GrizzlyGrizzly
Recent phishing
Phishing

Impersonating DocuSign

Intent: Credential collection

  • Domain is not operated by DocuSign
  • Domain name closely resembles DocuSign's real domain
  • TLS certificate has no organization information
  • Domain not registered through DocuSign's usual registrar
  • Domain was registered very recently
  • SPF record does not reference DocuSign's infrastructure

DocuSign-branded document signature page for reviewing and signing a PDF

Scanned 42 days ago · Aug 19, 2026, 12:38 UTC

Think this verdict is wrong?

Check a suspicious URL yourself — free to try.

Scan a URL
Phishing: www.docusignreader.connectauth.click — Grizzly