Outlook.com can warn when a link in an email appears related to phishing or malware. The warning is a pause to check the underlying request. A copied brand, known contact name or familiar email thread does not make the destination safe.
Before you start
Keep the email open for reference but do not enter credentials into the warned page. Identify what the message wants you to do: sign in, download, pay or confirm account details.Do it step by step
- Stop at the warning rather than choosing to continue. Note the visible destination domain and the alleged sender without entering data.
- Open the organization's website or app from a saved bookmark or manually typed known address. Look for the same notice within your account.
- For a work request, contact the person through an existing channel, such as a known phone number or a new message to their recorded address.
- If the request cannot be verified, use Outlook's phishing report control or your organization's reporting process. Preserve the message if a security team needs it.
- If you already followed the link and entered a password, change it on the real site, check sessions and recovery settings, and alert your security team or provider.