May 16 / Admin

New Scam Alert: How Fraudsters Use DocuSign For Business Email Compromise

Abnormal reported: 

Sophisticated cybercriminals are leveraging the anonymity of the dark web to trade DocuSign templates, a disturbing trend that underscores the evolving nature of digital fraud.

First, cybercriminals buy stolen DocuSign logins on cybercrime forums and networks for as little as $10, gaining access to a company's account. Then, they carefully review all of the stored files, looking for contracts, vendor agreements, and upcoming payment information. This helps them figure out who to target and how to make their scams appear legitimate. In addition, they look for any information that could be used to blackmail the company.

Find the original article for example emails and for 5 ways to detect a DocuSign Phishing Email here.

Enroll in Training Sessions:  Last Thursday of Every Month is Training on Frauds and New Scam Alerts and How to Combat