IRS Suspends Insecure ‘Get IP PIN’ Feature

Citing ongoing security concerns, the Internal Revenue Service (IRS) has suspended a service offered via its Web site that allowed taxpayers to retrieve so-called IP Protection PINs (IP PINs), codes that the IRS has assigned to some 2.7 million taxpayers to help prevent those individuals from becoming victims of tax refund fraud two years in a row. The move comes just days after KrebsOnSecurity first exposed how ID thieves were abusing the service to revisit tax refund on innocent taxpayers two years running. Continue reading IRS Suspends Insecure ‘Get IP PIN’ Feature

Phishers successfully tricking payroll pros into sharing employee data

In February, the US Internal Revenue Service (IRS) issued a warning about a 400 percent surge in tax related phishing and malware incidents. The alert said that the most noticeable increase was that of emails and messages impersonating the IRS or other persons and entities in the tax industry. Then, on the first day of March came another warning, meant specifically for payroll and human resources professionals. The phishers have hit a gold mine: by … More Continue reading Phishers successfully tricking payroll pros into sharing employee data

Seagate employees at risk of identity theft after tax forms disclosed

Past and present US employees of data storage firm Seagate are learning to face the facts: their identities may now be in the hands of a criminal gang, after the company revealed that a phishing attack had successfully stolen personal and tax informati… Continue reading Seagate employees at risk of identity theft after tax forms disclosed