IRS Warns Tax Pros about New Phishing Scheme


document.createElement(‘aside’);



Accounting Today News

http://www.accountingtoday.com

Print

Email

Reprints



The Internal Revenue Service is sounding the alarm about a new scheme in which scammers send emails purporting to come from tax software companies, instead fooling tax preparers into clicking on a link that will load malware on their computers.

The email urges recipients to click on a link to download an important new software update and install it. The executable file has the same name as the legitimate tax software, but instead of providing an update, the link instead downloads a program that will track the tax preparer’s keystrokes, allowing criminals to steal passwords, logins and other sensitive information.

The IRS has seen only a handful of cases of the scam so far, but it is encouraging tax professionals to beware of such scams and never to click on unexpected links in emails. Similar email schemes using tax software names have targeted individual taxpayers, the IRS noted.

The IRS recently began a public awareness campaign to alert tax professionals about security threats and identity theft issues targeting the tax industry. The Protect Your Clients; Protect Yourself campaign urges tax professionals to beef up their security protections and realize they increasingly are targets of cybercriminals.

The IRS is asking all tax preparers to avoid clicking on links or open attachments in e-mails. Instead they should use a software provider’s main website to connect to them. Tax pros should also run a security “deep scan” to search for viruses and malware on their computers.

They should strengthen their passwords for both computer access and software access. Passwords should be at least eight digits long (although more is better) with a mix of numbers, letters and special characters.

Tax practitioners should instruct their staff members about the dangers of phishing scams, which can come in the form of emails, texts and calls. They should also review any software that employees use to remotely access the firm’s network or the firm’s IT support vendor uses to remotely troubleshoot technical problems and support the business’s systems. Remote access software is a potential target for hackers to take control of a computer.

Tax professionals should also check Publication 4557, Safeguarding Taxpayer Data, A Guide for Your Business, which includes a checklist to help protect taxpayer information and improve security.

Be the first to comment on this post using the section below.

‘);
var $text = $(”).text(text);
var $meta = $(”);

var $newComment = $comment.append($text).append($meta);
if ($(‘.no-comments’).length) {
$(‘.no-comments’).after($(”).append($newComment));
$(‘.no-comments’).remove();
} else {
$(‘#comments-box .comment’).last().after($newComment);
}

$(‘.comments-count’).each(function(){
$(this).text(+$(this).text()+1);
});
}

function ajaxBusyTest() {
buttonOff();
setTimeout(buttonOn, 3000);
}

var commentOptions = {
client_id: ‘webcpa_news’,
story_id: ‘78923’,
user_id: ‘2680135’,
comment_message: ” // textarea or NOCOMMENT
};

function postComment(options, callback, doButtonOff) {
callback = callback || function(){};
doButtonOff = typeof doButtonOff === ‘undefined’ ? true : doButtonOff;

var opts = $.extend(true, {}, commentOptions);
$.extend(true, opts, options);

if (doButtonOff) buttonOff();

$.ajax({
type:”POST”,
url: ‘/apps/custom/ajax_post_comment.php’,
data: opts,
success: function(data) {
callback($.parseJSON(data));
if (doButtonOff) buttonOn();
}
});
};

function showNotification(message) {
$.fancybox(message+’

Return to article.’);
};

$.fn.extend({
charWarden: function (outSelector, limit) {
return this.each(function(){
var $this = $(this);
var $out = $(outSelector);
var _limit = limit;
var _chars = 0;
function handler(e) {
_chars = e.target.value.length;
var left = _limit – _chars;
if (left = (page-1)*listCount i 3 (page (pageCount -2)) {
showMin = pageCount – 4;
if (showMin ‘;
if (page 1) {text += ‘

  • «
  • ‹
  • ‘;}
    while (count ‘ + count + ”;
    if (showMax != count) {
    text += ‘ | ‘;
    }
    text += ”;
    count++;
    }
    if (page ›

  • »
  • ‘;}
    text += ”;
    $(pagination).html(text);
    }
    function scrollToTop(){
    $(‘html, body’).animate({
    scrollTop: parseInt($(“#comments”).offset().top)
    }, 700);
    }
    showPage(page);
    if (pageCount 1){
    buildPagination(page,pageCount);
    $(pagination+” li.arrow_double_right a”).live(‘click’,function(){
    page = pageCount;
    showPage(page);
    buildPagination(page,pageCount);
    scrollToTop();
    });
    $(pagination+” li.arrow_right a”).live(‘click’,function(){
    showPage(++page);
    buildPagination(page,pageCount);
    scrollToTop();
    });
    $(pagination+” li.numbers a”).live(‘click’,function(){
    page = $(this).data(‘number’);
    //console.log(“pageCount: “+pageCount+” page: “+page);
    showPage(page);
    buildPagination(page,pageCount);
    scrollToTop();
    });
    $(pagination+” li.arrow_left a”).live(‘click’,function(){
    showPage(–page);
    buildPagination(page,pageCount);
    scrollToTop();
    });
    $(pagination+” li.arrow_double_left a”).live(‘click’,function(){
    page = 1;
    showPage(page);
    buildPagination(page,pageCount);
    scrollToTop();
    });
    }
    }

    $(function(){ // DOM ready
    paginateComments();
    $(‘.scroll-into-view’).each(function(i){if (i == 0) this.scrollIntoView();});

    $(‘.reset-form’).click(function(e){
    e.preventDefault();
    this.form.reset();
    });

    $(‘#comment_message’).charWarden(‘#chars-remaining’, 4096);

    $(‘.comment-notify’).click(function(e) {
    e.preventDefault();
    var options = {
    comment_notify: ‘TRUE’,
    comment_message: ‘NOCOMMENT’
    };
    var notification = function(data) {
    if (data.success) {
    $(‘.not-following’).hide();
    $(‘.following’).show();
    showNotification(data.success);
    } else if (data.error) {
    showNotification(data.error);
    }
    };
    postComment(options, notification);
    });

    $(‘#wrapperForm’).on(‘submit’, function(e) {
    e.preventDefault();
    var options = {
    comment_notify: $(‘#comment_notify’).prop(‘checked’) ? ‘TRUE’ : ”,
    comment_message: $(‘#comment_message’).val()
    };
    var notification = function(data) {
    if (data.success) {
    if ($(‘#comment_notify:checked’).length) {
    $(‘.not-following’).hide();
    $(‘.following’).show();
    }
    document.wrapperForm.reset();
    addPostOptimistically(options.comment_message);
    $(‘#comment_message’).change();
    } else if (data.error) {
    showNotification(data.error);
    }
    };
    postComment(options, notification);
    });

    $(‘a.username’).fancybox({
    ‘hideOnOverlayClick’: false,
    ‘centerOnScroll’ : true,
    ‘autoScale’ : false,
    ‘autoDimensions’ : false,
    ‘width’: 435,
    ‘height’: 205,
    ‘onClosed’: function() {
    if ($(‘#do-refresh’).length) location.reload();
    }
    });
    }); // end DOM ready
    })(jQuery);