Michael Cooney
Senior Editor

IRS security still poor

Opinion
Mar 17, 20051 min

There’s good news and bad news with this story.

The bad: Treasury Department officials posed as IT staff and called 100 IRS employees to see how easy it would be to con them out of their login information. Out of the 100, 35 managers and employees were duped into divulging their username and changing their password to whatever the caller suggested.

The good: The last time the Treasury Department tried this test, 71 out of 100 gave up the goods.

So while the IRS is still a sieve, it’s apparently a much smaller one. According to the AP: “Within two days after the test, the IRS issued an e-mail alert about the hacking technique and instructed employees to notify security officials if they get such calls. The agency also included warnings into its mandatory security training.”

Via My Way News