Outlook - Reporting phishing and suspicious emails
Table of Contents
Introduction
Phishing emails are deceptive messages designed to steal personal information or install malicious software. Recognizing and reporting these emails in Outlook enhances your security and helps protect others. This guide provides step-by-step instructions for reporting phishing and suspicious emails across various Outlook platforms.
Requirements
- An active Outlook account.
- Access to Outlook via desktop application, web browser, or mobile app.
Step-by-Step Instructions
Step 1: Reporting Phishing Emails in Outlook on the Web
- Log in to Outlook on the web.
- Navigate to your inbox and select the suspicious email.
- Above the reading pane, click on the "Report" dropdown menu.
- Click "Report Phishing" to submit the email.

Step 2: Reporting Phishing Emails in Outlook Desktop Application
- Open the Outlook application on your computer.
- Select the suspicious email from your inbox.
In the top toolbar, click on the "Report" button. - From the dropdown, select "Report Phishing" to flag the email.

Step 3: Reporting Phishing Emails in Outlook Mobile App
- Open the Outlook app on your iOS or Android device.
- Tap on the suspicious email to open it.
- Tap the three dots (...) located at the top-right corner of the screen.

- Select "Report Message" from the menu.

- Choose "Report as Phishing" to report the email.

Tips and Best Practices
- Verify Sender Information: Always check the sender's email address for inconsistencies or unfamiliar domains.
- Avoid Clicking on Suspicious Links: Do not click on links or download attachments from unknown or untrusted sources.
- Keep Software Updated: Ensure your Outlook application and security software are up-to-date to protect against known vulnerabilities.
- Be Cautious of Urgent Requests: Be wary of emails urging immediate action, as creating a false sense of urgency is a common phishing tactic.
- Use the SLAM Method: If the customer is subscribed to ALPHA ThreatAware, they can use the SLAM method to evaluate the email for phishing.