Wednesday, January 8, 2025
HomeData BreachIRS Data Leak - Over 120,000 User Data Leaked

IRS Data Leak – Over 120,000 User Data Leaked

Published on

It has been discovered that over 120,000 taxpayers‘ confidential information was accidentally leaked by the IRS (Internal Revenue Service). As part of their tax returns, all of these individuals filed a form 990-T.

Unrelated business income is reported through IRS Form 990T to tax-exempt entities like:-

  • Nonprofits (charities)
  • IRA retirement accounts
  • SEP retirement accounts

An individual retirement account is an account that pays income from investments such as real estate and sales that are unrelated to the core purpose of the nonprofit or from sales that are unrelated to that purpose.

Data Exposure

Normally, when a taxpayer submits these forms to the IRS, the IRS is the only organization that is able to see them. Despite this, non-profit organizations must retain their Form 990-T for a period of three years after they are filed.

Recently, the Internal Revenue Service discovered that the bulk download section of the TEOS now allows users to download data in a machine-readable format (XML) for Form 990-T.

Approximately 120,000 taxpayer records were exposed by the data leak, including an array of personal information, such as:-

  • Names
  • Contact information
  • Reported financial income data (Within those IRAs)

Moreover, these are some of the things that were not included in the exposure:-

  • Social Security numbers
  • Full individual income information
  • Other data that could affect a taxpayer’s credit

The mistake was discovered in recent weeks by an IRS employee who works in the research department. The data was removed as a result of a more comprehensive investigation that triggered a broader inquiry.

Furthermore, the IRS will begin notifying affected taxpayers as soon as possible within the coming weeks. 

Due to aging information-technology systems, the IRS has had to deal with challenges for quite some time. Consequently, there have been instances in which private taxpayer information has been disclosed as a result.

Secure Azure AD Conditional Access – Download Free White Paper

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

New WordPress Plugin That Weaponizes Legit Sites To Steal Customer Payment Data

Cybercriminals have developed PhishWP, a malicious WordPress plugin, to facilitate sophisticated phishing attacks, which...

New FireScam Android Malware Abusing Firebase Services To Evade Detection

FireScam is multi-stage malware disguised as a fake “Telegram Premium” app that steals data...

Hackers Weaponize Security Testing By Weaponizing npm, PyPI, & Ruby Exploit Packages

Over the past year, malicious actors have been abusing OAST services for data exfiltration,...

Hackers Mimic Social Security Administration To Deliver ConnectWise RAT

A phishing campaign spoofing the United States Social Security Administration emerged in September 2024,...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

Hackers Compromised Argentina’s Airport Security Payroll System

Hackers have successfully infiltrated Argentina’s Airport Security Police (PSA) payroll system, raising alarms about...

US Treasury Department Breach, Hackers Accessed Workstations

The Biden administration confirmed that a Chinese state-sponsored hacking group breached the U.S. Treasury...

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a...