• SPONSORED BY BITDEFENDER •

Online phishing scams and what to look out for

The web can be a dangerous place. Make sure you are educated on one of cyber criminal's favourite tools.
The following content is brought to you by Mashable partners. If you buy a product featured here, we may earn an affiliate commission or other compensation.
Phishing Scam
Credit: Mashable

Internet scams are everywhere. Modern cyberattacks are often presented in the form of elaborate phishing emails and fake web pages. These are carefully crafted to trick you into clicking harmful links by posing as contacts that you trust. From organisations and coworkers, to even friends and family members.

While wading through the phish can be tricky, there are some simple tips you can implement to greatly reduce your chances of being duped. And there are also some fantastic, comprehensive tools available to you to help you either avoid these scams, or help solve the problem should the worst occur. Keeping an eye out for these internet scams is crucial to protect your personal information, finances, and overall online security. To help you navigate the wild west that is the modern internet, we’ve put together the following tips to keep you safe while browsing the web:

Tips for identifying phishing scams

Be sceptical: Be cautious of emails, messages, or social media requests from unknown or unexpected sources. Scammers often impersonate legitimate organisations or individuals to gain your trust.


You May Also Like

Recommended deals for you

Apple AirPods Pro 3 Noise Cancelling Heart Rate Wireless Earbuds $219.99 (List Price $249.00)

Apple iPad 11" 128GB Wi-Fi Retina Tablet (Blue, 2025 Release) $274.00 (List Price $349.00)

Amazon Fire HD 10 32GB Tablet (2023 Release, Black) $69.99 (List Price $139.99)

Sony WH-1000XM5 Wireless Noise Canceling Headphones $248.00 (List Price $399.99)

Blink Outdoor 4 1080p Security Camera (5-Pack) $159.99 (List Price $399.99)

Fire TV Stick 4K Streaming Device With Remote (2023 Model) $24.99 (List Price $49.99)

Shark AV2511AE AI Robot Vacuum With XL Self-Empty Base $249.99 (List Price $599.00)

Apple Watch Series 11 (GPS, 42mm, S/M Black Sport Band) $339.00 (List Price $399.00)

WD 6TB My Passport USB 3.0 Portable External Hard Drive $138.65 (List Price $179.99)

Dell 14 Premium Intel Ultra 7 512GB SSD 16GB RAM 2K Laptop $999.99 (List Price $1549.99)

Check the sender's email address: Look closely at the sender's email address. Scammers may use email addresses that resemble legitimate ones but have slight variations or misspellings. A logo is easy to replicate but a legitimate address or URL is not.

Look for poor grammar and spelling: Many scams originate from non-English-speaking countries, leading to poorly written messages with grammar and spelling mistakes.

Watch out for “URGENT!!!” messages: Scammers often use urgency or threats to pressure you into taking immediate action, such as claiming your account will be closed or that you'll face legal consequences.

Look for HTTPS in the URL: If you find yourself on a suspicious web page, ensure the website has a secure connection by checking for "https://" at the beginning of the URL. However, some phishing sites may use HTTPS, so be cautious.

Check for a padlock icon: A legitimate website often displays a padlock icon in the browser's address bar to indicate a secure connection. While this can be faked, its absence is a red flag.

Mashable Light Speed
Want more out-of-this world tech, space and science stories?
Sign up for Mashable's weekly Light Speed newsletter.
By clicking Sign Me Up, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up!

Slow down: If you’re paying attention (which can be hard when checking your emails before your morning coffee), there are always subtle signs you can look for to root out phishing attempts. Don’t frantically click through all of your inbox, slow yourself down, and most importantly: trust your instincts. If something seems suspicious, it's better to err on the side of caution.

How to protect yourself from phishing scams

Avoid clicking on links: Hover your mouse over links in emails or messages to see where they lead before clicking on them. Don't click on links in emails that ask for personal information or financial details.

Enable Two-Factor Authentication (2FA): Whenever possible, enable 2FA on your online accounts. This adds an extra layer of security by requiring a second form of verification. Usually this entails a code sent to your mobile device. Both Google and Microsoft have popular authenticator apps that many services utilise.

Regularly update software: Keep your operating system, antivirus software, web browsers, and other applications up to date as much as possible. These services are frequently updated to help protect their users against known vulnerabilities. Cyber security is a never ending arms race, and you don’t want to be left behind.

