DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

More reports of false tax returns in wake of W-2 phishing scams

Posted on March 15, 2017 by Dissent

One of the many companies who became victims of W-2 phishing this year is Berkley Mid-Atlantic Group, a property and casualty insurance firm with headquarters in Virginia.

DataBreaches.net became aware of their incident when contacted by a former employee. According to BMAG’s notification to employees  dated March 10, they had no then-current evidence of any misuse of employees’ information. Given that the incident occurred on or about March 6 (according to the person who contacted DataBreaches.net), such assurances might have been a bit premature or optimistic.  Approximately 24 hours after the employee received notification of the breach, they also discovered that someone had already filed a tax return in their name using their personal information.  Whether BMAG will be sued over the incident remains to be seen.

Certainly in other cases, we are now seeing more and more reports of individuals discovering that tax returns have been filed in their name following W-2 incidents. Today alone, for example, this blogger read reports concerning ADF International and Dairy Management, Inc that both indicated employees had experienced problems with tax returns. And some firms have already been sued over such incidents. As two examples, solar panel manufacturer Sunrun has been sued by an employee who discovered a false return had been filed before Sunrun even notified him of the breach. In other litigation, TransPerfect Global Inc. has been sued by employees after their 2015 W-2 data was compromised by phishing an employee.

So while I continue to track these W-2 phishing scam reports, and Steve Ragan keeps adding up the numbers affected, perhaps we should also have been keeping track of how many of these incidents are actually associated with falsified tax returns.

Category: Breach IncidentsCommentaries and AnalysesPhishing

Post navigation

← Justice Department charging Russian spies and criminal hackers in Yahoo intrusion
Court blocks American from suing Ethiopia for infecting his computer →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • International cybercrime tackled: Amsterdam police and FBI dismantle proxy service Anyproxy
  • Moldovan Police Arrest Suspect in €4.5M Ransomware Attack on Dutch Research Agency
  • N.W.T.’s medical record system under the microscope after 2 reported cases of snooping
  • Department of Justice says Berkeley Research Group data breach may have exposed information on diocesan sex abuse survivors
  • Masimo Manufacturing Facilities Hit by Cyberattack
  • Education giant Pearson hit by cyberattack exposing customer data
  • Star Health hacker claims sending bullets, threats to top executives: Reports
  • Nova Scotia Power hit by cyberattack, critical infrastructure targeted, no outages reported
  • Georgia hospital defeats data-tracking lawsuit
  • 60K BTC Wallets Tied to LockBit Ransomware Gang Leaked

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • FTC dismisses privacy concerns in Google breakup
  • ARC sells airline ticket records to ICE and others
  • Clothing Retailer, Todd Snyder, Inc., Settles CPPA Allegations Regarding California Consumer Privacy Act Violations
  • US Customs and Border Protection Plans to Photograph Everyone Exiting the US by Car
  • Google agrees to pay Texas $1.4 billion data privacy settlement
  • The App Store Freedom Act Compromises User Privacy To Punish Big Tech
  • Florida bill requiring encryption backdoors for social media accounts has failed

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.