This website collects cookies to deliver better user experience. Cookie Policy
Accept
Sign In
The Wall Street Publication
  • Home
  • Trending
  • U.S
  • World
  • Politics
  • Business
    • Business
    • Economy
    • Real Estate
    • Markets
    • Personal Finance
  • Tech
  • Lifestyle
    • Lifestyle
    • Style
    • Arts
  • Health
  • Sports
  • Entertainment
Reading: Ransomware Attackers Begin to Eye Midmarket Acquisition Targets
Share
The Wall Street PublicationThe Wall Street Publication
Font ResizerAa
Search
  • Home
  • Trending
  • U.S
  • World
  • Politics
  • Business
    • Business
    • Economy
    • Real Estate
    • Markets
    • Personal Finance
  • Tech
  • Lifestyle
    • Lifestyle
    • Style
    • Arts
  • Health
  • Sports
  • Entertainment
Have an existing account? Sign In
Follow US
© 2024 The Wall Street Publication. All Rights Reserved.
The Wall Street Publication > Blog > Tech > Ransomware Attackers Begin to Eye Midmarket Acquisition Targets
Tech

Ransomware Attackers Begin to Eye Midmarket Acquisition Targets

Editorial Board Published March 1, 2022
Share
Ransomware Attackers Begin to Eye Midmarket Acquisition Targets
SHARE

About two months after it was bought in the fourth quarter of 2021 by a private-equity firm, a midsize manufacturer had to pay a ransomware group that had locked up its hardware systems.

Contents
Newsletter Sign-upWSJ | Risk and Compliance Journal

It cost the company about $1.2 million to have its systems released, paid to a group suspected of links to the Russian ransomware group REvil, said Richard Peters, a cybersecurity expert at consulting firm UHY LLP. He couldn’t name the company, a client, for confidentiality reasons.

The attack fit an increasingly familiar pattern, as ransomware groups are turning their attention to midmarket acquisition targets, presenting a risk for private equity, venture capital and other deal makers that often invest in such businesses.

“Because of the M&A and because of the publicity around that, it became a better target,” Mr. Peters said. “They’re watching. They know what’s going on in the news as well as any businessman out there.”

While hacks involving large, deep-pocketed targets draw the most public attention, ransomware groups are targeting midsize companies that have, or are about to have, a deep-pocketed owner like a private-equity firm. A newly acquired company typically has access to more ready cash, tends to have less robust cybersecurity, and may offer a backdoor into the acquirer’s systems, Mr. Peters said.

With ransomware attacks surging in recent years, U.S., British and Australian authorities have noticed a shift toward smaller targets over the past year.


Newsletter Sign-up

WSJ | Risk and Compliance Journal

Our Morning Risk Report features insights and news on governance, risk and compliance.


After a spate of strikes against so-called “big game” targets such as the 2021 attack on Colonial Pipeline Co., ransomware groups started striking smaller targets, according to a report published in February by the Federal Bureau of Investigation, other U.S. agencies and counterparts in Australia and the U.K.

Midsize companies are a minority of all companies attacked, but their average payout exceeds $1 million, according to a February report by Coveware Inc., a ransomware responder group. Ransomware attackers see them as a stable source of payments without the geopolitical risk that comes with hitting up a major company, Coveware said, citing an interview with a hacker.

Deal targets in particular are “low-hanging fruit,” said Jeremy Swan, a managing principal at advisory firm CohnReznick LLP who works with private-equity managers.

“We’ve started looking at the data, and have definitely seen a correlation between attacks and deal announcements,” Mr. Swan said. “And then attacks concentrated around a portfolio.”

“It’s really been across the board: manufacturing businesses, healthcare businesses, technology businesses, consumer-oriented businesses,” Mr. Swan added.

Ransomware attacks are increasing in frequency, victim losses are skyrocketing, and hackers are shifting their targets. WSJ’s Dustin Volz explains why these attacks are on the rise and what the U.S. can do to fight them. Photo illustration: Laura Kammermann

For private-equity firms that put cybersecurity on the back burner, the effect of a ransomware attack on a portfolio company can be potentially ruinous. If one portfolio company has weak security, attackers might systematically move through a firm’s entire roster, Mr. Swan said.

Ransomware groups have also started targeting the mergers and acquisitions departments of law firms, possibly searching for intelligence, UHY’s Mr. Peters said.

The growing number of attacks linked to private-markets acquisitions are making cybersecurity a far more routine due-diligence consideration, Mr. Peters said. Though cybersecurity considerations tend not to derail deals outright, weak cybersecurity in an acquisition target often leads acquirers to seek remedial measures, he said.

Some investors now are pushing for better cybersecurity practices across their portfolios.

