DocuSign Envelops API hijacked to send out fake invoices




  • Hackers found abusing DocuSign to send phishing emails
  • The signed documents are used to request payment
  • DocuSign says it has implemented additional safeguards

Cybercriminals are abusing DocuSign’s Envelopes API to trick businesses into signing fake invoices, which are later used to steal money from the victims.

DocuSign is an esign software platform that businesses can use to sign, send, and manage documents digitally – with “send” here being the keyword.

https://cdn.mos.cms.futurecdn.net/MUAHVBCBpxuF4TnTf3qRYi-1200-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img