© Copyright Acquisition International 2025 - All Rights Reserved.

Article Image - HMRC under fire for 11 ‘serious’ personal data breaches affecting over 20,000 people
Posted 9th December 2020

HMRC under fire for 11 ‘serious’ personal data breaches affecting over 20,000 people

Law firm accuses taxman of ‘breath-taking incompetence’ over catalogue of data loss incidents affecting tens of thousands of members of the public.

Mouse Scroll AnimationScroll to keep reading

Let us help promote your business to a wider following.

HMRC under fire for 11 ‘serious’ personal data breaches affecting over 20,000 people
data breach

HM Revenue and Customs (HMRC) has reported 11 ‘serious’ personal data incidents to the Information Commissioner’s Office (ICO) in the most recent financial year, according to official figures.

The incidents, disclosed in HMRC’s newly published annual report, are estimated to have affected 23,173 people in total and have been analysed by litigation practice Griffin Law.

The most widespread and serious personal data incident recorded in the report happened in May this year at the height of lockdown, when National Insurance number letters relating to 16-year-old children were sent out with incorrect details, impacting up to 18,864 members of the public.

However, the most severe incident occurred in February 2020, when a fraudulent attack resulted in 64 employees’ details being obtained from three PAYE schemes. Name, contact details and ID data, such as passwords and usernames, were leaked, and an estimated 573 people are said to have been impacted as a result.

According to the report, which was released on the 5th of November, the affected customers had not yet been contacted, but the incident is still under investigation.

Other data incidents documented by HMRC in their annual report include a cyber attack against an agent and their client data, affecting 25 people; an incorrectly accessed tax payer record, and resulting refund to the taxpayer’s mother; leak of addresses and property details due to usage of the incorrect Excel spreadsheet, and, leak of medical documents, private correspondence and company data due to paperwork being left on a train.

A further 3,616 ‘centrally managed’ security incidents were also recorded; however specific details of these incidents were not revealed.

HMRC stated the following in the report: “We deal with millions of customers every year and tens of millions of paper and electronic interactions. We take the issue of data security extremely seriously and continually look to improve the security of customer information. We investigate and analyse all security incidents to understand and reduce security and information risk. We actively learn and act on our incidents. For example, by making changes to business processes relating to post moving throughout HMRC and undertaking assurance work with third party service providers to ensure that agreed processes are being carried out.”

 

Cyber security expert Tim Sadler, CEO, Tessian commented:

“Human error is the leading cause of data breaches today. And given that people are in control of more data than ever before, it’s also not that surprising that security incidents caused by human error are rising. 

“That’s not to say, though, that people are the weakest link when it comes to data security. Mistakes happen – it’s human nature – but sometimes these mistakes can expose data and cause significant reputational and financial damage. It’s an organisation’s responsibility, then, to ensure that solutions are put in place to prevent mistakes that compromise cybersecurity from happening – alerting people to their errors before they do something they regret.” 

 

Donal Blaney, principle, Griffin Law added:

“Taxpayers have a right to expect their sensitive personal data to kept secure by the taxman. The Information Commissioner should immediately investigate HMRC for these breaches and hold the taxman to account for this breathtakingly incompetence”.

Categories: Legal


You Might Also Like
Read Full PostRead - Eye Icon
A Guide To Keeping Your Business Compliant
Innovation
15/11/2019A Guide To Keeping Your Business Compliant

It is important to be compliant more than ever today in a time where data protection and cy-bersecurity are enormous topics that all business owners need to be wary of. Fortunately, it can be relatively straightforward to make sure that your business is compli

Read Full PostRead - Eye Icon
The IT Industry In The US And How It Offers Considerable Growth And Opportunities
News
24/03/2020The IT Industry In The US And How It Offers Considerable Growth And Opportunities

With more and more businesses now looking for new opportunities to expand and grow their business, it may be that some will look to expand their business in new countries and the US presents one of the best opportunities for growth in the IT industry. Accordin

Read Full PostRead - Eye Icon
8 Critical Components of a Good Human Resources Strategy
News
16/02/20238 Critical Components of a Good Human Resources Strategy

Businesses often invest a lot of time and resources into the sales and marketing teams, while ignoring the value of the human resources department. Without them, the rest of the company would be ineffective in their roles. Human resources teams are more import

Read Full PostRead - Eye Icon
Working From Home Can Slash Payback Periods for EV Drivers
Finance
10/11/2022Working From Home Can Slash Payback Periods for EV Drivers

According to insight from the Office for National Statistics (ONS), more than 38% of the UK workforce now enjoy either a part-hybrid or totally remote role. While sceptics have suggested that this trend will begin to fall in-line with retreating COVID-19 cases

Read Full PostRead - Eye Icon
How the Promotional Merchandise Sector Has – and Can Continue – to Thrive Amidst Digital Change
Innovation
19/11/2024How the Promotional Merchandise Sector Has – and Can Continue – to Thrive Amidst Digital Change

Despite the dominance and success of digital marketing channels, promotional merchandise remains a highly effective tool in building brand awareness.

Read Full PostRead - Eye Icon
Ones to Watch for 2016: The Best Boutique Law Firms
Legal
01/07/2016Ones to Watch for 2016: The Best Boutique Law Firms

Enyo Law LLP is a law firm that acts exclusively in complex and high-value disputes whether litigation or arbitration.

Read Full PostRead - Eye Icon
Do it yourself: How self-service checkouts are saving companies cash
Innovation
01/02/2019Do it yourself: How self-service checkouts are saving companies cash

Advancements in technology have had an effect on the way we do our shopping on the high street, as we constantly look to find ways of making the experience as smooth as possible. With no sign of developments slowing down in the world of retail — we investiga

Read Full PostRead - Eye Icon
A guide to successful internal auditing
Innovation
05/09/2019A guide to successful internal auditing

Whatever your industry, seeking out continuous improvement is vital to your business’ success. One of the most effective ways to do this is to appoint an internal auditor within your staff, or to hire a third-party auditor. Auditing allows for a fresh perspe

Read Full PostRead - Eye Icon
Driving Force
News
16/04/2021Driving Force

Helping organizations to reduce collisions, injuries, license violations and total cost of fleet ownership through a patented driver risk management program, eDrivingSM is a clear market leader in its field. As the global enterprise celebrates twenty-five year



Our Trusted Brands

Acquisition International is a flagship brand of AI Global Media. AI Global Media is a B2B enterprise and are committed to creating engaging content allowing businesses to market their services to a larger global audience. We have 14 unique brands, each of which serves a specific industry or region. Each brand covers the latest news in its sector and publishes a digital magazine and newsletter which is read by a global audience.

Arrow