“This housekeeping from a cybersecurity perspective needs to be done—before you’re on the radar, before you announce a large round of capital—because at that point in time, you will become a target,” said Ruth Foxe Blader, a partner at the venture-capital firm Anthemis Group. “We see this emerging risk as something that all companies are going to have to become much more aggressive about.”

Write to Richard Vanderford at richard.vanderford@wsj.com

Copyright ©2022 Dow Jones & Company, Inc. All Rights Reserved. 87990cbe856818d5eddac44c7b1cdeb8

TAGGED:Tech NewsWall Street Publication
Share This Article
Twitter Email Copy Link Print
Previous Article Toshiba Replaces CEO Again but Sticks With Two-Way-Split Plan Toshiba Replaces CEO Again but Sticks With Two-Way-Split Plan
Next Article Scientific Games to Change Name to Light & Wonder Scientific Games to Change Name to Light & Wonder

Editor's Pick

Heidi Montag Explains Carrying That Terrible Wig to the AMAs

Heidi Montag Explains Carrying That Terrible Wig to the AMAs

Studying Time: 2 minutes Heidi Montag has some explaining to do. On the 2025 American Music Awards, there have been…

By Editorial Board 3 Min Read
The Landscape of International Trade in 2025: Constant Evolution and Strategic Shifts
The Landscape of International Trade in 2025: Constant Evolution and Strategic Shifts

The international trade landscape is in constant flux, and the year 2025…

3 Min Read
Finding Voice Through Silence: The Story of OR GOLAN
Finding Voice Through Silence: The Story of OR GOLAN

In a world where expression is often taken for granted, finding one’s…

6 Min Read

Oponion

Trump and Musk unleash their chaotic storm on authorities climate company

Trump and Musk unleash their chaotic storm on authorities climate company

After illegally axing USAID and drafting plans to do the…

February 5, 2025

Jordon Hudson, 24, Joins Invoice Belichick, 72, at NFL Honors Ceremony

Studying Time: 3 minutes Invoice Belichick…

February 7, 2025

Residence Depot to pay almost $2M penalty for allegedly overcharging prospects

Try what's clicking on FoxBusiness.com. Residence…

September 16, 2024

Padilla says he’s a ‘no’ on Laken Riley Act ‘as at the moment written’

Sen. Alex Padilla (D-Calif.) mentioned Sunday…

January 13, 2025

Wall Avenue has a hilarious new means of mocking ‘rooster’ Trump

President Donald Trump’s serial behavior of…

May 28, 2025

You Might Also Like

TLI Ranked Highest-Rated 3PL on Google Reviews
TechTrending

TLI Ranked Highest-Rated 3PL on Google Reviews

EXTON, PA — Translogistics, Inc. (TLI), a trailblazer in the 3PL and managed logistics space since its founding in 1994,…

12 Min Read
The Finest LED Face Masks and Pink-Gentle Remedy for At-Dwelling Therapies
Tech

The Finest LED Face Masks and Pink-Gentle Remedy for At-Dwelling Therapies

Finest Cooling LED Face Masks{Photograph}: SHARKShark CryoGlow Pink Blue & Infrared iQLED Face Masks & Underneath Eye CoolingThe Shark CryoGlow…

4 Min Read
Which Google Pixel Telephone Ought to You Purchase?
Tech

Which Google Pixel Telephone Ought to You Purchase?

Google Pixel telephones are our favourite Android telephones right here at WIRED and have been for a number of years.…

6 Min Read
The Finest Cat Toys for Your Furry Buddy
Tech

The Finest Cat Toys for Your Furry Buddy

Cats are stunning, attention-grabbing, bizarre creatures. They're additionally very choosy. Discovering toys that they're going to truly play with is…

16 Min Read
The Wall Street Publication

About Us

The Wall Street Publication, a distinguished part of the Enspirers News Group, stands as a beacon of excellence in journalism. Committed to delivering unfiltered global news, we pride ourselves on our trusted coverage of Politics, Business, Technology, and more.

Company

  • About Us
  • Newsroom Policies & Standards
  • Diversity & Inclusion
  • Careers
  • Media & Community Relations
  • WP Creative Group
  • Accessibility Statement

Contact

  • Contact Us
  • Contact Customer Care
  • Advertise
  • Licensing & Syndication
  • Request a Correction
  • Contact the Newsroom
  • Send a News Tip
  • Report a Vulnerability

Term of Use

  • Digital Products Terms of Sale
  • Terms of Service
  • Privacy Policy
  • Cookie Settings
  • Submissions & Discussion Policy
  • RSS Terms of Service
  • Ad Choices

© 2024 The Wall Street Publication. All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?