How to Spot a "Phishing" Email in 30 Seconds

Attackers use emails designed to look legitimate (from Microsoft, your bank, or even your own company) to steal credentials. Here's Ornet's quick checklist to keep in mind:

Golden rule: Tech companies, banks, or the authorities will never ask you for a password or personal details via email.
1
Check the sender's address (not just the name):

The name might say "Microsoft Support," but when you click on it you'll see the email was actually sent from a forged address like [email protected]. If it's not the official domain - it's fake.

2
Scare tactics and urgent threats:

"Your account will be blocked within 24 hours," "urgent payment overdue notice." Attackers want you to panic and act fast without thinking. Slow down, breathe, and check again.

3
Don't click - hover instead:

Before you click on a button or link, hover your mouse over it (without clicking!). At the bottom of your browser, you'll see the actual link's real destination address. If it looks suspicious - don't click.

What Should You Do If You Received a Suspicious Email?

  • Don't click on any links.
  • Don't download attached files.
  • Forward the email to Ornet's IT team for review.
→ Back to the guides list
💡 טיפ טכנולוגי
אבטחת מידע לעסקים קרא עוד ←
🌐 עברית