logo

PayPal scam abuses Docusign API to spread phishy emails

ID: ac2d01f6-fcc4-5c59-9b95-24e72e290199

STIX ID: report--ac2d01f6-fcc4-5c59-9b95-24e72e290199

Feed Name: Malwarebytes Blog

Threat Score
45/100

Date Published: 2025-03-04

Date Updated: 2026-04-28

...
...

**Executive Summary:** This report details a PayPal-themed phishing campaign in which attackers create DocuSign accounts and use official-looking templates and the DocuSign API to deliver fraudulent invoices that appear legitimate and can bypass email security; the article highlights indicators, detection tips, and steps for reporting and remediation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.