Established 2026Sunday, 6 September 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageThreat Intel Desk
Threat Intel

Large Enterprises Targeted in Fake Merger & Acquisition Scams

The 'Phantom Deal' BEC campaign uses deep OSINT on target companies to fabricate convincing M&A scenarios, tricking midlevel employees into initiating large wire transfers — a social-engineering evolution beyond generic invoice fraud.

Summary written by editorial AI · Source link below

Filed by Dark Reading1 min readRead at source ↗

Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.

Editorial Analysis

Framed for the CISO & Security Leaders desk

Why it matters

The 'Phantom Deal' campaign targets midlevel employees during M&A activity — a period of heightened trust and urgency that amplifies business-email-compromise risk.

What to do

Issue targeted awareness guidance to finance and M&A teams and require multi-party authorisation for all large transfers during deal activity.

Board brief

A sophisticated fraud campaign impersonates merger activity to trick employees into transferring large sums — deal teams need specific countermeasures.

Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.

Continue at the source
Read the full report at Dark Reading

External link — opens at Dark Reading in a new tab.

§
Continue with

More from the Threat Intel Desk