DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

More reports of false tax returns in wake of W-2 phishing scams

Posted on March 15, 2017 by Dissent

One of the many companies who became victims of W-2 phishing this year is Berkley Mid-Atlantic Group, a property and casualty insurance firm with headquarters in Virginia.

DataBreaches.net became aware of their incident when contacted by a former employee. According to BMAG’s notification to employees  dated March 10, they had no then-current evidence of any misuse of employees’ information. Given that the incident occurred on or about March 6 (according to the person who contacted DataBreaches.net), such assurances might have been a bit premature or optimistic.  Approximately 24 hours after the employee received notification of the breach, they also discovered that someone had already filed a tax return in their name using their personal information.  Whether BMAG will be sued over the incident remains to be seen.

Certainly in other cases, we are now seeing more and more reports of individuals discovering that tax returns have been filed in their name following W-2 incidents. Today alone, for example, this blogger read reports concerning ADF International and Dairy Management, Inc that both indicated employees had experienced problems with tax returns. And some firms have already been sued over such incidents. As two examples, solar panel manufacturer Sunrun has been sued by an employee who discovered a false return had been filed before Sunrun even notified him of the breach. In other litigation, TransPerfect Global Inc. has been sued by employees after their 2015 W-2 data was compromised by phishing an employee.

So while I continue to track these W-2 phishing scam reports, and Steve Ragan keeps adding up the numbers affected, perhaps we should also have been keeping track of how many of these incidents are actually associated with falsified tax returns.

Category: Breach IncidentsCommentaries and AnalysesPhishing

Post navigation

← Justice Department charging Russian spies and criminal hackers in Yahoo intrusion
Court blocks American from suing Ethiopia for infecting his computer →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Supplier to major UK supermarkets Aldi, Tesco & Sainsbury’s hit by cyber attack with ransom demand
  • UK: Post Office to compensate hundreds of data leak victims
  • How the Signal Knockoff App TeleMessage Got Hacked in 20 Minutes
  • Cocospy stalkerware apps go offline after data breach
  • Ex-NSA bad-guy hunter listened to Scattered Spider’s fake help-desk calls: ‘Those guys are good’
  • Former Sussex Police officer facing trial for rape charged with 18 further offences relating to computer misuse
  • Beach mansion, Benz and Bitcoin worth $4.5m seized from League of Legends hacker Shane Stephen Duffy
  • Fresno County fell victim to $1.6M phishing scam in 2020. One suspected has been arrested, another has been indicted.
  • Ransomware Attack on ADP Partner Exposes Broadcom Employee Data
  • Anne Arundel ransomware attack compromised confidential health data, county says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Police secretly monitored New Orleans with facial recognition cameras
  • Cocospy stalkerware apps go offline after data breach
  • Drugmaker Regeneron to acquire 23andMe out of bankruptcy
  • Massachusetts Senate Committee Approves Robust Comprehensive Privacy Law
  • Montana Becomes First State to Close the Law Enforcement Data Broker Loophole
  • Privacy enforcement under Andrew Ferguson’s FTC
  • “We would be less confidential than Google” – Proton threatens to quit Switzerland over new surveillance law

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.