Reading is great. Tracking makes it stick. Sign up for a free Dashboard to tick off tasks and see your Security Score.
Get my free Dashboard →About 10 minutes to complete
How to learn how to spot a phishing email

Learn the three things to check before clicking any link in an email. Fake phishing emails are responsible for the majority of hacked accounts in the UK — and they are getting harder to spot.
Step-by-step guide
- Check the sender's actual email address — not just the display name. Hover over or tap it to see the full address.
- Be suspicious of any unexpected message that asks you to click a link, download an attachment, or enter your details — even if it appears to come from a familiar organisation.
- Look for urgency or threats such as 'Your account will be closed' or 'Action required immediately.' Legitimate organisations rarely pressure you this way.
- If unsure, go directly to the organisation's website by typing the address yourself — never follow a link in the email.
- Report suspected phishing emails to your email provider (mark as spam) and to the NCSC Suspicious Email Reporting Service at report@phishing.gov.uk.
How to confirm it worked
- The setting is saved and active on your device
- You have tested it works before closing the page
Tick this task off in your Dashboard to update your Security Score.
Why this matters
Phishing emails are the starting point for the majority of account takeovers and business email compromises in the UK. Attackers create convincing copies of real emails from banks, couriers, and HMRC to trick you into clicking a link or entering your details. Knowing what to look for takes only a few minutes to learn.
Need more context?
For background on this task — including common questions and answers — see the full guide.
Read the full guide →Related security tasks
Track your security score for free
Create a free Cyber Nova AI account to tick off tasks like this one, see your Security Score, and stay on top of what you've done and what's still to do.
Start your free security check