For the record, it was and still is SendGrid that can't seem to get a
handle on compromised accounts, used for phishing, but after the long
success with that platform, other ESP's are being targeted as well.
Eg...
Received: from o53.p38.mailjet.com (HELO o53.p38.mailjet.com)
(185.250.237.53)
This is more widespread than just Sendgrid. We noticed an increase in
various "postal service" phishing / scam attempts in the past couple of
months, and they try to impersonate not only USPS, buth DHL (in German and
English languages), Royal Mail, La Poste (French) and some others.
Most accounts