Latest employee W2 data theft story - Kroger

General discussion of identity theft issues, including identity theft schemes, phishing scams, and related issues.
Judge Roy Bean
Judge for the District of Quatloosia
Judge for the District of Quatloosia
Posts: 3704
Joined: Tue May 17, 2005 6:04 pm
Location: West of the Pecos

Latest employee W2 data theft story - Kroger

Post by Judge Roy Bean »

A confluence of dumbness has led to a vulnerability in Equifax's system that has resulted in Kroger sending this warning in a letter to employees:
We believe individuals gained access to some Kroger associates’ electronic W-2 forms and may have used the information to file tax returns in their names in an effort to claim a fraudulent refund.
https://krebsonsecurity.com/2016/05/cro ... u-equifax/

Seriously - in this age of heightened data theft awareness, Equifax was using the old "last four digits" of an SSN and someone's year of birth as a default access PIN? :oops: :roll: :shock:
The Honorable Judge Roy Bean
The world is a car and you're a crash-test dummy.
The Devil Makes Three