Skip to main content
Conversation Starter
May 7, 2024
Solved

Phishing Emails from Docusign.net Domain

  • May 7, 2024
  • 20 replies
  • 87447 views

I'm suddenly getting 3-5 phishing emails a week from the docusign.net domain and none of the standard reporting email addresses like abuse@ or admin@ work. They reject my email, and I can’t find any reporting information on their FAQ page.  I guess I'm left with the choice of blocking the domain? Why do they make is difficult to contact support or report phishing? Keeping customers at arms length is bad practice. Edit:  Spam@docusign.com.  What a waste of my time finding that.  Edit 2:  Spam@… blocked my email as spam.  This is BS. Going to block the domain on the server.  

Best answer by nathaly.monge

Hello @cmac59 and @LarryAZ  ,

 

Welcome to the Docusign Community and thank you for posting your concerns!

 

I’m sorry to hear that you are getting these emails, I understand you are suspicious of them as they can be fraudulent emails.

 

We appreciate you making us aware of bad actors using the DocuSign product inappropriately. Our Security teams have created an Incident Reporting guide on our Trust site. We recommend you do not click on any links from emails that are looking suspicious.

 

Please click the link below for up-to-date information on how to let Security know about phishing or fraud attempts: https://www.docusign.com/trust/security/incident-reporting  


There is also the “Combating Phishing: A Proactive Approach” whitepaper available here: https://www.docusign.com/sites/default/files/docusign_combating_phishing_whitepaper.pdf

 

Let us know if you need further assistance with this.

Best regards,

Nathaly | Docusign Community Moderator
"Select as Best" below if you find the answer a valid solution to your issue!

20 replies

Newcomer
April 16, 2025

We just block everything from docusign.net.  Receiving like 5 a day for the past two months. It’s obvious they are being abused and they don’t seem to care. We’ve told all our vendors not to send us anything via docusign, it will be rejected at the gateway.

Community Moderator
April 25, 2025

Hello Team,
Thank you for alerting us to dishonest people abusing the Docusign product. Our security teams have produced an incident reporting guide on our Trust website.
For the most recent details on how to notify Security about phishing or fraud efforts, please follow the link below:
https://www.docusign.com/trust/security/incident-reporting
There is also the “Combating Phishing: A Proactive Approach” whitepaper available here: https://www.docusign.com/sites/default/files/docusign_combating_phishing_whitepaper.pdf
Feel free to let us know if you need any more help with this.

 

Best regards,

Jenny | Docusign Community Moderator

"Select as Best" below if you find the answer a valid solution to your issue.

Vinicius.Rodrigues
Docusign Employee
Docusign Employee
June 3, 2025

Hi!
We recently prepared a video and a community post with more information about email security. Please, check it out:

 

"Select as Best" below if you find my answer is a valid solution to your issue and mark it as resolved.
New Voice
June 18, 2025

Hello DocuSign Security Team,

Our organization has recently received phishing emails claiming to be from dse@docusign.net, which appear to spoof legitimate DocuSign communications. Upon investigation, we identified that the emails were sent from the malicious IP address 110.164.177.109, which is not associated with your official infrastructure.

The phishing messages attempt to lure recipients into clicking on suspicious links and may lead to credential theft or malware.

We wanted to bring this to your attention so you can take any appropriate action (e.g., domain/IP blocking, security bulletin, or legal escalation). Please let us know if you require headers or additional samples — we are happy to assist.

Thank you for your support and commitment to user safety.

Vinicius.Rodrigues
Docusign Employee
Docusign Employee
June 18, 2025

Hello DocuSign Security Team,

Our organization has recently received phishing emails claiming to be from dse@docusign.net, which appear to spoof legitimate DocuSign communications. Upon investigation, we identified that the emails were sent from the malicious IP address 110.164.177.109, which is not associated with your official infrastructure.

The phishing messages attempt to lure recipients into clicking on suspicious links and may lead to credential theft or malware.

We wanted to bring this to your attention so you can take any appropriate action (e.g., domain/IP blocking, security bulletin, or legal escalation). Please let us know if you require headers or additional samples — we are happy to assist.

Thank you for your support and commitment to user safety.

 

Hi ​@rodrigue rib !
First of all, thank you for collecting this information and for your efforts spent on it.


We kindly ask that you send this information through our correct spam report channels, ensuring that the security team is properly notified and takes action (if necessary). Please, check out Quick Reporting Guide to know how to proceed.

Thank you!

