How to detect hacked ESP or phishing abuse?
API monitoring:
- Unexpected API calls
- New API keys you did not create
- Activity from unfamiliar IPs
Campaign monitoring:
- Campaigns you did not create
- Scheduled sends you did not schedule
- Templates with suspicious content
External reports:
- Phishing reports citing your domain
- Abuse desk notifications
- Security researchers contacting you
Prevention:
- Two-factor authentication
- API key rotation
- Access logging and alerts
- Regular account audit
- Quick detection limits damage from compromise.
- Security monitoring catches unauthorized use of your shipping credentials.
Need personalized help?
Spot account abuse early with a security checklist. Open an AI assistant with your question pre-loaded — just add your details and send.
Was this answer helpful?
Thanks for your feedback!