CNNMoney.com
Companies Economy International Corrections Pre-market Trading After-hours Trading Winners/Losers/Actives Bonds Currencies Commodities World Markets Money Magazine Real Estate Taxes Jobs Ask the Expert Money 101 Autos Mutual Funds The Help Desk Loan Center Best Places to Live Ask the Expert Ultimate Guide to Retirement Retirement Calculators Best Funds Ask the Mole Best Places to Retire Big Tech Blog Techland Blog Sectors and Stocks Fortune 500 Techs Tech Talk 100 Best Places to Launch Ultimate Resource Guide Small Biz Makeovers FSB 100 Ask & Answer Fortune 500 Technology Investing Management C-Suite Rankings Main Create Portfolio Edit Portfolio Create Alerts Edit Alerts
PARTNER
CENTER

Watchdog jittery about IRS computers

Watchdog says tax collectors haven't done enough to guard against unscrupulous employees, contractors and hackers.

EMAIL  |   PRINT  |   SHARE  |   RSS
 
google my aol my msn my yahoo! netvibes
Paste this link into your favorite RSS desktop reader
See all CNNMoney.com RSS FEEDS (close)

How much credit card debt do you currently have?
  • More than $10,000
  • $1,000 - $10,000
  • Less than $1000
  • None

WASHINGTON (CNN) -- As taxpayers rush to file tax returns, independent auditors are warning that the Internal Revenue Service has not done enough to safeguard some of its computer systems, leaving sensitive taxpayer information vulnerable to disgruntled IRS employees, contractors or hackers.

Unscrupulous people could "reconfigure [computer] routers and switches" and "steal taxpayer information in a number of ways, including diverting information to unauthorized systems," according to the Treasury Inspector General for Tax Administration (TIGTA) office, which serves a watchdog function over the IRS.

The IRS says it has addressed the concerns raised in the report.

At issue is the security of routers and switches, devices that determine the proper path for data to travel between computer networks, TIGTA said. Because the IRS sends sensitive taxpayer and government information across its networks, it must have security controls to deter and detect unauthorized users.

The report does not indicate whether any taxpayer information has ever been misdirected or stolen from IRS computers, but said that in more than 84% of the 5.2 million times employees accessed a system to administer and configure routers, they used "accounts" that were not properly authorized.

To ensure security, the IRS had authorized 374 accounts for employees and contractors to use to access routers and switches to perform system administration duties, the TIGTA said. Of those, authorization for 86 had expired at the time of TIGTA's review in 2007, and there was no record that 55 employee and contractor accounts had ever been authorized.

"We are particularly concerned that 27 of the 55 employees and contractors had accessed the routers and switches to change security configurations," wrote Michael R. Phillips, the deputy inspector general who wrote the report.

In addition, nine accounts were still active, even though the employees and contractors had not accessed the system for more than 90 days, the report says. The IRS should have automatically prevented users from accessing routers and switches after 90 days, it says.

The report does not say whether anyone wrongly obtained taxpayer information or if taxpayer information was misused, but says it is continuing to review security to see whether changes made to the computer system were appropriate or warranted.

In a written response accompanying the report, the IRS said it has made some changes and is continuing to improve the control and monitoring of controls and switches. All 369 users now have current and valid authorizations on file, the IRS said.

-- from CNN Producer Mike M. Ahlers  To top of page

Features
  • credit_cards.04.jpg
    All credit cards are not created equal. From 7.2% to cash back, 6 great deals. More
  • chart_stimulus_pie.04.gif
    With the stimulus underway and unemployment rising, economic leaders weigh in. More
  • ryan_connors.04.jpg
    Thanks to sinking home prices, these 5 homebuyers were able to score deals in prime areas. More
  • jaguar_xj_3.04.jpg
    A new top-of-the-line luxury sedan -- the finishing touch on a troubled brand's make-over. More
  • n_ss_gm_ceo_full.cnnmoney.160x90.jpg
    CEO Fritz Henderson says GM will focus on customer needs and making first-rate cars. Play
  • ford_battery_electric_vehicle.04.jpg
    Nissan, GM and Ford are placing their bets in the high-stakes game of electric driving. More
  • obama_official_portrait.04.jpg
    Not even ultra-dapper President Obama could help Hartmarx, the Chicago-
    based clothing maker. More
 
Markets Last Change
Dow Jones 8,146.52 -36.65 / -0.45%
Nasdaq 1,756.03 3.48 / 0.20%
S&P 500 879.13 -3.55 / -0.40%
10-year Bond 98 16/32 Yield: 3.30%
U.S.Dollar 1 euro = $1.394 -0.009
July 10, 2009 4:03 PM ET
CompanyPrice% Change
General Motors Corp 1.16 37.99%
American Intl Group Inc 11.80 24.47%
CIT Group Inc 1.55 -16.66%
YRC Worldwide Inc 1.31 -12.08%
Jul 10 3:56pm ET †
The 10 dumbest iPhone apps The iPhone App Store launched a year ago with 500 applications. Today it has more than 55,000. Some are useful - many are plain stupid. With help from Krapps.com's Alex Miro, we've picked out some of the dumbest. More
New GM's new cars GM is launching a slate of new products. Can they give a lift to the auto giant as it enters a new era? More
Barbie gets a makeover As Barbie celebrates her 50th anniversary, middle age may be her time to shine (again). More


© 2009 Cable News Network. A Time Warner Company. All Rights Reserved. Terms under which this service is provided to you. Privacy Policy
Copyright © 2009 BigCharts.com Inc. All rights reserved. Please see our Terms of Use.
MarketWatch, the MarketWatch logo, and BigCharts are registered trademarks of MarketWatch, Inc.
Intraday data provided by Interactive Data Real-Time Services and subject to the Terms of Use.
Intraday data is at least 20-minutes delayed. All times are ET.
Historical, current end-of-day data, and splits data provided by Interactive Data Pricing and Reference Data.
Fundamental data provided by Morningstar, Inc..
SEC Filings data provided by Edgar Online Inc..
Earnings data provided by FactSet CallStreet, LLC.