---
title: "Phishing Attack Update: How Cybercriminals Can Bypass Email Scanners to Attack Your Business"
description: Email scanners are an important piece of technology used to automatically detect and reroute potential threats (like a phishing attack) that attempt to infiltrate your inbox from unknown and/or suspicious sources. If you’ve ever had to “check your spam folder or quarantine” after a trusted source has sent you a message, that’s an example of […]
---

[Skip to main content](https://bluelayer.com/blog/phishing-attack-how-cybercriminals-bypass-email-scanners#main)

[![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_white.png) ![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_color.png)](https://bluelayer.com/)

- [Home](https://bluelayer.com/)
- [Managed Services](https://bluelayer.com/managed-services/)
- [Advisory Services](https://bluelayer.com/advisory-services/) 
    - [Servers & Cloud Services](https://bluelayer.com/servers-cloud-hosting/)
    - [Communications](https://bluelayer.com/communications/)
    - [Networking & SD WAN](https://bluelayer.com/networking/)
    - [Cybersecurity](https://bluelayer.com/cybersecurity/)
    - [Disaster Recovery](https://bluelayer.com/disaster-recovery/)
    - [Physical Security](https://bluelayer.com/physical-security/)
- [Cybersecurity](https://bluelayer.com/cybersecurity/)
- [About Us](https://bluelayer.com/about-us/)
- [Blog](https://bluelayer.com/blog/)
- [Support](https://bluelayer.com/support/)
- [Contact Us](https://bluelayer.com/contact/)

[Client Portal](https://portal.bluelayer.com/)

![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_color.png)

- [Home](https://bluelayer.com/)
- [Managed Services](https://bluelayer.com/managed-services/)
- [Advisory Services](https://bluelayer.com/advisory-services/) 
    - [Servers & Cloud Services](https://bluelayer.com/servers-cloud-hosting/)
    - [Communications](https://bluelayer.com/communications/)
    - [Networking & SD WAN](https://bluelayer.com/networking/)
    - [Cybersecurity](https://bluelayer.com/cybersecurity/)
    - [Disaster Recovery](https://bluelayer.com/disaster-recovery/)
    - [Physical Security](https://bluelayer.com/physical-security/)
- [Cybersecurity](https://bluelayer.com/cybersecurity/)
- [About Us](https://bluelayer.com/about-us/)
- [Blog](https://bluelayer.com/blog/)
- [Support](https://bluelayer.com/support/)
- [Contact Us](https://bluelayer.com/contact/)

[Client Portal](https://portal.bluelayer.com/)

# Phishing Attack Update: How Cybercriminals Can Bypass Email Scanners to Attack Your Business

 Sep 22, 2021, 8:00:00 AM [Admin](https://bluelayer.com/blog/author/admin)

Email scanners are an important piece of technology used to automatically detect and reroute potential threats (like a [**phishing attack**](https://bluelayerit.com/blog/how-to-protect-your-business-from-phishing/)) that attempt to infiltrate your inbox from unknown and/or suspicious sources. If you’ve ever had to “check your spam folder or quarantine” after a trusted source has sent you a message, that’s an example of an email scanner doing its job… and doing it well!

But as always, cybercriminals are always working to stay one step ahead of the measures put between them and their goal. Your trusted email scanners are no different.

You don’t want to fall victim to a phishing attack that looks like it belongs with the other meeting invites, newsletters, and company updates in your inbox. So, if a cybercriminal does end up making it past your email’s security protocols, here are a few things to be wary of.

![](https://bluelayer.com/hubfs/Imported_Blog_Media/body-phishing-email-scanners-700x467.jpg)

- Cybercriminals might replace words commonly found in phishing emails (such as “invoice”) with synonyms to bypass filters that are set to be on the lookout for those keywords.

- [**A dark web tool, “Email Appender,”**](https://blog.knowbe4.com/cybercriminals-can-now-bypass-security-solutions-and-implant-malicious-emails-directly-into-inboxes-with-email-appender) gives any cybercriminal with a set of compromised email account credentials the ability to place a malicious email directly into the inbox of that victim’s mailbox, bypassing any mail scanners, virtual sandboxes, and other security solutions.
- Brand exploitation is a method most phishing attacks use to weasel their way into an unsuspecting person’s email account. By posing as a trusted business or financial institution, cybercriminals can deceive email scanners into giving access to an email that looks just like the ones they get every day from the *real* source. [**Read more about this type of phishing here.**](https://bluelayerit.com/blog/the-latest-phishing-attacks-and-how-businesses-fall-for-them/)
- Sometimes, a cybercriminal might even put the recipient’s email address in the subject line of the phishing attack.
- Vendor email compromise (VEC) and business email compromise (BEC) are also ways cybercriminals have attempted to sidestep email security. Much like brand exploitation, a phishing attack like this is meant to look like they’re coming from people that you trust, whether they be internal employees or authorized, frequently-interacted-with vendors. [**This Blue Layer blog digs deeper.**](https://bluelayerit.com/blog/what-is-spear-phishing/)

