Skip to main content

Featured

You Could Be Owed Up to $5,000: The CRA Data Breach Settlement, Explained

  August 21, 2026 If you had a Government of Canada online account back in 2020, it's worth five minutes to check whether you're eligible for a payout. Claims are now open in an $8.7-million federal settlement tied to a wave of 2020 cyberattacks on Canada Revenue Agency and other Government of Canada accounts. If your CRA My Account, My Service Canada Account, or another GCKey-linked account was compromised, you may be entitled to compensation — in some cases, up to $5,000. Here's what happened, who qualifies, and exactly how to file before the deadline. What happened Between June and August 2020, hackers used "credential stuffing" — testing stolen usernames and passwords from other data leaks against government login pages — to break into thousands of Government of Canada online accounts. In some cases, attackers viewed confidential personal and financial information; in others, they used stolen access to file fraudulent claims for pandemic-era benefits like CERB...

article

How Deloitte's audit work was backdated and why CPA Ontario fined them $1.59-million

 


Deloitte is one of the Big Four accounting firms that provide audit, tax, consulting and financial advisory services to clients worldwide. As a professional service provider, Deloitte is expected to adhere to high standards of quality, ethics and integrity in its work. However, in a recent disciplinary case, Deloitte admitted that it had violated several rules and regulations of the Chartered Professional Accountants of Ontario (CPA Ontario), the regulatory body that oversees the accounting profession in the province.

According to CPA Ontario, Deloitte and some of its partners and staff engaged in improper conduct in relation to the audits of two public companies, identified as Company A and Company B, for the fiscal years 2014 to 2016. The improper conduct included backdating audit workpapers, altering or deleting audit evidence, failing to obtain sufficient and appropriate audit evidence, failing to exercise professional skepticism and due care, and failing to comply with the Canadian Auditing Standards.

CPA Ontario also found that Deloitte failed to report the improper conduct to the regulator, as required by the bylaws, and failed to cooperate fully with the regulator's investigation. Deloitte also failed to implement adequate quality control policies and procedures to prevent or detect such improper conduct.

As a result of these findings, CPA Ontario imposed a total of $1.59-million in penalties on Deloitte and its partners and staff involved in the case. The penalties included fines, costs, reprimands, suspensions and restrictions on practice. Deloitte agreed to pay the penalties and admitted to the facts and liability in a settlement agreement with CPA Ontario.

The disciplinary case is a serious blow to Deloitte's reputation and credibility as an auditor. It also raises questions about the quality and reliability of the audits performed by Deloitte for other clients. The case also highlights the importance of having effective oversight and enforcement mechanisms for the accounting profession, to protect the public interest and maintain trust in the financial reporting system.


Comments