This is almost certainly leaking without you realizing it via a WHOIS contact email somewhere or another
Another possibilty is that overseas contractors for AWS regularly harvest email addresses from the support UI and spam them. Wouldn't surprise me, but the first is more likely. Wouldn't really call this a hack though either way.