Simply put, a phishing attack is designed simply to trick. And sometimes, even the sophisticated technology designed to resist these tricks falls for them, too. And when the technology fails, it’s on the user to ensure that the cybercriminal’s last intended step is not followed through.The only way to guarantee that involves a combination of the most effective cybersecurity technology *and* modern cybersecurity awareness training for those who interact with it. We can help with both. [**Click here to learn how Blue Layer can protect your business and your employees.**](https://bluelayerit.com/contact-us/)

[Previous Post](https://bluelayer.com/blog/watch-out-for-these-common-bitcoin-phishing-attacks) [Next Post](https://bluelayer.com/blog/cybersecurity-awareness-month-top-tips-and-trends)

Search

Search

## Recent Post

- Jul 30, 2026, 5:32:45 PM [“We Have Backups” Isn’t Enough](https://bluelayer.com/blog/we-have-backups-isnt-enough)
- Jul 30, 2026, 5:29:54 PM [The 3-2-1 Backup Rule Still Matters](https://bluelayer.com/blog/the-3-2-1-backup-rule-still-matters)

## Categories

- [Advancements and Trends](https://bluelayer.com/blog/tag/advancements-and-trends)
- [Blue Layer News](https://bluelayer.com/blog/tag/blue-layer-news)
- [Security Alerts](https://bluelayer.com/blog/tag/security-alerts)
- [Uncategorized](https://bluelayer.com/blog/tag/uncategorized)
- [Cybersecurity](https://bluelayer.com/blog/tag/cybersecurity)
- [Inc. 5000](https://bluelayer.com/blog/tag/inc-5000)
- [MSP](https://bluelayer.com/blog/tag/msp)
- [Partnership](https://bluelayer.com/blog/tag/partnership)
- [Phishing](https://bluelayer.com/blog/tag/phishing)
- [RingCentral](https://bluelayer.com/blog/tag/ringcentral)
- [Zoom Phishing](https://bluelayer.com/blog/tag/zoom-phishing)

## Tags

[Advancements and Trends](https://bluelayer.com/blog/tag/advancements-and-trends) [Blue Layer News](https://bluelayer.com/blog/tag/blue-layer-news) [Security Alerts](https://bluelayer.com/blog/tag/security-alerts) [Uncategorized](https://bluelayer.com/blog/tag/uncategorized) [Cybersecurity](https://bluelayer.com/blog/tag/cybersecurity) [Inc. 5000](https://bluelayer.com/blog/tag/inc-5000) [MSP](https://bluelayer.com/blog/tag/msp) [Partnership](https://bluelayer.com/blog/tag/partnership) [Phishing](https://bluelayer.com/blog/tag/phishing) [RingCentral](https://bluelayer.com/blog/tag/ringcentral) [Zoom Phishing](https://bluelayer.com/blog/tag/zoom-phishing)

## Archives

- [July 2026](https://bluelayer.com/blog/archive/2026/07)
- [March 2026](https://bluelayer.com/blog/archive/2026/03)
- [February 2026](https://bluelayer.com/blog/archive/2026/02)
- [December 2025](https://bluelayer.com/blog/archive/2025/12)
- [October 2025](https://bluelayer.com/blog/archive/2025/10)
- [June 2025](https://bluelayer.com/blog/archive/2025/06)
- [May 2025](https://bluelayer.com/blog/archive/2025/05)
- [October 2024](https://bluelayer.com/blog/archive/2024/10)
- [April 2024](https://bluelayer.com/blog/archive/2024/04)
- [January 2023](https://bluelayer.com/blog/archive/2023/01)
- [December 2022](https://bluelayer.com/blog/archive/2022/12)
- [November 2022](https://bluelayer.com/blog/archive/2022/11)
- [October 2022](https://bluelayer.com/blog/archive/2022/10)
- [July 2022](https://bluelayer.com/blog/archive/2022/07)
- [June 2022](https://bluelayer.com/blog/archive/2022/06)
- [March 2022](https://bluelayer.com/blog/archive/2022/03)
- [February 2022](https://bluelayer.com/blog/archive/2022/02)
- [January 2022](https://bluelayer.com/blog/archive/2022/01)
- [December 2021](https://bluelayer.com/blog/archive/2021/12)
- [November 2021](https://bluelayer.com/blog/archive/2021/11)
- [October 2021](https://bluelayer.com/blog/archive/2021/10)
- [September 2021](https://bluelayer.com/blog/archive/2021/09)
- [August 2021](https://bluelayer.com/blog/archive/2021/08)
- [July 2021](https://bluelayer.com/blog/archive/2021/07)
- [June 2021](https://bluelayer.com/blog/archive/2021/06)
- [May 2021](https://bluelayer.com/blog/archive/2021/05)
- [April 2021](https://bluelayer.com/blog/archive/2021/04)
- [February 2021](https://bluelayer.com/blog/archive/2021/02)
- [January 2021](https://bluelayer.com/blog/archive/2021/01)
- [December 2020](https://bluelayer.com/blog/archive/2020/12)
- [November 2020](https://bluelayer.com/blog/archive/2020/11)
- [October 2020](https://bluelayer.com/blog/archive/2020/10)
- [September 2020](https://bluelayer.com/blog/archive/2020/09)
- [August 2020](https://bluelayer.com/blog/archive/2020/08)
- [July 2020](https://bluelayer.com/blog/archive/2020/07)
- [June 2020](https://bluelayer.com/blog/archive/2020/06)
- [May 2020](https://bluelayer.com/blog/archive/2020/05)
- [April 2020](https://bluelayer.com/blog/archive/2020/04)
- [March 2020](https://bluelayer.com/blog/archive/2020/03)
- [February 2020](https://bluelayer.com/blog/archive/2020/02)
- [January 2020](https://bluelayer.com/blog/archive/2020/01)
- [December 2019](https://bluelayer.com/blog/archive/2019/12)
- [November 2019](https://bluelayer.com/blog/archive/2019/11)
- [October 2019](https://bluelayer.com/blog/archive/2019/10)
- [September 2019](https://bluelayer.com/blog/archive/2019/09)
- [August 2019](https://bluelayer.com/blog/archive/2019/08)
- [July 2019](https://bluelayer.com/blog/archive/2019/07)
- [June 2019](https://bluelayer.com/blog/archive/2019/06)
- [June 2018](https://bluelayer.com/blog/archive/2018/06)
- [March 2018](https://bluelayer.com/blog/archive/2018/03)
- [February 2018](https://bluelayer.com/blog/archive/2018/02)
- [January 2018](https://bluelayer.com/blog/archive/2018/01)
- [December 2017](https://bluelayer.com/blog/archive/2017/12)
- [September 2017](https://bluelayer.com/blog/archive/2017/09)
- [June 2017](https://bluelayer.com/blog/archive/2017/06)
- [May 2017](https://bluelayer.com/blog/archive/2017/05)
- [March 2017](https://bluelayer.com/blog/archive/2017/03)
- [February 2017](https://bluelayer.com/blog/archive/2017/02)
- [January 2017](https://bluelayer.com/blog/archive/2017/01)

