Msspalert Kaspersky Uncovers Phishing Campaign Impersonating Zoom and Docusign
Article Content
- •Kaspersky identified a phishing campaign impersonating Zoom and Docusign.
- •The campaign targets corporate accounts across multiple regions, including Europe and Latin America.
- •Over a thousand phishing emails have been detected, with ongoing activity as of September 2026.
Kaspersky has identified an ongoing phishing campaign that impersonates official emails from Zoom and Docusign. The campaign targets corporate accounts in the Middle East, Latin America, Western Europe, Russia, Armenia, and Azerbaijan. Initially, attackers sent emails masquerading as Docusign communications with links designed to steal credentials. A second wave of emails, posing as Zoom notifications, warns users of impending account disablement. Over a thousand phishing emails have been detected as part of this campaign. Kaspersky emphasizes that while sophisticated phishing tactics are common, basic methods remain effective due to the volume of emails employees receive. Recommendations include deploying dedicated email security solutions, conducting employee training, and integrating extended defense systems. As of September 2026, the campaign is still active.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Common questions
What types of emails are being used in this campaign?
How many phishing emails have been detected?
What should organizations do to protect against this threat?
Continue Reading
Critical Zero-Day Exploits Target F5 and Check Point Products F5 Networks released emergency hotfixes for a critical zero-day vulnerability, CVE-2026-94127, in its BIG-IP Access Policy Manager on September 22, 2026, after confirming active exploitation. This flaw allows unauthenticated remote code execution (RCE) and has a CVSS score of 9.8. Concurrently, Check Point disclosed…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…