This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 2613 To_xml

SUMMARY

Tax preparer steals more than 60 customers names, addresses, Social Security numbers
Records 60
Record Types SSN NAA DOB
Breach Type Fraud Se
Data Family Other
Source Inside - Malicious
Organization H&R Block
Other Affected/Involved Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: kirniki

TIMELINE

DateEvent
None. Add Data Incident Occurred
None. Add Data Incident Discovered By Organization
2010-03-23 Organization Reports Incident
None. Add Data Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
100 2006-03-14 General Motors
40 2008-11-23 Wawa
173 2008-08-22 Nye Lubricants
95 2008-11-21 MasTec, Inc.

MAP OF INCIDENT LOCATION

Address: Highland, IN, USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $3,600.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

COMMENTS

by Anonymous on 2010-04-05 (almost 2 years ago)

H&R Block terminated an office manager named Rebecca Erdmann from the Winona, Minnesota, office on May 1, 2009, for illegally disclosing client data. On November 24, 2009, H&R Block sold the same office to Ms. Erdmann and a five-person partnership she formed called "Tax Smart LLC of Winona" with no regard for client privacy and confidentiality. Minnesota Statute 325E.61 required H&R Block to notify the public of the data breach. H&R Block is covering up Ms. Erdmann's criminal activity. Please contact the managers who assisted Ms. Erdmann in her crimes. Kelly Pearson kpearson@hrblock.com and Mike Duncan mduncan@hrblock.com. Ms. Erdmann has access to all H&R Block client data nationally through the H&R Block tax vault.

by Anonymous on 2010-04-28 (almost 2 years ago)

Kelly Pearson, District Manager for H&R Block was aware of Rebecca "Becky" Erdmann's criminal activity and needs to be held accountable for allowing the data breach by Ms. Erdmann. Kelly Pearson had a friendship with Becky Erdmann that allowed the criminal activity to escalate. H&R Block and Kelly Pearson need to explain why Becky Erdmann was fired and then brought back as a business owner of the franchise she was fired from. Everyone who uses H&R Block needs to be aware of the risks and dangers caused by Becky Erdmann and Kelly Pearson, especially everyone in the Winona, Minnesota, area. Please contact Brian Woram who handles legal matters for H&R Block at brian.woram@hrblock.com

by Anonymous on 2010-04-29 (almost 2 years ago)

I called the H&R Block corporate office in Kansas City, Missouri, and Rebecca Erdmann was indeed fired for illegal disclosure of client financial data from the Winona, Minnesota, office on May 1, 2009. The Winona Mall H&R Block office. It is odd the Ms. Erdmann is now a franchise owner of an office she was fired from less than one year ago.

New Comment

captcha
Are you human?

Sponsored By: Credant_200x51 Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.