“Legitimate” phishing: how attackers weaponize Amazon SES to bypass email security
Source: Kaspersky SecureList · Category: Threat Actor & Campaign
Attackers exploit Amazon SES (legitimate cloud email service) to bypass email security filters and deliver phishing. Law firms are frequent phishing targets; review email gateway rules to flag SES-origin messages and employee training on service-based phishing.