This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 1492 To_xml

SUMMARY

Unauthorised access of person details of online customer by other online customers due to website issue
Records 582
Record Types CCN SSN NAA MISC FIN
Breach Type Web
Data Family Electronic
Source Outside
Organization H&R Block
Other Affected/Involved Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: osf1

STOCK PRICE

Chart?chxt=x,y&chxl=0:|may-22|jun-12|jul-2|&chxr=1,20.74,24.19&cht=lc&chd=t:22.92,22.63,22.73,22.59,23.1,23.34,23.34,23.6,23.7,23.85,22.98,22.74,22.75,22.11,22.04,22.32,23.46,23.41,23.13,23.12,20.74,21.36,21.14,21.58,20.8,20.82,21.4,21.57,21.88,21.81,22.75,23.54,23.86,22.88,22.48,22.19,22.48,23.55,24.08,24.1|24.00,24.00,23.68,23.68,23.84,23.84,23.93,23.93,24.06,24.06,24.10,24.10,23.85,23.85,23.71,23.71,23.70,23.70,24.16,24.16,23.42,23.42,23.43,23.43,23.38,23.38,22.98,22.98,23.06,23.06,23.40,23.40,23.41,23.41,23.25,23.25,23.02,23.02,23.11,23.11,22.68,22.68,22.68,22.68,22.62,22.62,22.75,22.75,22.08,22.08,22.00,22.00,22.03,22.03,22.11,22.11,21.71,21.71,21.73,21.73,21.55,21.55,21.92,21.92,21.42,21.42,21.57,21.57,21.33,21.33,21.14,21.14,20.91,20.91,21.43,21.43,21.69,21.69,21.69,21.69&chds=20.74,24.19&chco=008000,aaffff,ffaaff,ffffaa&chs=460x320&chm=v,990066,0,9,1

SIMILAR INCIDENTS

recordsdateorganizations
750 2007-06-18 Parisexposed.com
1,400 2008-07-12 Bank Pekao SA
988 2006-10-05 Homecomings Financial Network Inc
341 2008-12-04 Economic Research Institute

TIMELINE

DateEvent
2008-04-10 Incident Occurred
2008-04-10 Incident Discovered By Organization
2008-06-04 Organization Reports Incident
None. Add Data Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

MAP OF INCIDENT LOCATION

Address: Missouri, USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $34,920.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

PRIMARY SOURCES

Primary Source ID: 68

add details to this primary source Description
Unauthorised access to personal information of some customers by other customers due to some error in the website
FilenameSourceResearcher Incident IDs
MD_ITU-153113.pdfMaryland Attorney Generalkirniki <a href='/incidents/show/1492'>1492</a>
RecordsFile DateUploadedUpdated
Not yet entered 2008-06-04 2008-12-04 23 Sep 12:18
Excerpt
68

tax, accounting and financial senxices ‘ `~~ii~’ V`` ” “`'> . I t` CF Nil iéiikfxl Q} ?* I. Zfiiii .503*1 ~ 5 I3 E 0 Office of the Maryland Attorney General Attorney General...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1697

add details to this primary source Description
New York Data Breach Notification : Website problems may have allowed other users to view message boards with other users personal information.
FilenameSourceResearcher Incident IDs
HR-Block-DigitalTax-FS.pdfNew York State Consumer Protection Boardcwalsh <a href='/incidents/show/1492'>1492</a>
RecordsFile DateUploadedUpdated
33 2008-06-05 2009-05-08 03 Aug 23:23
Excerpt
1697

V. ·· ¤;,;;:_2_ “Watson, Catherine" To , , ' - 'S:!:!:¥:¥:¥:¥:- . .;;i`·, OB/USIZOOS 05.20 PM <brea...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1017

add details to this primary source Description
Maine Data Breach Notification : Online users may have had access to other users message boards and there exposed personal details.
FilenameSourceResearcher Incident IDs
20080604-HR_Block.pdfMaine Attorney Generald2d <a href='/incidents/show/1492'>1492</a>
RecordsFile DateUploadedUpdated
Not yet entered 2008-06-04 2009-01-12 03 Aug 23:24
Excerpt
1017

0 0 H&R BLOCK" tax, accounting and financial services Office of the Maine Attomeey General Attorney General Stesven Rowe 6 State House Station » Augusta, ME 04333 }une 4, ZODB Dear Attorney Gene...

Click here for the Full Details | Download Raw PDF

COMMENTS

New Comment

captcha
Are you human?

Sponsored By: Credant_200x51 Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.