© Copyright Acquisition International 2026 - All Rights Reserved.

Article Image - Cyber Criminals Target M&A  Negotiations
Posted 22nd June 2015

Cyber Criminals Target M&A Negotiations

We hear from Stuart Poole-Robb, Chief Executive of the security, business intelligence and cyber security adviser, the KCS Group Europe.

Mouse Scroll AnimationScroll to keep reading

Let us help promote your business to a wider following.

Cyber Criminals Target M&A Negotiations
Image

Cyber Criminals Target M&A Negotiations

We hear from Stuart Poole-Robb, Chief Executive of the security, business intelligence and cyber security adviser, the KCS Group Europe.

Industry predictions that a growth in the number of merger and acquisitions (M&A) deals would attract the unwanted attention of international organised criminal gangs (OCGs) are proving correct.

Last year, Ernst & Young (now known as EY) predicted that, as M&A activity increases, there will be more scope for cyber criminals to use increasingly sophisticated malware of the kind that is available on the Dark Web to influence the negotiation strategies and pricing of major transactions, either working directly for a party on either side of the transaction or simply as observers taking positions based on the outcomes.

Large law firms are now being targeted by OCGs, particularly during M&A discussions, where the legal firm and the negotiating parties typically open their systems to each other whilst transmitting vast amounts of confidential data to one another over the Internet. Former low-level hackers have also become increasingly ambitious in the last 12 months as the internet’s mirror economy, the Dark Web, has become an increasingly sophisticated marketplace for stolen data.

“We’re all used to criminals stealing identities and credit card information to sell on the black market. But in recent years, as more and more of this information has flooded the market, the price earned per record has dropped to the level where it’s not worth stealing any more,” says Jamie Graves, chief executive of cyber security software developer ZoneFox, a partner of KCS Group Europe.

He adds: “As a result, criminals are targeting organisations with other, higher value, information. This can be seen in the recent spate of healthcare breaches, and it will also be a trend in the legal sector, where security is traditionally relaxed, but a great deal of very sensitive information can be stolen for the purpose of blackmail, fraud, and other activities.”

OCGs are also realising that sensitive information at a corporate level has a very real market value to many large corporates, who do not always to enquire too closely into how such market-sensitive data was originally obtained.

According to Graves: “Certain unscrupulous corporates have also realised that legal practices are honeypots for extremely sensitive information that can be used to inform them of commercial matters that, should they be disclosed, would have a significant effect on legal proceedings, a merger or acquisition, or other commercially sensitive activities.”

This kind of cyber breach is far harder to detect and prosecute than, for example, a cyber-breach that is followed directly by a fraudulent funds transfer. By appearing to conduct legitimate industry research for a major organisation involved in potential M&A negotiations, the OCG can seem to be involved in a legitimate business activity; this is a process known as ‘data laundering’. Should the OCG decide to profit from the illegally obtained information by insider market trading on its own account, the crime is hard to detect and even harder to prosecute, particularly in the case of criminals based in a country which may be on a different continent from the city where the cyber breach occurred.

Law firms are now seen as particularly vulnerable to this type of attack as large organisations in other sectors, such as finance, start to shore up their cyber defences.

“Legal firms need to wise up to the fact that threat-actors are going after valuable low-hanging fruit, and, since the banks have been investing a great deal in security, their practices are likely to be next,” says Jamie Graves.

Some legal firms are already not only improving their own IT security but are also realising that a crucial part of their role is helping clients deal with the growing security risk now associated with situations such as M&A negotiations.

According to Andrew Cheung, General Counsel UKMEA at global law firm Dentons: “The global risks that our clients need to tackle are increasing in complexity, variety, impact and number. To meet these increasingly complex risks, clients should be able to demand more than simply good legal advice from their lawyers. Dentons recognises that we also need to consider the success of our clients’ projects, goals and transactions as a whole.”

Many law firms, however, still live in a state of blissful ignorance as to the growing level of risk they and their clients face from cyber criminals. While the malware used by OCGs has become increasingly sophisticated over the past 12 months, the legal profession overall has not generally managed to keep pace.

The OCGs themselves now deploy malware variants that are routinely sold on the Dark Web, where all kinds of illegal services and goods are available – at a price. According to Russia-based research organisation Kaspersky Labs, cyber criminals are now developing over 300,000 new and unique variants of malware every day. In Russia alone, the market in this type of illicit malware is reported be worth around US$2 billion a year. OCGs are also taking increasing advantage of the fact that the Russian authorities are unwilling to prosecute anyone inside Russia for cyber breaches that occur elsewhere.

