BEGINNER-FRIENDLY SECURITY GUIDE

What to Do If You Clicked a Phishing Link

First, do not panic. The right response depends on whether you only opened the page or also entered information, approved a prompt, or downloaded something.

If you only opened the page

Close the page. Do not interact with pop-ups, downloads, notifications, or requests to install software. Opening a page does not automatically mean your account is compromised, but stay alert for unusual activity.

If you entered a password or MFA code

From a trusted device, go directly to the real service and change the password immediately. Sign out other sessions if the service offers that option. If the password was reused, change it everywhere else too.

Contact your IT or security team right away for a work account. An MFA code can give an attacker immediate access, so speed matters.

If you downloaded or ran a file

Disconnect the device from the network if you ran an unexpected program, then contact your IT/security team or a qualified support provider. Do not continue opening files or signing into accounts on the device until it is assessed.

If money or banking details were involved

Call the bank or payment provider using the number on your card, statement, or official website. Explain exactly what was shared or authorized and follow their fraud-response instructions.

Document and report

Save the original message, URL, time, screenshots, and actions you took. Report the message through your email provider or workplace process. Continue monitoring important accounts for changes you did not make.