Helpful Guide
A password reset email can be helpful when you asked for it. It can also be the start of a scam when you did not. Many fake emails try to frighten people into clicking quickly by saying their account will be locked, deleted, or taken over unless they act straight away.
The safest approach is simple: slow down, do not click the email link, and check the account another way. This guide explains how to do that calmly, especially if you use Gmail, Outlook, or an Apple account.
The short version: if you did not ask to reset your password, do not use the link in the email. Open the usual app or website yourself, sign in the normal way, and check your account security from there.
Why fake password reset emails work so well
These emails are effective because they look urgent and familiar. Most people have seen genuine security emails before, so a fake one can arrive at just the wrong moment and feel believable.
The goal is usually one of these:
- To send you to a fake sign-in page that steals your password.
- To make you panic and type codes or personal details into a form.
- To push you into calling a fake support number where somebody tries to take over the account with you on the phone.
Important: a real-looking email is not proof that it is safe. The safest habit is to treat the message as a warning only, then check your account from the official website or app you open yourself.
Signs the email may be fake
- You did not request a password reset.
- The message tries to rush you with phrases such as “act now” or “your account will be closed today”.
- The sender address looks slightly wrong or does not match the company properly.
- The link points somewhere unfamiliar when you hover over it on a computer.
- The email asks for a password, passcode, or verification code by reply, phone call, or form.
- The wording feels odd, too vague, or unlike the company’s normal style.
If the message also asks you to open an attachment, treat that as another warning sign.
What to do before you click anything
- Do not use the link in the email.
- Do not call any number in the message.
- Open the official app or website yourself the way you normally would.
- Try signing in as normal. If your usual password still works, the email may simply be fake or triggered by someone else trying their luck.
- Check the security or recent activity page for the account.
This is the same calm approach we recommend in our guide on checking whether a text or email is real before you reply.
How to check safely for a Google or Gmail account
Google says that if you receive a “suspicious sign in prevented” email, you should review your account activity from your Google Account security page rather than trust a copied message blindly.
- Open your browser and go to myaccount.google.com yourself.
- Sign in normally.
- Open Security.
- Check Recent security events for unfamiliar activity.
- If anything looks wrong, choose Secure your account and change your password.
Google also says suspicious messages can be reported as phishing in Gmail. That helps them improve protections for other users too.
Good Google habit: if an email claims something urgent happened to your account, go to your Google Account directly and check there first. A genuine problem will usually still show up once you are signed in safely.
How to check safely for an Outlook or Microsoft account
Microsoft says unusual sign-in alerts can arrive by email or text when a sign-in attempt comes from a new device or location. It also says you can review the activity safely from your Microsoft account security pages.
- Open account.microsoft.com yourself.
- Sign in and open Security.
- Select Review activity or Recent activity.
- Look for any sign-in attempt you do not recognise.
- If needed, change your password and secure the account from there.
Microsoft also says genuine Microsoft account team emails use the domain @accountprotection.microsoft.com. Even so, it is still safer to go to your account directly instead of following a link from the email.
How to check safely for an Apple account
Apple says it may notify you when changes are made to your account, such as a first sign-in on a new device or a password change. It also says Apple will never ask for your Apple Account password, verification codes, device passcode, or recovery key.
- Open Apple settings or the Apple account website yourself.
- Check whether there are real account alerts or recent changes.
- If you see changes you did not make, change your password immediately.
- Review trusted devices and remove anything you do not recognise.
If you want help with that part, our guide on checking which devices are signed in to your email account is a sensible follow-on step.
If you already clicked the link
Do not panic. What matters now is the next step.
- If you only opened the email but did not enter anything, close the page and sign in through the official site instead.
- If you entered your password, change it immediately from the real website or app.
- If you use the same password elsewhere, change those accounts too.
- Turn on 2-step verification if it is not already active.
- Check recent account activity and signed-in devices for anything unfamiliar.
Our guides on turning on 2-step verification for your email account and what to do if your email account has been hacked can help if the situation feels bigger than a single message.
If money, shopping accounts, or banking details may also be involved, act the same day. Email access is often the key that unlocks password resets for other services.
How to report the email in the UK
The National Cyber Security Centre says you can forward suspicious emails to report@phishing.gov.uk. It also says you should not click on links in a suspicious email.
- Forward suspicious emails to report@phishing.gov.uk.
- Report the email as phishing inside Gmail or Outlook when that option is available.
- If you lose money or believe fraud has taken place, report it through Report Fraud.
Small habits that make these emails less stressful
- Use a unique password for your email account.
- Keep 2-step verification switched on.
- Check security alerts from inside the account, not from the email link.
- Keep recovery details up to date, such as your mobile number or backup email.
- Store passwords sensibly, for example with a trusted password manager if that suits you.
If password organisation is part of the problem, our guide on storing passwords safely with a password manager may help.
A calm rule worth remembering
A real company does not need you to panic. If an email says your password must be reset immediately, the safer path is to ignore the link and go to the account in your usual way.
If the warning is genuine, you will still be able to see the problem once you sign in safely. If it is fake, you will have avoided giving criminals exactly what they wanted.
When patient support is useful
Fake security emails can leave people feeling unsettled even when they did not click anything. Independent clients and family members often just want somebody patient to sit beside them, check the account properly, and explain what happened in plain English.
Simply Tech Support helps with suspicious emails, safer passwords, account recovery, 2-step verification, and calm one-to-one support at home. You can read more on the Simply Tech Support services page.
Sources
- National Cyber Security Centre: Report a scam email
- Google Account Help: “Suspicious sign in prevented” email
- Gmail Help: Avoid and report phishing emails
- Microsoft Support: What happens if there is an unusual sign-in to your account
- Microsoft Support: Can I trust email from the Microsoft account team?
- Apple Support: Security and your Apple Account