According to Interpol: “Traditional OCGs, including those with a mafia-style structure, are beginning to use the service-based nature of the cybercrime market to carry out more sophisticated crimes, buying access to the technical skills they require.” In some cases, even trained state cyber experts in some countries are being encouraged to moonlight, knowing full well they won’t be caught or prosecuted.

Too many legal firms still rely on old-fashioned anti-virus and password protection. This is essentially 20th Century security that stands little or no chance of stopping a determined and co-ordinated cyber attack using modern malware, which often sits undetected on an IT system for months or even years.

Law firms and their corporate clients therefore need to deploy cyber security software capable not only of recognising incoming threats, but also detecting whether an IT system has already been compromised and whether confidential and market- sensitive data is already being put up for sale on the Dark Web.

Categories: Innovation


You Might Also Like
Read Full PostRead - Eye Icon
Eight Practical Ways to Motivate Employees in Canada
Leadership
27/06/2023Eight Practical Ways to Motivate Employees in Canada

Motivating your employees is essential for fostering a positive work environment, boosting productivity, and increasing overall job satisfaction.

Read Full PostRead - Eye Icon
The Gold Standard of Art Investment: Understanding What Blue Chip Art Is?
News
29/08/2023The Gold Standard of Art Investment: Understanding What Blue Chip Art Is?

In the world of art investment, the term “blue chip art” is often used to refer to pieces that are considered exceptionally valuable and stable. Much like blue chip stocks in the financial market, blue chip art represents the gold standard of inves

Read Full PostRead - Eye Icon
Safety Considerations Your Fleet Company Cannot Afford to Overlook
News
19/07/2022Safety Considerations Your Fleet Company Cannot Afford to Overlook

Every type of business and job has some element of safety that needs to be a top priority. While there are safety considerations that are essentially universal, there are also many that are a great deal more specific. When you are the owner of a fleet company,

Read Full PostRead - Eye Icon
Expert Advice When You Need It
Finance
06/06/2017Expert Advice When You Need It

Leading Advisors of the Year - Property Investment Advisor of the Year – UK award winner Intercorp Group is a privately owned high-level consulting firm, which provides tax, estate planning and fiduciary structure solutions to high-net-worth families. To cel

Read Full PostRead - Eye Icon
How to Educate Remote Workforces About the Risks of WFH Scams
Leadership
20/05/2025How to Educate Remote Workforces About the Risks of WFH Scams

Although telework is generally beneficial, removing the face-to-face aspect from business-critical tasks has left some organizations vulnerable to work-from-home (WFH) scams. What are the latest schemes targeting remote workers, and what can employers do to he

Read Full PostRead - Eye Icon
B2M Solutions CRO Gary Lee’s 2020 Predictions for Enterprise Mobility
Innovation
03/12/2019B2M Solutions CRO Gary Lee’s 2020 Predictions for Enterprise Mobility

Almost every business across the globe is using mobile devices to optimise processes, streamline workflows and increase workforce productivity. But, as 5G becomes established and digital transformation earns commonplace, what is in store for enterprise mobilit

Read Full PostRead - Eye Icon
The Short-Term Rental Investor’s Dilemma: Hospitality Business or Real Estate Asset?
Strategy
25/05/2026The Short-Term Rental Investor’s Dilemma: Hospitality Business or Real Estate Asset?

Short-term rentals sit awkwardly in an investor’s portfolio. On paper, they are property assets: purchase price, debt, an address, and eventual resale value. In practice, their returns often depend on the habits of a hospitality business, from nightly pricin

Read Full PostRead - Eye Icon
ARX Equity Partners completes sale of Fincentrum to Swiss Life
Finance
25/10/2018ARX Equity Partners completes sale of Fincentrum to Swiss Life

Further to regulatory approval, ARX Equity Partners / https://www.arxequity.com (“ARX”) has successfully completed the exit of its investment in Fincentrum / https://www.fincentrum.com, a leading, independent financial advisory business operating in the Cz

Read Full PostRead - Eye Icon
Venture Capital Trust Association Appointed Chris Lewis as New Chair
Leadership
21/02/2024Venture Capital Trust Association Appointed Chris Lewis as New Chair

The Venture Capital Trust Association (VCTA), which campaigns for the vital role played by Venture Capital Trusts (VCTs) in supporting the UK’s entrepreneurial economy, has appointed Chris Lewis as Chair.



Our Trusted Brands

Acquisition International is a flagship brand of AI Global Media. AI Global Media is a B2B enterprise and are committed to creating engaging content allowing businesses to market their services to a larger global audience. We have a number of unique brands, each of which serves a specific industry or region. Each brand covers the latest news in its sector and publishes a digital magazine and newsletter which is read by a global audience.

Arrow