Headlines News :
Home » » 900 SINs stolen due to Heartbleed bug: Canada Revenue Agency

900 SINs stolen due to Heartbleed bug: Canada Revenue Agency

Written By Unknown on Monday, April 14, 2014 | 1:25 PM



TORONTO  – Roughly 900 Canadians have had their social insurance numbers stolen from the Canada Revenue Agency’s systems after the federal agency’s online services were hit by the so-called Heartbleed bug.

READ MORE: 
CRA online services back following Heartbleed scare“CRA has been notified by the Government of Canada’s lead security agencies of a malicious breach of taxpayer data that occurred over a six-hour period,”  Canada Revenue Agency (CRA) said in a statement. “Social insurance numbers (SIN) of approximately 900 taxpayers were removed from CRA systems by someone exploiting the Heartbleed vulnerability.”
The agency says that each person affected will receive a registered letter to inform them of the breach and free access to credit protection services. A dedicated 1-800 number has also been set up to provide further information, including what steps to take to protect the integrity of your SIN. The agency says it will not be calling or emailing individuals to inform them that they have been impacted as they want to ensure that  “communications are secure and cannot be exploited by fraudsters through phishing schemes.”
The CRA moved to block public access to its services to address the risk but says there was still a six-hour data breach.
On Saturday, the federal tax agency said its online tax-filing systems are back up and running and that its online filing systems are safe again.
The deadline for filing 2013 tax returns is being extended from April 30th to May 5th.
What is the Heartbleed bug?
The Heartbleed bug is caused by a flaw in OpenSSL software, which is commonly used on the Internet to provide security and privacy. It affects the encryption technology designed to protect online accounts for email, instant messaging and e-commerce.
READ MORE: What is the Heartbleed bug and why is it a big deal?
It was discovered by a team of researchers from the Finnish security firm Codenomicon, along with a Google Inc. researcher who was working separately.
In order to protect yourself, users are asked to  change their online passwords once the sites they are using have adopted a fix. It’s also up to the Internet services affected by the bug to let users know of the potential risks and encourage them to change their passwords. Not sure which sites are affected and what passwords you need to change? 
Share this post :

Post a Comment

 
Support : VoidCircle | MoviezCine | Join Us
Copyright © 2011. VoidCircle - All Rights Reserved
Template Created by VoidCircle Published by VoidCircle
Proudly powered by Blogger