This morning I received a phishing email with the headers as shown below. The payload was a PDF file claiming to be from DocuSign, a legitimate “e-signature” company. Needless to say, I did NOT click on the link. I thought I’d send out this “heads up” in case others on this list receive a similar email (note: there is no evidence that the message came to me through the SIGCIS list; I have no idea why the spammer chose to masquerade as SIGCIS).