27-04-2018

HMRC has published guidance about how to report a potential security issue in an HMRC online service and what information to provide.

The guidance highlights the seriousness with which HMRC takes the security of its online systems and states that it will investigate all reported vulnerabilities and take action where necessary.

Users of its services are asked to report any potential security issue as soon as possible and to avoid doing anything to exploit the vulnerability.

To help HMRC understand the nature and scope of the issue, if possible those reporting a problem should include the following information:

• the type of issue• the location of the bug or the relevant URL• a proof-of-concept or exploit code• the impact of the issue, including how an attacker could exploit it

To report a potential vulnerability, email vulnerability.reporting@hmrc.gsi.gov.uk.


"I've booked the HR and Payroll Update course most years and during roles with at least 3 different employers. One thing remains the same; a course that is relevant, well delivered and enjoyable and that is key when trying to retain the many pieces of legislation changes to which payroll professionals are exposed."

Tracy Hinton
HR & Payroll Manager at Stemcor

View on Linkedin

Have a question?

Leave us your details or call us on 01798 861111

Ensure you're up to date and compliant

Are you happy for us to email you from time to time with payroll related information, legislation and updates?

Yes please, keep me up to date