Established 2026Sunday, 6 September 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageThreat Intel Desk
Threat Intel

Large Enterprises Targeted in Fake Merger & Acquisition Scams

The 'Phantom Deal' BEC campaign uses deep OSINT on target companies to fabricate convincing M&A scenarios, tricking midlevel employees into initiating large wire transfers — a social-engineering evolution beyond generic invoice fraud.

Summary written by editorial AI · Source link below

Filed by Dark Reading1 min readRead at source ↗

Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.

Editorial Analysis

Why it matters

European enterprises engaged in frequent M&A activity face elevated BEC risk as attackers invest in company-specific pretexting that bypasses generic phishing awareness.

What to do

Mandate out-of-band verification for all financial transfers above a defined threshold during M&A processes and brief deal teams on the Phantom Deal TTPs.

Board brief

A sophisticated fraud campaign impersonates merger activity to trick employees into transferring large sums — deal teams need specific countermeasures.

Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.

Continue at the source
Read the full report at Dark Reading

External link — opens at Dark Reading in a new tab.

§
Continue with

More from the Threat Intel Desk