Sign here… and install an unwanted RMM

Reported 10 Jul 2026 by otx · Severity: medium

A sophisticated phishing campaign impersonates DocuSign's branding to compromise victims through malicious JavaScript embedded in fraudulent webpages. The attack leverages social engineering to trick users into downloading MSI installers disguised as legitimate DocuSign updates o