[![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_white.png)](https://bluelayer.com/)

Not sure where to start? Let's just meet for coffee and chat! Coffee is on us and we'd love to learn about you.

- <https://www.facebook.com/bluelayerit>
- <https://x.com/bluelayerit>
- <https://www.linkedin.com/company/blue-layer>
- <https://www.youtube.com/@bluelayerit4754>

## Company

- [About Us](https://bluelayer.com/about-us/)
- [Blog](https://bluelayer.com/blog/)
- [Support](https://bluelayer.com/support/)
- [Contact Us](https://bluelayer.com/contact/)

## Services

- [Managed Services](https://bluelayer.com/managed-services/)
- [Advisory Services](https://bluelayer.com/advisory-services/)
- [Cybersecurity](https://bluelayer.com/cybersecurity/)

## Contact Info

Toll Free: [866.430.2647](tel:8664302647)  
Lubbock: [806.687.4765](tel:8066874765)  
South TX: [210.686.5877](tel:2106865877)  
North TX: [214.884.3555](tel:2148843555)

**Corporate Office:**  
6102 82nd St #13  
Lubbock, TX 79424

**Operations Office:**  
6119 79th St  
Lubbock, TX 79424

## Support & Operations Hours

Mon-Thu 8am-6pm  
Friday 8am-5pm  
Sat-Sun 9am-5pm

Emergency Support  
Toll Free 24/7: [866.430.2647](tel:8664302647)

© 2026 **Blue Layer.** All Rights Reserved. | Security License# B25182501

- [Terms](https://bluelayer.com/terms-and-conditions/)
- [Privacy](https://bluelayer.com/privacy-policy/)
- [Support](https://bluelayer.com/support/)

[Remote Support](https://remote.bluelayer.com/)

[Verify Agent](https://bluelayer.com/blog/phishing-attack-how-cybercriminals-bypass-email-scanners#verify-agent)

×

## Verify a Blue Layer agent

Always **verify who you are speaking with.** Whether we initiate a call or visit your location, use this tool to confirm the person is a verified Blue Layer agent.

Enter the 6-digit ID Token the agent gave you.

Verify

Invalid token

## Agent verified

The ID Token is valid. You are speaking with a  
**Verified Blue Layer Agent.**

Verify another agent

Trust, but verify all contacts.

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Admin",
    "url" : "https://bluelayer.com/blog/author/admin"
  },
  "dateModified" : "2026-09-08T21:37:02.714Z",
  "datePublished" : "2021-09-22T12:00:00.000Z",
  "headline" : "Phishing Attack Update: How Cybercriminals Can Bypass Email Scanners to Attack Your Business",
  "mainEntityOfPage" : {
    "@id" : "https://bluelayer.com/blog/phishing-attack-how-cybercriminals-bypass-email-scanners",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject"
    }
  }
}
```

```json
{
  "@context" : "https://schema.org",
  "@id" : "",
  "@type" : "Organization",
  "address" : {
    "@type" : "PostalAddress",
    "addressCountry" : "",
    "addressLocality" : "",
    "postalCode" : "",
    "streetAddress" : ""
  },
  "description" : "",
  "logo" : "",
  "name" : "",
  "sameAs" : [ "", "", "" ],
  "url" : ""
}
```