1. Did you confirm it's not a hack on any website? As the sender seem a valid email here I think they have likely hacked the account that had a weak password. Could you check dovecot logs for login failure before the email spree.
2. One solution is adding fail2ban to the server and activating it to monitor dovecot & postfix logs, so IT will flag & ban brute force attacks. Take car fail2ban default settings are not good as you need to correct the log path.
M B
2. One solution is adding fail2ban to the server and activating it to monitor dovecot & postfix logs, so IT will flag & ban brute force attacks. Take car fail2ban default settings are not good as you need to correct the log path.
M B
No support using PM (Auto adding to IGNORE list!), use the forum.
How to ask
200$ free to start your VPS 60 days credit
How to ask
200$ free to start your VPS 60 days credit