). A fake delivery-text scam is running through more than 10,000 look-alike domains, and the FBI says to delete the messages. msn.com
- Bing News. (2026, September 13). Broadband provider warns of innocent-looking scam messages. msn.com
- Bing News. (2026, September 14). A fake delivery-text scam is running through more than 10,000 look-alike domains, and the FBI says to delete the messages. msn.com
- Bing News. (2026, September 14). Revolut Customer Records Exposed: Attackers Demand 10,000 BTC. finance.yahoo.com
- Bing News. (2026, September 13). Revolut Customer Data Leaked as Attackers Threaten Daily Releases Until Company Pays. coincentral.com
Investigative Methodology: This briefing is generated on a fixed daily schedule (6:00 AM, America/Chicago) from live news wires and the CrossRef scholarly database. Every news claim is grounded in fetched source text with an APA7 in-text citation. Every peer-reviewed source is a real, DOI-verifiable journal article — filtered to results with a named author list, a named journal, and at least 3 citations to screen out predatory or uncited entries — never a fabricated or paraphrased-from-memory study. Every video embed is verified to be a real, existing video via YouTube’s oEmbed endpoint before publication. The featured image is a real photograph sourced from Pexels, not an AI-generated image. No Wikipedia sources are used.
Stay Connected

