Phishing defense guide

Phishing Defense Center

Phishing succeeds by creating urgency and directing the user into an attacker-controlled conversation or page.

Security guideIndependent educational resource

Phishing defense center

Verify login alerts, support messages, OAuth prompts, QR codes and lookalike domains without trusting the message that created the urgency.

How to use this section

Use the Phishing defense center directory to choose the page that matches the decision or problem you have now. Follow official provider links for account actions, and never enter a password or recovery code into an informational guide.

What belongs in this section

The safest first move is to separate the message from the verification channel. Open the known app or type the provider address manually, then compare the claimed event with activity shown inside the real account.

Standards and source notes

This page is maintained by the Password Tools Hub Editorial Team. General password guidance is checked against NIST SP 800-63B and the OWASP Authentication Cheat Sheet. Product interfaces can change; use the linked provider documentation for the final account action.