Install Antivirus and Anti-Malware Software: One of the simplest solutions you can leverage is a reputable antivirus software. While this will cost you a little bit of money, it is more than worth it for the protection they provide, especially if your devices are used by multiple people. A good option to consider is PCMag Editors Choice: Bitdefender Premium Security if you’re looking for an all-in-one solution. Bitdefender is a multi-platform solution that you can install on all your devices, and not only provides best-in-class antivirus and threat detection, but also a host of other features such as an unlimited VPN, and tools to help you manage your digital footprint.

Use a digital identity protection tool: As phishing attacks become more common, antivirus providers are building systems to combat them. Security Suites such as Bitdefender include a Digital Identity Protection feature, which monitors both the public internet and dark web for any mention of your personal information, notifies you in real time, and provides a simple pathway to instantly resolve incidents and data breaches.

Use strong passwords: For many people, thinking of unique passwords can be a struggle, and the trap that you can fall into is sharing one password across multiple services. This is a massive security risk, and can lead to a domino situation where bad actors can access many of your accounts and services after cracking just one. Create strong, unique passwords for your online accounts, and consider using a password manager to store and generate passwords. These often come packaged within security suites such as Bitdefender Premium Security.

Report suspected phishing: If you can identify a phishing email or web page, or even if you suspect one, pay it forward. Many organisations or mail hosting services rely on their users to report scammers in order to stay ahead of the game. Being a prolific dead-end for would-be scammers is also a great way to get them to leave you alone!

Educate yourself: Stay informed about common online scams and tactics used by scammers. Knowledge is your best defence. Scammers are constantly evolving their tactics, so staying vigilant and up-to-date on modern scamming and phishing methods is incredibly helpful. Check out recent blogs by antivirus experts to stay ahead of any potential threats.

--

Phishing and identity theft are no joke, and unfortunately only becoming more and more common. These tips above can help you identify and avoid these scams, but we’re only human, and mistakes will be made. Having a helping hand can take away a lot of the stress of dealing with the barrage of bad actors online, and that's why we recommend a reputable antivirus suite. If you’d like to try one for yourself with minimal risk, Bitdefender offers a 30-day free trial that you can find out more about here.

Topics Cybersecurity

Mashable Potato

Recommended For You
Two senators pen letter to Match CEO about romance scams
Tinder and Match Group logo displayed on a phone screen

Social media companies to be held liable for financial scams under new EU rules
 iPhone screens display various social media apps on the screens

Scammers blast Black Friday shoppers with AI-made text messages, emails
Scam text message

Don't get tricked! How software stops fake emails
By PCMag
phishing email

Google denies reports that 2.5 billion Gmail users were impacted by security issue
The Gmail logo displayed on a smartphone, with the Google logo in the background.

More in Tech
The 20+ best Black Friday Lego deals still live: Save big on Star Wars, Botanicals, Disney, and more
Lego Botanicals set, Lego Star Wars Millenium Falcon set, and Lego Disney Up set against a purple patterned background


Prime members can save $5 on $25 of groceries at Amazon through Cyber Monday
A bag of clementines, bag of potatoes, string cheese, and blueberries on a colorful background.

75+ Black Friday outdoor deals: Yeti, Jackery, Arc'teryx, LifeStraw still at record lows
Jackery power station, JBL Charge 6, Yeti Tundra 35 cooler, and Yeti Rambler travel mug with pink background

35 of the best under $50 Black Friday deals: Lego, Sony headphones, and JBL speakers still live
an amazon echo spot, JBL speaker, orastoe hand warmer, Lego bonsai tree set, and portable nutribullet blender all on a purple Black Friday background

Trending on Mashable
NYT Connections hints today: Clues, answers for November 29, 2025
Connections game on a smartphone

Streaming just got cheaper: Black Friday deals still live on Hulu, HBO Max, Apple TV, Disney+, and more
Disney+, Hulu, HBO Max, Peacock, and Prime Video logos with colorful background and black friday icon

Wordle today: Answer, hints for November 29, 2025
Wordle game on a smartphone

The 23 best Black Friday PlayStation game deals still live (updated)
helldivers II, clair obscur, and silent hill f on pink background

NYT Strands hints, answers for November 29, 2025
A game being played on a smartphone.
The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!