"Select as Best" below if you find my answer is a valid solution to your issue and mark it as resolved.
Newcomer
September 15, 2025

This issue is continuing and only escalating. DocuSign needs to disable direct send in their tenant, or fully mitigate this issue through other means, because this is a real threat and they are spoofing internal communications and business flows. To the extent that DocuSigns own guidance on receiving a questionable email is to check the site to see if the document is legit. Well, the fake document shows up on the site as legitimate, even though it is clearly not. This is a major issue and needs to be resolved before trust is completely broken with this company.

 

Also, I followed the steps listed above and the only way I saw to get to the “report abuse” link is to create a paid account. Is that true?

Vinicius.Rodrigues
Docusign Employee
Docusign Employee
September 15, 2025

This issue is continuing and only escalating. DocuSign needs to disable direct send in their tenant, or fully mitigate this issue through other means, because this is a real threat and they are spoofing internal communications and business flows. To the extent that DocuSigns own guidance on receiving a questionable email is to check the site to see if the document is legit. Well, the fake document shows up on the site as legitimate, even though it is clearly not. This is a major issue and needs to be resolved before trust is completely broken with this company.

 

Also, I followed the steps listed above and the only way I saw to get to the “report abuse” link is to create a paid account. Is that true?


Hi ​@sdean78 !
Unfortunately, a few people persist in using Docusign tools for unworthy purposes. Docusign frequently blocks and suspends accounts with improper use, and we take active and passive (when we receive reports from other users) actions.

As available on the Incident Reporting - Security Concerns (https://www.docusign.com/trust/security/incident-reporting) website, there are several ways to report phishing, such as forwarding the email to spam@docusign.com, using the report abuse option, or even directly through our i-Sight web portal (https://docusign.i-sight.com/portal). We kindly ask that you send us the information through one of these official methods so that the responsible team can analyze and take action if necessary.

"Select as Best" below if you find my answer is a valid solution to your issue and mark it as resolved.
Newcomer
October 20, 2025

Hello @cmac59 and @LarryAZ  ,

 

Welcome to the Docusign Community and thank you for posting your concerns!

 

I’m sorry to hear that you are getting these emails, I understand you are suspicious of them as they can be fraudulent emails.

 

We appreciate you making us aware of bad actors using the DocuSign product inappropriately. Our Security teams have created an Incident Reporting guide on our Trust site. We recommend you do not click on any links from emails that are looking suspicious.

 

Please click the link below for up-to-date information on how to let Security know about phishing or fraud attempts: https://www.docusign.com/trust/security/incident-reporting  


There is also the “Combating Phishing: A Proactive Approach” whitepaper available here: https://www.docusign.com/sites/default/files/docusign_combating_phishing_whitepaper.pdf

 

Let us know if you need further assistance with this.

Best regards,

Nathaly | Docusign Community Moderator
"Select as Best" below if you find the answer a valid solution to your issue!

I have tried these numerous times and my company is still getting the phishing emails.  DocuSign needs to do something sbout this issue so we don’t have to send your emails to quarantine.  This is not a good look on DocuSign.

Newcomer
October 20, 2025

Hello Team,
Thank you for alerting us to dishonest people abusing the Docusign product. Our security teams have produced an incident reporting guide on our Trust website.
For the most recent details on how to notify Security about phishing or fraud efforts, please follow the link below:
https://www.docusign.com/trust/security/incident-reporting
There is also the “Combating Phishing: A Proactive Approach” whitepaper available here: https://www.docusign.com/sites/default/files/docusign_combating_phishing_whitepaper.pdf
Feel free to let us know if you need any more help with this.

 

Best regards,

Jenny | Docusign Community Moderator

"Select as Best" below if you find the answer a valid solution to your issue.

The steps in these lnks never work.  I have sent five or six of these emails to the docusign verify email and nothing ever happens .  We still kjeep getting these emails.  And yes, I am the administrator of the account and our email threat protection.  You ask me to open up this domain but do nothing to protect it.  I will need to consider if I still want to keep using DocuSign.

Community Moderator
November 11, 2025

Hello ​@gmcmenimen,

I hope you’re doing well. Thank you for your patience and for bringing this to our attention.

We totally understand how frustrating it must be to send multiple emails without seeing any action. 

We’ve upgraded our email delivery systems to better spot and block fraudulent emails before they land in your inbox. Additionally, we’ve rolled out new fraud verification features that make it easier for you to check if a DocuSign email is real. Just forward any suspicious email to verify@docusign.com, and we’ll quickly let you know if it’s legitimate or if it contains anything suspicious, along with what steps you should take next. 

Article: https://www.docusign.com/blog/security-that-scales

We really appreciate you sticking with us and want to make sure you feel confident using DocuSign. If you keep seeing issues or need more help, please don’t hesitate to reach out. 

 

Best regards,

JennyDocusign Community Moderator